Privacy Policy

Effective Date: 4/17/2025

Provider: Magdalena (Magda) Szczepanska, MSN, APRN, ANP-C

Practice Locations:

  • 22 US Route 6, Suite R1, Port Jervis, NY 12771
  • 216 Driggs Avenue, Brooklyn, NY 11222

Phone: (845) 672-6033

Email: [email protected]

Website: https://dahnp.com

Contact Form: https://dahnp.com/contact/

 


1. Introduction

This Privacy Policy explains how we collect, use, disclose, and protect your personal and health information when you interact with our website or services.

As a healthcare provider, we are committed to complying with the Health Insurance Portability and Accountability Act (HIPAA) and applicable international and state data privacy laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA).

 


2. Definitions

Website – The domain https://dahnp.com and all associated content, forms, and scheduling services.

Provider / Practice / We / Us – Refers to the medical practice of Magdalena Szczepanska, MSN, APRN, ANP-C and authorized personnel.

Personal Data – Any information that can be used to identify you, including name, email, phone number, or IP address.

Protected Health Information (PHI) – Information related to your past, present, or future health, care, or payment for services, as defined by HIPAA.

Cookies – Small text files stored on your browser to collect standard internet log information and visitor behavior data.

Google Analytics – A web analytics service by Google that tracks and reports website traffic.

Processing – Any operation performed on personal or health information, such as collection, use, storage, disclosure, or deletion.

HIPAA – The U.S. law regulating the handling of PHI by healthcare providers and their partners.

GDPR – A European data protection regulation that grants EU residents rights over their personal data.

CCPA – A California law that grants residents certain rights over their personal data and how it is used.

 


3. What Information We Collect

We may collect the following information when you visit our website or use our services:

  • Name, email address, and phone number (via the contact form or scheduling platform)
  • Health-related information you submit for scheduling or consultation purposes
  • IP address, browser type, device type
  • Referral pages and usage data through analytics tools


4. How We Use Your Information

Your data is used only for legitimate medical and business purposes, including:

  • Responding to inquiries and appointment requests
  • Delivering healthcare services and managing your care
  • Facilitating secure appointment scheduling via Optimantra
  • Improving our website and services through analytics
  • Complying with applicable laws and regulations


5. HIPAA Notice

As a covered entity under HIPAA, we follow strict federal regulations in the collection, use, and disclosure of your PHI.

We will only disclose your PHI:

  • With your written consent
  • For treatment, payment, and healthcare operations
  • As required by law (e.g., public health or court order)

For more information about your rights under HIPAA, visit:
https://www.hhs.gov/hipaa/for-individuals/index.html

 


6. Google Analytics

We use Google Analytics to understand how visitors interact with our website. Google may collect and process data including your IP address, browser information, and website activity.

Learn more: https://policies.google.com/technologies/partner-sites
To opt-out: https://tools.google.com/dlpage/gaoptout

 


7. Cookies and Tracking Technologies

Cookies help us enhance your experience by:

  • Remembering preferences
  • Analyzing website performance
  • Improving navigation and usability

You may disable cookies through your browser settings. Note that doing so may affect website functionality.

 


8. Information Sharing & Third-Party Disclosure

We do not sell or rent your data. Your information may be shared with:

  • Optimantra (HIPAA-compliant scheduling and patient portal platform)
  • Web hosting and IT service providers under confidentiality agreements
  • Legal or regulatory authorities when required by law
  • Third-party analytics services (e.g., Google Analytics)

All third parties with access to PHI or personal data are bound by confidentiality and HIPAA-compliant business associate agreements, as applicable.

 


9. Your Rights Under GDPR and CCPA

For EU Residents (GDPR):
You have the right to:

  • Access, correct, or delete your personal data
  • Withdraw consent to processing
  • Restrict or object to certain types of processing
  • Request a portable copy of your data

For California Residents (CCPA):
You have the right to:

  • Know what categories of personal information we collect
  • Request deletion of personal data
  • Opt-out of the sale of personal information (we do not sell data)
  • Receive equal service and price regardless of your privacy choices

To exercise your rights, email us at [email protected]

 


10. You Have the Right to Delete or Request That We Assist in Deleting the Personal Data That We Have Collected About You

You may request deletion of your personal data by contacting us. We will honor your request unless retention is required to:

  • Maintain medical records (as required by state law or HIPAA)
  • Fulfill a legal obligation
  • Defend against legal claims

 


11. Links to Other Websites

Our site may contain links to third-party platforms like Optimantra. We are not responsible for their content, policies, or security practices. We recommend reviewing their privacy policies before submitting any data.

 


12. Children’s Privacy

Our services are intended for adults. We do not knowingly collect information from children under 13 years of age. If we discover such information has been submitted, we will delete it immediately.

 


13. Data Security

We implement industry-standard security measures to protect your personal and health information, including:

  • SSL encryption
  • Secure servers
  • Access controls and staff training

However, no system can guarantee absolute security. Use of the website is at your own risk.

 


14. Changes to This Privacy Policy

We may update this policy periodically. Updates will be posted on this page with the new effective date. Please check back regularly.