Privacy Policy

Who we are

Our website address is: https://AllCareMBS.com.
AllCare Medical Billing Services (“we,” “our,” or “us”) provides medical billing, credentialing, revenue cycle management, and related healthcare administrative services to providers across the United States.

Medicare & Medicaid Compliance

AllCare Medical Billing Services follows billing and documentation standards established by:

  • Centers for Medicare & Medicaid Services (CMS)
  • Applicable State Medicaid Programs
  • Federal healthcare program integrity laws

We ensure:

  • Accurate claim submission and coding in compliance with CMS guidelines
  • Adherence to the False Claims Act and anti-fraud regulations
  • Proper handling of Electronic Remittance Advice (ERA) and claims data
  • Compliance with payer-specific requirements for Medicare and Medicaid billing
  • Secure transmission of healthcare data using compliant systems

We do not engage in fraudulent billing practices, upcoding, or misrepresentation of services.

HIPAA Compliance & Protected Health Information (PHI)

AllCare Medical Billing Services complies with the Health Insurance Portability and Accountability Act (HIPAA) and applicable federal and state healthcare privacy laws.

As part of our services, we may access, receive, transmit, or store Protected Health Information (PHI) on behalf of healthcare providers (“Covered Entities”).

We are committed to:

  • Implementing Administrative, Physical, and Technical Safeguards as required under the HIPAA Security Rule
  • Maintaining the confidentiality, integrity, and availability of PHI
  • Ensuring workforce members are trained in HIPAA compliance
  • Entering into Business Associate Agreements (BAAs) with clients as required under HIPAA
  • Reporting any unauthorized use or disclosure of PHI in accordance with the HIPAA Breach Notification Rule

We only use or disclose PHI:

  • For treatment, payment, and healthcare operations (TPO)
  • As permitted or required by law
  • As authorized by the Covered Entity or the patient, where applicable

Comments

When visitors leave comments on our site, we collect the data shown in the comments form, along with the visitor’s IP address and browser user agent string to help detect spam.

An anonymized string (hash) created from your email address may be provided to the Gravatar service. Their privacy policy is available at: https://automattic.com/privacy/. After approval, your profile picture may be visible publicly.

Media

If you upload images to the website, avoid uploading images with embedded location data (EXIF GPS). Visitors may extract such data from images.

Cookies

We use cookies to enhance user experience:

Editing/publishing creates a temporary cookie lasting one day

Comment cookies (name, email, website) last for one year

Temporary cookies for login compatibility (deleted after browser close)

Login cookies last two days; “Remember Me” extends to two weeks

Screen preference cookies last one year

Who we share your data with

We do not sell or rent personal or healthcare data.

We may share data only:

  • With authorized healthcare providers and payers for billing purposes
  • To comply with legal obligations
  • With secure third-party vendors under strict confidentiality agreements (and BAAs where applicable)

If you request a password reset, your IP address will be included in the reset email

How long we retain your data

Comments and metadata are retained indefinitely

User profiles (if any) are stored until the user deletes them

Healthcare and billing records are retained in accordance with:

State and federal regulations

CMS record retention requirements

What rights you have over your data

If you have an account or have submitted information:

You may:

  • Request access to your personal data
  • Request correction of inaccurate data
  • Request deletion of your data (subject to legal and compliance requirements)

For PHI-related requests, please contact your healthcare provider directly, as they are the Covered Entity under HIPAA.

Where your data is sent

Visitor comments may be checked through automated spam detection services.

Healthcare-related data is processed through secure, HIPAA-compliant systems and clearinghouses.

Data Security

We implement industry-standard safeguards, including:

  • Data encryption (in transit and at rest)
  • Secure access controls and authentication
  • नियमित system monitoring and risk assessments
  • Restricted access to PHI on a need-to-know basis

Breach Notification

In the event of a data breach involving unsecured PHI, we will:

  • Notify affected Covered Entities without unreasonable delay
  • Assist in notifying affected individuals as required
  • Comply with all obligations under the HIPAA Breach Notification Rule

Contact Us

For questions regarding this Privacy Policy or data protection practices:

Visit: https://AllCareMBS.com


Scroll to Top