ReferralScope Privacy Policy
Effective date: August 6, 2026
ReferralScope is a business-to-business service for healthcare practices and professional organizations. It is not intended for patients or for personal, family, or household use.
Do not submit patient information or protected health information (PHI) to the Service.
This Privacy Policy explains how ReferralScope ("ReferralScope," "we," "us," or "our") handles information in connection with our website, software, maps, provider directories, mailing tools, campaign tools, reports, and related services (collectively, the "Service").
1. Information We May Collect
Depending on how you use the Service, we may collect:
- Account and business information, such as your name, business contact information, practice name, specialty, role, practice locations, login information, and account settings.
- Billing and transaction information, such as subscription status, campaign purchases, invoices, payment status, refunds, and limited payment-card details provided by our payment processor.
- Service and campaign information, such as provider searches, filters, geographic settings, selected recipient lists, campaign content, proofs, mailing status, costs, and campaign history.
- Provider and business information, including names, specialties, credentials, professional identifiers, business addresses, and practice affiliations.
- Technical and usage information, such as IP address, browser and device information, pages or features used, dates and times of access, cookies or similar identifiers, and diagnostic or security logs.
- Communications and support information that you provide when you contact us, submit feedback, or request assistance.
- Optional business information that you choose to provide through current or future features, such as provider-data corrections, campaign feedback, deliverability information, or aggregate campaign results.
We obtain this information directly from you or your organization, automatically from your device when you use the Service, from our service providers, and from public, government or other third-party sources.
The only information we collect that may be considered sensitive under applicable privacy laws is your account login information. We use it to provide the Service and secure accounts, and we do not use it to infer characteristics about you.
2. Patient Information and PHI
ReferralScope is not designed to collect, receive, store, or process patient information or PHI. You must not submit patient names, contact information, medical records, diagnoses, treatment information, insurance information, patient referral documents, identifiable patient-level outcomes, or any other PHI.
If we discover patient information or PHI in the Service, we may remove or delete it.
ReferralScope is not an electronic health record, patient communication system, or HIPAA-covered service, and we do not enter into business associate agreements unless expressly agreed in a separate written contract.
3. How We May Use Information
We may use information to:
- create and administer accounts;
- provide, operate, maintain, secure, and improve the Service;
- display, organize, filter, geocode, and improve provider and business information;
- create, approve, process, print, mail, and document campaigns;
- process payments, manage subscriptions, and maintain transaction records;
- communicate about accounts, campaigns, billing, security, support, and Service updates;
- prevent fraud, misuse, unauthorized access, and violations of our Terms of Service;
- understand how the Service is used and develop new features, analytics, and services;
- create aggregated or de-identified analytics, benchmarks, and business insights;
- comply with legal, tax, accounting, and contractual obligations; and
- protect ReferralScope, our users, and others.
We may also use business contact information to send information about ReferralScope products, services, or offers. You may opt out of promotional emails, but we may continue to send account, billing, campaign, security, and service-related messages.
4. Aggregated and De-Identified Information
We may create and use aggregated or de-identified information for analytics, benchmarking, research, provider-data improvement, campaign and deliverability analysis, market and specialty insights, product development, service improvement, and business operations.
We maintain this information in de-identified form, do not attempt to re-identify it, and require recipients to do the same. We will not present aggregated or de-identified information as identifying a specific patient, individual user, or practice.
5. How We May Share Information
We may share information:
- With service providers that help us operate the Service, such as payment processors, printing and mailing vendors, hosting providers, mapping and geocoding providers, provider-data vendors, analytics providers, communications providers, cybersecurity providers, and professional advisers.
- At your direction, including when processing a mailing campaign or enabling a feature you select.
- Within your organization, with authorized users or account administrators.
- When reasonably necessary to comply with law, legal process, or government requests; investigate fraud, security incidents, or misuse; enforce our agreements; or protect legal rights or safety.
- In connection with a merger, acquisition, financing, reorganization, sale of assets, or similar business transaction.
- In aggregated or de-identified form that does not reasonably identify a specific patient, individual user, or practice.
We do not sell personal information, and we do not share personal information for cross-context behavioral advertising. We do not sell patient information or PHI. We do not disclose personal information to third parties for those third parties' own marketing purposes.
6. Cookies and Similar Technologies
We and our service providers may use cookies and similar technologies to keep users signed in, remember preferences, operate website and account features, maintain security, understand usage, measure performance, and improve ReferralScope. You may be able to manage cookies through your browser settings or any cookie preference tool we make available. Disabling some cookies may affect how parts of the Service function.
Where required by applicable law, we treat a Global Privacy Control or similar browser opt-out signal as a valid opt-out request.
7. Data Retention
We retain information for as long as reasonably necessary to provide the Service, administer accounts and subscriptions, process and document campaigns and transactions, comply with legal and accounting obligations, prevent fraud, maintain security, resolve disputes, and enforce our agreements.
How long we keep information depends on the type of information and why we hold it. Account information is generally retained while the account is active and for a reasonable period afterward. Billing and transaction records are retained for the period required by applicable tax and accounting rules. When information is no longer reasonably necessary, we may delete, anonymize, or securely dispose of it. We may retain aggregated or de-identified information for longer periods.
8. Security
We use reasonable safeguards designed to protect information against unauthorized access, loss, misuse, alteration, or disclosure. However, no online service or storage system can be guaranteed to be completely secure. You are responsible for protecting your login credentials and notifying us promptly of suspected unauthorized account activity.
9. Your Choices and Requests
You may update certain account information through the Service and may opt out of promotional emails by using the unsubscribe link or contacting us.
Depending on your location and applicable law, you may have rights to request access to, correction of, deletion of, or a copy of certain personal information, or to appeal a decision we make about your request. These rights may be subject to legal and operational exceptions.
To submit a privacy request, email hello@referralscope.com with the subject line "Privacy Request." We may take reasonable steps to verify your identity and authority before acting on a request, and we will respond within the time required by applicable law. You may use an authorized agent to submit a request on your behalf, and we may ask the agent for proof of authorization.
We will not deny you the Service, charge you a different price, or provide a different level of service because you exercised a privacy right.
10. Provider and Business Information
Much of the information available through ReferralScope concerns healthcare professionals and organizations acting in their professional or business capacities. This information may come from government databases, public sources, professional directories, customers, or ReferralScope's own processing.
A provider or authorized representative may request a correction or update to a listing by contacting hello@referralscope.com.
11. Third-Party Services
The Service may rely on or link to third-party services. Their privacy practices are governed by their own policies, not this Privacy Policy.
12. Children
ReferralScope is intended for business users who are at least 18 years old. We do not knowingly collect personal information from children.
13. United States Only
ReferralScope is intended for business users located in the United States, and information is processed and stored in the United States. The Service is not offered to individuals in the European Economic Area or the United Kingdom.
14. Changes to This Policy
We may update this Privacy Policy from time to time. We will post the updated version with a revised "Effective date." If required by law, we will provide additional notice of material changes.
15. Contact Us
ReferralScope
137 Norcross Street, Roswell, Georgia 30075
hello@referralscope.com
(404) 548-8279
