Privacy Policy

Last Updated: June 2026

1. Introduction

Aurinode ("we," "our," or "us") provides a compliance intelligence platform. We respect the privacy of our users and are committed to protecting it. This Privacy Policy explains how we collect, use, and safeguard operational data when you connect your electronic medical record (EMR) systems or upload logs to our platform.

2. Data Isolation & HIPAA Compliance

Aurinode is designed under a cybersecurity engineering framework that prioritizes data minimization and isolation:

  • Metadata Processing: The platform processes metadata-level records (timestamps, billing codes, credential dates, and ratios) to calculate audit exposure.
  • PHI/PII Isolation: We do not store Protected Health Information (PHI) or Personally Identifiable Information (PII) on our servers unless explicitly required under a signed Business Associate Agreement (BAA).
  • Data Encryption: All data in transit and at rest is secured using AES-256 and Transport Layer Security (TLS 1.3).

3. Information We Collect

When you use our service, we may collect the following types of information:

  • Account Information: Your name, work email address, and clinic details submitted via our request forms.
  • Integrations & Telemetry: Log timestamps, supervisor mapping metrics, and billing codes generated by your EMR integration to compute compliance statistics.

4. How We Use Your Information

We use the collected information to:

  • Calculate and explain your Audit Risk Index score.
  • Alert clinical directors to missing session notes, expiring certifications, and authorization boundaries.
  • Provide simulated compliance environments inside the Sandbox Simulator.
  • Monitor and improve the performance and security of our platform.

5. Contact Us

If you have any questions or concerns about this Privacy Policy or our security practices, please contact us at security@aurinode.com.