Privacy Policy
BIOS Healthcare
1. Introduction
BIOS Healthcare ("BIOS Healthcare," "we," "us," or "our") provides revenue cycle management ("RCM") and related business process outsourcing services to healthcare providers, hospitals, physician groups, and other healthcare organizations ("Clients") in the United States. This Privacy Policy explains how we collect, use, disclose, and protect information when you visit our website at www.bioshcl.com (the "Site"), interact with us, or use our services.
This Policy applies to information collected through the Site. It does not govern the health information we process on behalf of our Clients in the course of providing RCM services — that information is addressed separately in Section 9 (HIPAA and Protected Health Information) and is governed by the Business Associate Agreements ("BAAs") we sign with our Clients and by applicable law.
By using the Site, you agree to the terms of this Privacy Policy. If you do not agree, please do not use the Site.
2. Information We Collect
2.1 Information You Provide Directly
- Contact information (name, company name, job title, email address, phone number, mailing address) submitted through contact forms, demo requests, RFPs, or newsletter sign-ups
- Information submitted through job applications or career inquiries
- Any other information you choose to provide when corresponding with us
2.2 Information Collected Automatically
When you visit the Site, we and our service providers may automatically collect:
- IP address, browser type, device type, and operating system
- Pages visited, time spent on pages, referring/exit URLs, and clickstream data
- Cookies and similar tracking technologies (see Section 5)
2.3 Information From Third Parties
We may receive information about you from business partners, marketing service providers, publicly available sources, or professional networking platforms (e.g., LinkedIn) when they refer you to us or you interact with our content on their platforms.
We do not knowingly collect patient health information through this Site. The Site is intended for business, prospective client, and prospective employee communications — not for submission of medical records or protected health information ("PHI"). Please do not submit PHI through Site contact forms.
3. How We Use Information
We use the information described above to:
- Respond to inquiries and provide requested information about our services
- Evaluate and process job applications
- Operate, maintain, and improve the Site
- Send marketing communications (with an option to opt out at any time)
- Analyze Site usage and trends
- Detect, prevent, and address security incidents, fraud, or technical issues
- Comply with legal obligations and enforce our agreements
- Communicate with current and prospective Clients regarding our services and contractual relationships
We do not sell personal information collected through the Site to third parties.
4. How We Share Information
We may share information with:
- Service providers who perform functions on our behalf (e.g., website hosting, email delivery, analytics, CRM platforms), under contractual confidentiality obligations
- Professional advisors, including lawyers, auditors, and insurers, as needed
- Regulators or law enforcement, when required by law, subpoena, or legal process
- A successor entity, in connection with a merger, acquisition, financing, or sale of assets
- Affiliates, for purposes consistent with this Policy
We do not share Site visitor information with our healthcare Clients except where you have specifically requested to be connected with a Client or in connection with a business transaction you initiated.
5. Cookies and Tracking Technologies
The Site uses cookies, web beacons, and similar technologies to:
- Remember preferences and improve functionality
- Understand how visitors use the Site (analytics)
- Support marketing and advertising efforts, where applicable
You can control cookies through your browser settings. Disabling cookies may affect Site functionality. We use tools such as Google Analytics to understand website traffic; you may opt out via the Google Analytics Opt-out Browser Add-on.
6. Data Security
We maintain administrative, technical, and physical safeguards designed to protect information collected through the Site from unauthorized access, use, disclosure, alteration, or destruction. As a company that provides RCM services to healthcare organizations, BIOS Healthcare also maintains enterprise information security controls — including access controls, encryption, network monitoring, and employee training — appropriate to the sensitivity of the data we handle in our client operations. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
7. Data Retention
We retain personal information collected through the Site for as long as necessary to fulfill the purposes described in this Policy, unless a longer retention period is required or permitted by law (including recordkeeping obligations related to healthcare industry contracts).
8. Your Privacy Choices and Rights
Depending on your state of residence, you may have rights under laws such as the California Consumer Privacy Act (CCPA/CPRA), Virginia Consumer Data Protection Act, Colorado Privacy Act, and similar state privacy laws, including the right to:
- Know what personal information we collect and how it is used
- Request access to or a copy of your personal information
- Request correction or deletion of your personal information
- Opt out of certain data sharing (note: we do not sell personal information)
- Not be discriminated against for exercising your rights
To exercise these rights, contact us using the information in Section 12. We will verify your request before responding.
You may opt out of marketing emails at any time by using the "unsubscribe" link in our communications.
9. HIPAA and Protected Health Information
BIOS Healthcare provides revenue cycle management services to healthcare providers and, in doing so, may act as a Business Associate under the Health Insurance Portability and Accountability Act ("HIPAA") on behalf of our Clients, who are HIPAA Covered Entities.
- Any PHI we process is handled solely on behalf of our Clients, under the terms of a Business Associate Agreement, and in accordance with the HIPAA Privacy, Security, and Breach Notification Rules.
- This website Privacy Policy does not serve as a HIPAA Notice of Privacy Practices. Patients seeking information about how their health information is used should refer to their healthcare provider's own Notice of Privacy Practices.
- We do not use PHI processed on behalf of Clients for our own marketing or Site-related purposes.
10. Children's Privacy
The Site is intended for business audiences and is not directed to individuals under 18. We do not knowingly collect personal information from children.
11. Third-Party Links
The Site may contain links to third-party websites. We are not responsible for the privacy practices or content of those sites. We encourage you to review their privacy policies.
12. Contact Us
If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact us at:
BIOS Healthcare
5-4/1, MAIN ROAD VELANGI, KARAPA, East Godavari, Andhra Pradesh, India, 533260
Email: info@bioshcl.com
13. Changes to This Policy
We may update this Privacy Policy from time to time. The "Last Updated" date at the top reflects the most recent revision. Material changes will be posted on this page, and where required by law, we will provide additional notice.