Our Commitment to Your Privacy

Nivano Physicians is committed to protecting the privacy and security of your Protected Health Information (PHI). As a covered entity under the Health Insurance Portability and Accountability Act (HIPAA), we are required to maintain the privacy of your health information and provide you with this notice of our legal duties and privacy practices.

This policy is established in compliance with:

What is Protected Health Information (PHI)?

Protected Health Information (PHI) includes all individually identifiable health information that we create, receive, maintain, or transmit in any form (electronic, paper, or oral) that relates to:

Examples of PHI Include:

How We May Use and Disclose Your PHI

Uses and Disclosures for Treatment, Payment, and Healthcare Operations

We may use and disclose your PHI without your authorization for:

Treatment

Example: We may share your medical information with a specialist to whom you have been referred for treatment.

Payment

Example: We may submit claims to your insurance company that include your diagnosis and treatment information.

Healthcare Operations

Example: We may use your health information to evaluate the quality of care provided by our healthcare providers.

Uses and Disclosures That Require Your Authorization

We will obtain your written authorization before using or disclosing your PHI for:

Uses and Disclosures That May Be Made Without Your Authorization

In certain situations, we may use or disclose your PHI without your authorization, including:

Required by Law

Public Health Activities

Health Oversight Activities

Judicial and Administrative Proceedings

Law Enforcement

Specialized Government Functions

Your Individual Rights Under HIPAA

Right of Access

You have the right to inspect and obtain copies of your PHI in our designated record sets, which include:

How to Request: Submit written request to our Privacy Officer
Timeframe: We will respond within 30 days (60 days if records are off-site)
Fees: We may charge reasonable fees for copying and postage

Right to Request Amendments

You have the right to request amendments to your PHI if you believe it is inaccurate or incomplete.

How to Request: Submit written request with reason for amendment
Timeframe: We will respond within 60 days
We May Deny if the information:

Right to Request Restrictions

You have the right to request restrictions on how we use or disclose your PHI for treatment, payment, or healthcare operations.

We Are Required to Agree to restrictions if:

Other Restrictions: We are not required to agree but will consider your request

Right to Confidential Communications

You have the right to request alternative methods of communication or to receive communications at alternative locations.

Examples:

Requirements: Request must be reasonable and specify how/where to contact you

Right to an Accounting of Disclosures

You have the right to receive an accounting of certain disclosures of your PHI made by us in the six years prior to your request.

Accounting Includes:

Exceptions: We do not account for disclosures for treatment, payment, healthcare operations, or made with your authorization.

Right to Notification of Breach

You have the right to be notified of breaches of your unsecured PHI.

Notification Timeline: Within 60 days of discovery
Notification Method: Written notice by mail or email
Content: Description of breach, information involved, steps taken, and contact information

Minimum Necessary Standard

We limit the use, disclosure, and request of PHI to the minimum necessary to accomplish the intended purpose, except when:

Business Associate Relationships

We enter into Business Associate Agreements (BAAs) with third parties who perform services for us and may have access to your PHI, including:

Current Business Associates (Examples)

BAA Requirements

Website and Digital Privacy Practices

Tracking Technologies and PHI

Per OCR guidance (March 2024), tracking technologies on our website may collect PHI when:

Technologies We Use

Your Choices

Complaints and Concerns

Filing a Complaint with Nivano Physicians

If you believe your privacy rights have been violated, you may file a complaint:

Privacy Officer

Filing a Complaint with HHS

You may also file a complaint with the U.S. Department of Health and Human Services:

Office for Civil Rights (OCR)

No Retaliation

We will not retaliate against you for filing a complaint or exercising any of your privacy rights.

Changes to This Notice

We reserve the right to change the terms of this notice and make new provisions effective for all PHI we maintain. If we make material changes, we will:

The effective date of this notice is located at the bottom of this document.

Contact Information

Privacy Officer

Title: Chief Privacy Officer
Email: compliance@nivanophysicians.com
Phone: (916) 407-2000
Mail: 2554 Millcreek Drive, Suite 100, Sacramento, CA 95833

General Information

Main Phone: (916) 407-2000
Website: www.nivanophysicians.com
Member Services: customerservice@nivanophysicians.com

Emergency Contact

24/7 Privacy Breach Hotline: (916) 407-2000
Emergency Email: customerservice@nivanophysicians.com

Acknowledgment

This notice describes how medical information about you may be used and disclosed and how you can get access to this information. Please review it carefully.

By receiving services from Nivano Physicians, you acknowledge that you have been provided with this Notice of Privacy Practices and have been informed of your rights regarding your Protected Health Information.


Effective Date: August 7, 2025
Document Version: 1.0
Next Review Date: August 7, 2028
Board Approval: August 7, 2025

This Notice of Privacy Practices complies with the HIPAA Privacy Rule and California state privacy laws. We are committed to protecting your health information and respecting your privacy rights.