Privacy policy

Last updated: July 3, 2026

Scribexa Privacy Policy

Scribexa is a private clinical documentation workspace for authorized SNF/LTC pilot users. This policy explains the public website, support, and pilot data boundaries used for Scribexa.

Public site

The marketing site and public support forms are not clinical channels and should not receive PHI.

Private pilot

Clinical workflows are limited to authorized users after appropriate agreements and access controls.

EHR data

PointClickCare access is read-only in v1 and used only for approved pilot workflows.

Information We Collect

When you use the public Scribexa website, we may receive basic contact information that you choose to provide, such as name, work email, organization, role, and message content. Public forms use email links and are intended only for access, support, vendor review, and pilot coordination.

In authorized pilot workflows, Scribexa may process account, authentication, audit, facility, provider, patient chart, and documentation data needed to support clinician review. Clinical data is handled only inside the private product boundary and only after appropriate authorization.

How We Use Information

We use public contact information to respond to inquiries, coordinate pilot access, support application reviews, and provide product updates when requested.

We use authorized pilot data to provide chart-aware documentation support, preserve source context, support clinician review, and maintain operational, security, and audit records for the service.

Clinical And PHI Boundaries

Do not submit patient information, PHI, credentials, secrets, authorization codes, or clinical details through public website forms or public support email. Public website messages are not a clinical support channel.

Scribexa does not provide emergency services or replace clinical judgment. Clinicians remain responsible for reviewing, editing, attesting, and approving documentation before use.

Sharing And Service Providers

We do not sell personal information. We may share information with service providers that help us host, secure, operate, and support Scribexa, subject to appropriate contractual and security controls.

When EHR integrations are used, data exchange is limited to the authorized integration purpose, the approved scopes, and the applicable organization and user permissions.

Security And Retention

Scribexa uses access controls, encrypted transport, managed cloud infrastructure, secret storage, logging, and review workflows to protect the service. No method of transmission or storage is perfectly secure, so we keep the public website outside PHI workflows and restrict clinical activity to authorized product surfaces.

We retain information for as long as needed to provide the service, comply with obligations, resolve disputes, support audit needs, and protect Scribexa and its users.

Your Choices And Contact

You may contact us to ask about access, support, correction, or deletion of information associated with a public inquiry or pilot relationship. Requests may be subject to identity, security, legal, contractual, or clinical-record requirements.

Contact Scribexa at pilot@scribexa.com.