Legal
Last Updated: 20th Feb 2026
This Privacy Policy explains how EZAppointo ("EZAppointo," "we," "us," or "our") collects, uses, processes, discloses, and protects personal information and Protected Health Information ("PHI") in connection with the EZAppointo platform, including scheduling, messaging, and telehealth video consultation services (the "Platform").
EZAppointo is designed to meet healthcare privacy expectations and incorporates administrative, technical, and operational safeguards.
EZAppointo provides software infrastructure for healthcare Providers.
EZAppointo is NOT a healthcare provider and does not diagnose, treat, or provide medical care.
Patient Data:
Provider Data:
Technical Data:
Payment Data:
EZAppointo does NOT store full credit card numbers.
Video Consultation Data:
Sessions are NOT recorded by default.
EZAppointo may process PHI on behalf of Providers.
EZAppointo implements safeguards including:
Providers are responsible for determining PHI content entered into the system.
Where applicable under U.S. law, EZAppointo may function as a Business Associate.
Providers must execute a Business Associate Agreement where required.
EZAppointo processes PHI solely to provide Platform services and does not use PHI for advertising or resale.
Providers are responsible for HIPAA compliance in their clinical workflows.
EZAppointo may send appointment reminders via SMS.
Providers are responsible for obtaining consent.
Patients may opt out by replying STOP.
SMS is transmitted through telecommunications providers and delivery cannot be guaranteed.
Video consultations are transmitted securely.
EZAppointo does not record consultations unless explicitly enabled.
Providers are responsible for obtaining patient consent before recording.
EZAppointo is not responsible for third-party interception caused by insecure networks.
Payments are processed by Stripe.
Stripe independently handles payment card information.
EZAppointo does not store sensitive card numbers.
Stripe's privacy and security policies govern payment processing.
EZAppointo may integrate with:
Data shared with integrations is limited to operational necessity.
Providers control integration settings.
EZAppointo is not responsible for third-party system security.
EZAppointo uses:
However, no system is 100% secure.
Users are responsible for protecting login credentials.
Data is retained only as necessary for operational, contractual, and legal purposes.
Providers are responsible for medical record retention requirements.
If EZAppointo becomes aware of a confirmed unauthorized access event affecting regulated PHI, EZAppointo will notify affected Providers without unreasonable delay, consistent with applicable law and contractual obligations.
Providers are responsible for regulatory reporting and patient notification unless otherwise agreed in writing.
Providers outside the United States must comply with their local privacy laws.
EZAppointo provides reasonable safeguards but does not assume regulatory responsibility for Provider jurisdiction compliance.
Users may request:
Requests may be sent to info@finitsystems.com
Patients should contact their Provider for medical record requests.
EZAppointo shall not be liable for:
To the maximum extent permitted by law, liability is limited.
EZAppointo uses cookies to:
Users may disable cookies.
EZAppointo may update this policy.
Continued use constitutes acceptance.
EZAppointo
Email: info@finitsystems.com
Address: 45 West John Street Suite 207
Hicksville, NY 11801