Privacy Policy
Last Updated: June 2026
1. Introduction
Aurinode ("we," "our," or "us") provides a compliance intelligence platform. We respect the privacy of our users and are committed to protecting it. This Privacy Policy explains how we collect, use, and safeguard operational data when you connect your electronic medical record (EMR) systems or upload logs to our platform.
2. Data Isolation & HIPAA Compliance
Aurinode is designed under a cybersecurity engineering framework that prioritizes data minimization and isolation:
- Metadata Processing: The platform processes metadata-level records (timestamps, billing codes, credential dates, and ratios) to calculate audit exposure.
- PHI/PII Isolation: We do not store Protected Health Information (PHI) or Personally Identifiable Information (PII) on our servers unless explicitly required under a signed Business Associate Agreement (BAA).
- Data Encryption: All data in transit and at rest is secured using AES-256 and Transport Layer Security (TLS 1.3).
3. Information We Collect
When you use our service, we may collect the following types of information:
- Account Information: Your name, work email address, and clinic details submitted via our request forms.
- Integrations & Telemetry: Log timestamps, supervisor mapping metrics, and billing codes generated by your EMR integration to compute compliance statistics.
4. How We Use Your Information
We use the collected information to:
- Calculate and explain your Audit Risk Index score.
- Alert clinical directors to missing session notes, expiring certifications, and authorization boundaries.
- Provide simulated compliance environments inside the Sandbox Simulator.
- Monitor and improve the performance and security of our platform.
5. Contact Us
If you have any questions or concerns about this Privacy Policy or our security practices, please contact us at security@aurinode.com.