Privacy Policy

Privacy Policy

Golden State Medical, Inc.

Effective Date: January 1, 2025

Last Updated: January 1, 2025

Golden State Medical, Inc. (“Golden State Medical,” “we,” “us,” or “our”) is committed to protecting the privacy and security of personal information. This Privacy Policy describes how we collect, use, disclose, and protect personal information when you visit goldenstatemedical.net, communicate with us, or use our services.

This Privacy Policy is intended to comply with applicable privacy laws, including the California Consumer Privacy Act as amended by the California Privacy Rights Act (CCPA/CPRA) and, where applicable, the Health Insurance Portability and Accountability Act (HIPAA).

1. Scope of This Policy

This Privacy Policy applies to:

  1. Website visitors
  2. Patients and customers
  3. Caregivers and authorized representatives
  4. Business contacts and vendors

This policy does not replace any HIPAA Notice of Privacy Practices that may apply to protected health information (PHI). Where HIPAA applies, HIPAA governs.

2. Information We Collect

A. Personal Information

We may collect the following categories of personal information:

  1. Identifiers (name, address, phone number, email address)
  2. Insurance information
  3. Billing and payment information
  4. Device and prescription-related information
  5. Online identifiers (IP address, browser type)
  6. Customer service communications

B. Sensitive Personal Information

As defined under California law, this may include:

  1. Health-related information
  2. Insurance and benefit information
  3. Government identifiers (when required for billing)

We collect and use sensitive personal information only as necessary to provide services, verify coverage, complete billing, comply with law, and operate our business.

3. How We Use Personal Information

We use personal information to:

  1. Provide and support medical equipment and related services
  2. Verify and pre-authorize insurance benefits
  3. Complete billing with Workers’ Compensation, private insurance, Medicare, and Medi-Cal
  4. Communicate regarding orders, services, and support
  5. Process payments
  6. Improve our website and services
  7. Comply with legal and regulatory obligations

We do not use personal information for automated decision-making or profiling that produces legal or significant effects.

4. HIPAA-Regulated Information

Some information we collect may be considered Protected Health Information (PHI) under HIPAA.

When HIPAA applies:

  1. We use and disclose PHI only as permitted by HIPAA
  2. We apply administrative, technical, and physical safeguards
  3. Patients have rights under HIPAA, including access and amendment rights

HIPAA-regulated information is exempt from certain California privacy rights but remains protected under federal law.

5. Sharing of Personal Information

We do not sell personal information.

We may disclose personal information to:

  1. Insurance carriers and benefit administrators
  2. Billing and claims processing partners
  3. Service providers (IT, payment processing, customer support)
  4. Government agencies as required by law
  5. Professional advisors (legal, accounting)

All service providers are contractually required to protect personal information and use it only for authorized purposes.

6. Cookies & Online Tracking

We may use cookies and similar technologies to:

  1. Operate and secure our website
  2. Understand website usage
  3. Improve user experience

We do not use cookies for cross-context behavioral advertising involving sensitive health data.

You may control cookies through your browser settings. Disabling cookies may affect website functionality.

7. Your California Privacy Rights

If you are a California resident, you have the right to:

  1. Know what personal information we collect and disclose
  2. Access your personal information
  3. Correct inaccurate personal information
  4. Delete personal information (subject to legal exceptions)
  5. Limit the use of sensitive personal information
  6. Opt out of the sale or sharing of personal information (we do not sell or share)
  7. Not be discriminated against for exercising privacy rights

8. Exercising Your Rights

To submit a request, contact us at:

Phone: (530) 885-0981

We will verify your request before responding. Authorized agents may submit requests with proper documentation.

9. Data Retention

We retain personal information only as long as reasonably necessary to:

  1. Provide services
  2. Complete billing and insurance requirements
  3. Comply with legal, regulatory, and contractual obligations

Retention periods may vary depending on the type of information and applicable law.

10. Security Measures

We implement reasonable administrative, technical, and physical safeguards to protect personal information, including:

  1. Encryption in transit (TLS)
  2. Access controls
  3. Secure systems and monitoring

No system is 100% secure. We cannot guarantee absolute security but continually work to protect information.