Effective May 5, 2026
Privacy Policy
This Privacy Policy explains how Heepsters Creative LLC("Heepsters," "we," "us") handles information collected through heepsterspractice.comand the Heepsters Practice application (the "Service"). Protected Health Information (PHI) processed inside the Service for paying customers is governed by our Business Associate Agreement (BAA), not this policy.
1. What we collect
- Account data: name, email, practice name, role.
- Usage data: pages visited, features used, anonymized device and browser metadata.
- Lead data: info you submit on the demo or signup forms.
- Cookies: strictly-necessary cookies for auth and session. Optional analytics cookies require consent.
2. How we use it
- To run, secure, and improve the Service.
- To respond to demo requests and onboard trial accounts.
- To send transactional email (account, billing, security).
- To send marketing email — only if you opted in. You can unsubscribe at any time.
3. PHI handling
PHI placed into the Service by a Covered Entity is governed by our BAA. We do not use PHI for marketing, advertising, or model training. PHI is encrypted at rest (AES-256) and in transit (TLS 1.3) and is stored exclusively in U.S. AWS regions. See Security & HIPAA for the full picture.
4. Sharing
We share data only with subprocessors necessary to operate the Service (cloud hosting, transactional email, payments, customer support tooling). The current list lives at /legal/baa#subprocessors. We never sell personal data.
5. Your rights
You can request access, correction, export, or deletion of your account data by emailing privacy@heepsterspractice.com. For PHI, requests are handled by your Covered Entity per HIPAA.
6. Retention
Marketing leads are retained for 24 months unless you ask us to delete sooner. Account data is retained for the life of the account plus 7 years for tax/audit compliance, then deleted.
7. Children
The Service is for clinical professionals and is not directed to children under 13. We don't knowingly collect data from children directly.
8. Changes
We'll post updates here and notify account holders via email at least 14 days before material changes take effect.
9. Contact
Privacy questions: privacy@heepsterspractice.com
Heepsters Creative LLC · Provo, Utah