Privacy Policy
Effective date: July 1, 2026
Who we are
This privacy policy describes how Brixa Health (“Brixa,” “we,” “us”) collects, uses, and protects information through this website (brixahealth.com). Brixa is a revenue cycle management partner for buy-and-bill specialty medical practices.
Information we collect
Information you provide. When you email or call us, we collect the information you choose to send — for example your name, practice name, role, and contact details, and whatever you include in the message.
Automatic information. Our hosting infrastructure may record standard server log data when you visit the site, including your IP address, browser type, referring URL, and the date and time of your visit. This data is used only for security monitoring and diagnosing technical issues.
No cookies or trackers. This website does not set cookies, use analytics services, or load third-party tracking scripts. Web fonts are self-hosted and do not send data to external services.
How we use your information
We use the information you send us to:
- Respond to your inquiry
- Follow up with you about our services, if you have requested contact
- If you opt in, send you occasional emails about Brixa services, industry insights, or resources relevant to your practice. You can unsubscribe at any time using the link in any email.
- Improve how we serve practices like yours (in aggregate, never individually identifiable)
We do not sell or share your personal information
We do not sell your personal information. We do not share your personal information with third parties for their own marketing purposes. “Sell” and “share” have the meanings given in the California Consumer Privacy Act (CCPA/CPRA).
Service providers
We may disclose information to service providers who help us operate the website and respond to inquiries. These providers are contractually required to use your information only for the services they perform on our behalf. Current categories include:
- Cloud hosting and database infrastructure (Microsoft Azure)
- Customer relationship management (CRM)
- Email delivery services
- Error monitoring and application performance tools
Data retention
We retain the information you submit for as long as reasonably necessary to fulfill the purpose for which it was collected. If you do not become a client, we will delete your inquiry data within 24 months of your submission. If you do become a client, we retain information as needed to support the engagement and to comply with legal obligations, resolve disputes, and enforce our agreements.
Data security
We use commercially reasonable administrative, technical, and physical safeguards to protect the information we collect. Data is transmitted over HTTPS and stored in access-controlled database infrastructure. No method of electronic storage or transmission is completely secure, and we cannot guarantee absolute security.
Protected health information (HIPAA)
This website is not intended to receive protected health information (PHI). Please do not include patient names, medical records, or any individually identifiable health information in emails or other messages you send us through this site.
When Brixa provides revenue cycle management services to a healthcare practice, our handling of PHI is governed by a Business Associate Agreement (BAA) between Brixa and that practice, as required by the Health Insurance Portability and Accountability Act (HIPAA). That agreement — not this website privacy policy — governs how we receive, use, and safeguard PHI in the course of a client engagement.
California privacy rights (CCPA/CPRA)
If you are a California resident, the California Consumer Privacy Act and the California Privacy Rights Act (collectively, “CCPA”) may provide you with additional rights regarding your personal information, including the right to:
- Know what personal information we collect and how we use it
- Request access to and a copy of your personal information
- Request deletion of your personal information
- Request correction of inaccurate personal information
- Not be discriminated against for exercising your privacy rights
We do not sell or share (as defined by CCPA) personal information. We have not sold or shared personal information in the preceding 12 months.
Categories of personal information collected in the preceding 12 months: Identifiers (name, email address, phone number, if you provide them); professional or employment-related information (role, practice name, if you include them in a message); internet or network activity (server log data, if applicable).
To exercise any of these rights, contact us at support@brixahealth.com. We will verify your identity before responding and will respond within the timeframes required by law.
Other state privacy rights
Residents of other states with comprehensive privacy laws (including Virginia, Colorado, Texas, and others) may have similar rights under their state’s law. Because the information we collect through this website is business-contact data in a commercial context, most state privacy laws outside California do not currently apply to this data. If you believe your state’s law gives you rights regarding information you’ve submitted, contact us at support@brixahealth.com and we will respond in good faith.
Children’s privacy
This website is not directed at individuals under the age of 18. We do not knowingly collect personal information from children.
Changes to this policy
We may update this policy from time to time. When we do, we will revise the “Effective date” at the top of this page. We encourage you to review this policy periodically.
Contact us
If you have questions about this privacy policy or want to exercise your rights regarding your personal information, contact us at:
Brixa Health
support@brixahealth.com