Privacy Policy Statement

Effective Date: 11/16/2025
Company Name: Heritage Acupuncture
Address: 9033 Shady Grove ct.  Gaithersburg, MD 20877
Contact:301-868-9802 | DTran@HeritageAcu.com

1. Our Commitment to Your Privacy

At Heritage Acupuncture, your privacy and trust are our top priorities. We are committed to safeguarding your personal and health information in accordance with federal law (HIPAA) and Maryland state law, including the Maryland Confidentiality of Medical Records Act (MCMRA). This policy explains how we collect, use, and protect your information, and the rights you have as our patient.

2. Information We Collect

We may collect and maintain the following information as part of your care and our business operations:

  • Personal Identification Information: Name, date of birth, address, phone number, and email.

  • Health Information: Medical history, symptoms, diagnoses, treatment plans, and clinical notes.

  • Payment and Insurance Information: Billing details, insurance numbers, and related financial data.

  • Emergency Contact or Authorized Representative Information.

3. How We Use Your Information

Your information is used for legitimate health and administrative purposes, including:

  • Providing medical and wellness care and coordinating treatment.

  • Communicating with you regarding appointments, results, and care plans.

  • Billing and insurance processing.

  • Quality assurance, training, and compliance with legal or regulatory obligations.

  • Preventing or responding to public health and safety concerns as required by law.

4. How We Share Your Information

We will only share your information in ways permitted or required by HIPAA and Maryland law. We may disclose your information:

  • With your written authorization for specific purposes you approve.

  • To other healthcare providers involved in your treatment.

  • To your health insurer or plan for payment and administrative purposes.

  • For health care operations, such as audits or accreditation reviews.

  • As required by law, such as for reporting certain communicable diseases, suspected abuse or neglect, or in response to a valid court order.

Under Maryland law, additional privacy protections apply to certain types of information, including:

  • Mental health records and psychotherapy notes, which cannot be released without your express written authorization, except as allowed by law.

  • HIV test results and genetic information, which may only be disclosed with your specific written consent or as expressly permitted by statute.

  • Substance use disorder treatment records, which are subject to federal and state confidentiality protections.

We do not sell, rent, or trade your personal or health information to third parties.

5. Your Rights Under HIPAA and Maryland Law

You have important rights regarding your medical information, including the right to:

  • Access and Obtain Copies: You may request a copy of your medical record. We may charge a reasonable, cost-based fee as allowed under Maryland law.

  • Request Corrections: You may ask that we amend or correct information you believe is inaccurate or incomplete.

  • Request Restrictions: You may request limits on how we use or share your information for treatment, payment, or operations.

  • Confidential Communications: You may request that we contact you in a specific way (for example, at a different address or phone number).

  • Receive an Accounting of Disclosures: You may request a list of certain disclosures we have made of your information.

  • File a Complaint: You may file a complaint without fear of retaliation if you believe your privacy rights have been violated.

To exercise these rights, please contact our Privacy Officer listed below.

6. Safeguarding Your Information

We maintain strict administrative, technical, and physical safeguards to protect your personal and medical information against unauthorized access, disclosure, or misuse. All staff and contractors are trained on HIPAA and Maryland privacy requirements and are required to sign confidentiality agreements.

7. Changes to This Policy

We may update this Privacy Policy periodically to reflect changes in the law or our practices. Updates will be posted in our clinic and on our website, with a new effective date.

8. Contact Information

If you have questions about this Privacy Policy or wish to exercise your privacy rights, please contact:

Privacy Officer: Daisy Tran
Phone: 301-869-9802
Email: DTran@HeritageAcu.com
Mailing Address: 9033 Shady Grove ct. Gaithersburg, MD 20877