Privacy policy
This policy explains how Unagencied LLC ("we", "us") handles information in Patient Greenlight, at patientgreenlight.com.
Who this covers
Patient Greenlight is used by dental practices and their staff. A practice decides what patient information is entered. We handle that information on the practice's behalf and under its direction. If you are a patient, your dental practice's own Notice of Privacy Practices describes how your health information is used, and your practice is the right place to ask about your records.
Information we handle
- Staff account information: name, work email address, password (stored in protected form), and mobile phone number if the staff member chooses text-message verification.
- Patient information entered by a practice or by a patient at the practice: name, date of birth, phone number, health history, medications, clinical notes, photographs, X-ray images and signed forms.
- Usage records: which staff account opened or changed which record and when, kept for security and audit purposes.
How we use it
- To provide the service to the dental practice.
- To verify staff identity at sign-in, including by sending verification codes.
- To keep the service secure and maintain an audit trail.
We do not sell personal information. We do not use patient information for advertising.
Mobile phone numbers and text messages
We collect a staff member's mobile phone number only to send sign-in verification codes by text message, and only with that person's consent. Mobile phone numbers, text messaging opt-in data and consent are not shared with or sold to third parties or affiliates for marketing or promotional purposes. Phone numbers are passed only to the messaging provider that delivers the texts.
Who we share information with
We share information only with service providers that host and operate the service for us, under agreements that limit how they may use it, and when the law requires it. Patient information is available to the dental practice that entered it.
Storage and security
Information is stored in the United States with a cloud hosting provider. It is encrypted when stored and when sent. Staff access requires a password and a second verification step, and sessions sign out automatically after a period of inactivity.
How long we keep it
Patient records are kept for as long as the dental practice uses the service and as its record-keeping obligations require. Staff account information is kept while the account is active. Audit records are kept for about six years.
Your choices
- Staff can stop text messages at any time by replying STOP, or by asking their practice administrator to switch verification methods.
- Patients can ask their dental practice to see or correct their information.
Changes
If we change this policy, we will post the new version here with a new effective date.
Contact
Unagencied LLC
Contact details are being added to this page.