Privacy Policy
Effective Date: June 2, 2025 | Last Updated: March 2026
Sales: +1 (727) 214 2749
Effective Date: June 2, 2025 | Last Updated: March 2026
Welcome to Medviz Systems (“Medviz,” “we,” “us,” or “our”). We are a healthcare technology company offering AI-powered medical billing, revenue cycle management (RCM), chronic care management (CCM), principal care management (PCM), remote patient monitoring (RPM), credentialing, medical coding, accounts receivable services, and virtual front desk support to healthcare practices across the United States.
We are deeply committed to protecting the privacy and security of all individuals whose information we handle — including healthcare providers, practice administrators, and patients whose data we process on behalf of our client practices. This Privacy Policy explains what information we collect, how we use it, how we protect it, and your rights regarding your information.
By using our website (www.medviz.ai), our CCM platform, or any of our services, you agree to the practices described in this Privacy Policy.
This Privacy Policy applies to:
If you are a patient, your healthcare provider (our client) is the primary covered entity responsible for your health information. Medviz acts as a Business Associate under HIPAA when processing patient data on behalf of healthcare practices.
When you engage with Medviz as a client or prospective client, we may collect:
When providing CCM, PCM, RPM, medical billing, coding, or RCM services, we may access and process patient information on behalf of our client practices, including:
All patient PHI is handled strictly in accordance with HIPAA requirements and only as directed by the patient’s healthcare provider.
For CCM and care management services, we send SMS text messages to patients on behalf of enrolled practices. In connection with SMS communications, we collect and process:
We do not share patient phone numbers or SMS consent data with third parties for marketing purposes.
When you visit www.medviz.ai, we automatically collect:
We use cookies, web beacons, and similar technologies to enhance your experience, analyze website traffic, and support security. You can manage cookie preferences through your browser settings. Disabling cookies may limit certain website functionality.
Medviz Systems sends SMS text messages to patients on behalf of enrolled healthcare practices for the following purposes:
Patients provide consent to receive SMS messages through one or more of the following methods:
We do not use SMS communications for marketing or promotional purposes. All messages are strictly care-related and sent on behalf of the patient’s healthcare provider.
We use the information we collect for the following purposes:
We do not sell your information to third parties, nor do we share it with third parties for marketing or advertising purposes. We may share your information only in the following limited circumstances:
Medviz Systems operates as a HIPAA Business Associate when processing Protected Health Information (PHI) on behalf of healthcare providers. As such:
Patients seeking to exercise HIPAA rights (access, amendment, accounting of disclosures) should contact their healthcare provider directly. Medviz will support the provider in fulfilling such requests.
We implement industry-standard administrative, physical, and technical safeguards to protect your information, including:
While we implement robust security measures, no method of electronic transmission or storage is 100% secure. We encourage clients and users to use strong passwords and report any suspected security concerns to privacy@medviz.ai immediately.
We retain information for as long as necessary to fulfill the purposes outlined in this Privacy Policy and our client agreements, or as required by law:
Upon termination of a client relationship, PHI is returned to the practice or securely destroyed in accordance with HIPAA requirements and the terms of the BAA.
As a client, you may:
Patients whose data is processed by Medviz on behalf of a healthcare practice should direct privacy rights requests to their healthcare provider. Rights may include:
Patients in California may have additional rights under the California Consumer Privacy Act (CCPA) and California Confidentiality of Medical Information Act (CMIA). Contact us at privacy@medviz.ai for assistance.
To stop receiving SMS messages from Medviz on behalf of your healthcare practice, reply STOP to any message. You may also contact your care team or call +1 (727) 214-2749 to opt out. Opting out of SMS will not affect your ability to receive care from your provider.
Our website may contain links to third-party websites. We are not responsible for the privacy practices or content of those sites and encourage you to review their privacy policies before providing any information.
Our services integrate with third-party EMR/EHR platforms including Athena, eClinicalWorks, AdvancedMD, CareCloud, DrChrono, and others. Information shared with these platforms is governed by your agreement with those vendors and applicable HIPAA authorizations.
Medviz Systems offers Samaat AI, an AI-powered medical documentation service that records provider-patient encounters, generates automatic transcriptions, and produces structured SOAP (Subjective, Objective, Assessment, Plan) notes. This service reduces administrative burden on providers while improving documentation accuracy and clinical efficiency.
When Samaat AI is active during a clinical encounter, the following data is collected and processed:
Audio recording of provider-patient encounters requires explicit consent under applicable federal and state laws, including state wiretapping and two-party consent statutes. Medviz Systems requires client practices to:
In states requiring all-party or two-party consent for recording (such as California, Florida, Illinois, Pennsylvania, and others), practices must ensure patient consent is obtained before the encounter recording begins. Medviz provides guidance to practices on consent requirements, but the practice as the covered entity is ultimately responsible for obtaining and documenting consent.
Data collected through Samaat AI is used exclusively for the following purposes:
Audio recordings and raw transcriptions are handled with strict data minimization principles:
Samaat AI is a documentation assistance tool, not a clinical decision-making system. Medviz maintains the following human oversight commitments:
Given the sensitive nature of recorded provider-patient conversations, Medviz applies the following additional safeguards specific to Samaat AI:
Medviz uses artificial intelligence and machine learning to enhance medical billing accuracy, coding compliance, and revenue cycle performance. This includes automated CPT/ICD code suggestions, claim scrubbing, denial pattern analysis, and billing workflow optimization.
When AI tools process patient encounter data or claims information:
Our website is not directed to children under the age of 13. We do not knowingly collect personal information from children under 13 through our website. If we become aware that we have inadvertently collected such information, we will delete it promptly. Note that Medviz may process pediatric patient data (including minors under 18) as part of medical billing and care management services on behalf of healthcare practices, which is governed by applicable HIPAA and state minor health privacy laws.
We may update this Privacy Policy periodically to reflect changes in our services, legal requirements, or data practices. When we make material changes, we will post the updated policy on this page with a revised effective date and, where appropriate, notify affected clients directly. We encourage you to review this policy periodically. Continued use of our services after changes are posted constitutes acceptance of the updated policy.
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Medviz Systems
Website: www.medviz.ai
Email: privacy@medviz.ai
Sales: sales@medviz.ai
Phone: +1 (727) 214-2749 (Mon–Fri, 8am–5pm ET)
For HIPAA-related requests, please include “HIPAA Privacy Request” in the subject line of your email.