a

At INconnection Therapies, we believe meaningful change happens when you feel seen, supported, and empowered.

Contact

t. (479) 426-7820
e. iris@inconnectiontherapies.com

Privacy Policy

who we are

Our website address is: https://inconnectiontherapies.com.

INconnection Therapies is a provider of therapy and counseling services. This Privacy Policy describes how we collect, use, protect, and disclose your information, including Protected Health Information (PHI) under the Health Insurance Portability and Accountability Act of 1996 (HIPAA).

HIPAA Compliance and Your Protected Health Information (PHI)

We use SimplePractice, a HIPAA-compliant platform, to collect, store, and communicate any information that constitutes PHI. This includes your name, contact details, health history, clinical notes, and any other information shared during the course of therapy.

If you are a patient, your health information is protected under HIPAA. We are committed to safeguarding your PHI, which may include your name, address, contact details, medical history, diagnosis, treatment information, and payment data. This section outlines your rights and our responsibilities under HIPAA.

We will not disclose your PHI without your written authorization unless required or permitted by law (e.g., for treatment, payment, or healthcare operations).

You have the right to access, amend, or request restrictions on your PHI.

You may request an accounting of disclosures and receive a copy of this privacy policy at any time.

For our complete HIPAA Notice of Privacy Practices, please contact us directly at iris@inconnectiontherapies.com

Information we collect

Comments

When visitors leave comments, we collect the data shown in the comment form, your IP address, and browser user agent string for spam detection. Comments do not include PHI unless you voluntarily share such information.

Contact & Intake Forms

If you submit information through our contact form or intake forms, we may collect personal identifiers and, in some cases, PHI. This data is used to respond to inquiries or deliver therapy-related services. All such data is handled according to HIPAA privacy and security standards.

When you submit a request for services or book an appointment, you may be redirected to SimplePractice. The platform securely collects your intake forms, consent documents, and communication. All data submitted via SimplePractice is encrypted and stored in compliance with HIPAA requirements..

Media

If you upload images to the website, you should avoid uploading images with embedded location data (EXIF GPS) included. Visitors to the website can download and extract any location data from images on the website.

Cookies

We use cookies to enhance user experience. These cookies may store your preferences, login information, and comment form details. Cookies do not store PHI.

Embedded content from other websites

Articles on this site may include embedded content (e.g. videos, images, articles, etc.). Embedded content from other websites behaves in the exact same way as if the visitor has visited the other website.

These websites may collect data about you, use cookies, embed additional third-party tracking, and monitor your interaction with that embedded content, including tracking your interaction with the embedded content if you have an account and are logged in to that website.

Use and Disclosure of Information

We do not sell or share your personal or health information with marketers or third-party advertisers.

We may disclose your PHI:

– With your written authorization.

– For treatment, payment, or healthcare operations.

– As required by law (e.g., court orders, public health requirements).

– To third-party service providers under Business Associate Agreements (BAAs) who help operate our practice (e.g., SimplePractice).

Data Security

We follow HIPAA Security Rule standards and employ:

– SSL encryption on all data transmission.

– Secure email and messaging through SimplePractice’s client portal.

– Role-based access control and encrypted data storage.

How Long We Retain Data

PHI is retained in accordance with state and federal law (typically 6–10 years). Website-related data (such as comments) is stored indefinitely unless removal is requested.

Your rights over your data

If you’ve left comments or submitted forms outside of SimplePractice, you may request an export or deletion of that information, unless we are required to retain it for legal or compliance reasons.

For PHI stored within SimplePractice, please use the secure client portal or contact us directly.

Third-Party Services

– SimplePractice: Our primary client management tool (https://www.simplepractice.com).

– Gravatar: If you use it to display a profile image on comments. Their privacy policy is here: https://automattic.com/privacy/.

Where your data is sent

Visitor comments may be checked through an automated spam detection service.