Last Updated: February 14, 2025
Forward Technologies, Inc. DBA Vodera ("Forward," "Company," "we," "us," and/or "our") is committed to protecting your privacy and maintaining the security of Protected Health Information ("PHI") and other personal information.
This Privacy Policy describes how we handle information, including personally identifiable data ("Personal Data") and PHI, collected from visitors to our website and through our mobile applications, AI voice agents, and related services.
By accessing or using the Services, you agree to this Privacy Policy. If you do not agree with our policies and practices, you may not use the Services.
As a Business Associate under HIPAA, we collect and process Protected Health Information ("PHI") through our Services. This includes health information created or received by healthcare providers, health plans, employers, or healthcare clearinghouses that relates to past, present, or future physical or mental health conditions, healthcare provision, or payment for healthcare.
PHI we may collect includes health-related identifiers such as patient names and demographic information, medical record numbers, health plan beneficiary numbers, account numbers, certificate/license numbers, device identifiers, voice recordings and transcripts, full face photographic images, and other unique identifying characteristics or codes.
We collect Personal Data when you voluntarily provide information to us through the Services, including contact information, account credentials, payment details, employment information, and communications preferences. This may occur when you create an account, make a payment, or communicate with us through the Services.
When you interact with our Services, we automatically collect technical information about your equipment, browsing actions, and usage patterns. This includes your browser type and version, operating system, IP address, device identifiers, usage data and patterns, communication preferences, and voice recordings and transcripts.
Our Services employ various technologies to collect and store information, including cookies, web beacons, local storage, analytics tools, session replay software, and voice recording technology. We use both persistent cookies (which remain after you close your browser) and session cookies (which expire when you close your browser).
For our AI voice agent services, we collect phone numbers and call records to provide the Services, comply with legal obligations, and maintain opt-out records. We retain call logs to demonstrate compliance with applicable regulations.
We handle PHI in strict compliance with HIPAA and our Business Associate Agreements. Our use and disclosure of PHI is limited to specific permitted purposes, including providing our Services, supporting healthcare operations, processing payments, and complying with legal requirements.
We use Personal Data to operate, maintain, and improve our Services. This includes processing payments, communicating with you about our Services, enhancing our AI systems, and ensuring the security of our platform.
Information collected through our AI voice agents serves several specific purposes in our healthcare revenue cycle services. We use this data to train and improve our AI systems, monitor compliance, optimize service delivery, and maintain accurate records.
We disclose PHI as permitted by HIPAA and our Business Associate Agreements. This includes disclosures to covered entities, other business associates, and regulatory authorities as required by law.
We carefully select and oversee third-party service providers who help us deliver our Services. Our current subprocessors include Amazon Web Services (hosting), Twilio (communications), and AssemblyAI (speech processing).
We will notify users of legal demands for PHI unless prohibited by law. For non-PHI data, we may disclose information as required by valid subpoenas or court orders.
We implement comprehensive security measures to protect your information. We maintain strict access controls, require strong authentication, and conduct regular security monitoring. Our physical and administrative safeguards include employee training, incident response procedures, and quarterly access log reviews.
In the event of a data breach, we follow a documented incident response plan. This includes promptly investigating the incident, taking appropriate corrective action, and providing all required notifications.
Under HIPAA, you have specific rights regarding your PHI. These include the right to access your health information, request amendments, receive an accounting of disclosures, and request restrictions on certain uses or disclosures.
Residents of certain states (including California, Colorado, Connecticut, Utah, and Virginia) may have additional privacy rights under applicable state laws. To exercise these rights, please contact us at privacy@vodera.ai.
You can control your communication preferences through several methods. To opt out of marketing communications, you may use the unsubscribe mechanism in our messages, adjust your account settings, or contact us directly.
We maintain PHI in accordance with HIPAA requirements, state laws, and our Business Associate Agreements. For Personal Data, we retain information as long as necessary to provide our Services, comply with legal obligations, or fulfill legitimate business purposes.
Our website and direct Services are not intended for children under 13 years of age, and we do not knowingly collect information directly from children under 13 through our website or Services.
However, in our role as a Business Associate under HIPAA, we may process PHI and insurance claims related to minors when such information is provided to us by healthcare providers, insurance companies, or other covered entities who are our clients.
While we primarily store and process data within the United States, some data transfers to international locations may occur. In such cases, we implement appropriate safeguards and data transfer mechanisms to protect your information.
We may update this Privacy Policy periodically to reflect changes in our practices or for other operational, legal, or regulatory reasons. We will notify you of material changes through our website, email communications, or other appropriate means.
Privacy Officer: Robby Abaya
Email: privacy@vodera.ai
Phone: +1 305-859-1217
Address: 1000 Brickell Ave Suite 715, PMB 1443, Miami, FL 33131