Effective Date: August 1, 2025
Legacy Billing Management ("we," "us," or "our") provides Medicaid billing software services, including the Legacy Time app and Legacy Verify website, which facilitate electronic visit verification (EVV) for direct service workers and clients in home and community-based services. Our services interact with state aggregators such as LaSRS to capture accurate login/logout data via geolocation and geofencing. We also offer billing services to providers and handle sensitive data, including protected health information (PHI) subject to the Health Insurance Portability and Accountability Act (HIPAA). Additionally, we may use communication tools like Zoom Phone to enable calling and texting through provided phone numbers for service-related updates, marketing campaigns, and other communications.
This Privacy Policy describes how we collect, use, disclose, and protect your information when you use our website (www.dlegacybilling.com), apps, or services (collectively, "Services"). By using our Services, you agree to the practices described here. If you do not agree, please do not use our Services.
This policy supplements our HIPAA Notice of Privacy Practices, which is provided separately to individuals whose PHI we handle. For questions about HIPAA, contact our Privacy Officer at the details below.
We collect the following types of information:
We do not collect information from children under 13 without verifiable parental consent, in compliance with the Children's Online Privacy Protection Act (COPPA).
We use collected information to:
PHI is used solely for treatment, payment, and healthcare operations as permitted by HIPAA, or with your authorization. We do not send PHI via SMS unless it complies with HIPAA and you have consented.
We may send SMS/text messages or make calls to the phone number you provide for purposes such as service notifications, appointment reminders, billing updates, or marketing campaigns. These communications may be delivered via Zoom Phone or similar services.
Consent: By providing your phone number and opting in, you consent to receive automated calls and SMS/text messages from us, including marketing messages. This constitutes prior express written consent under the TCPA. You are not required to provide consent as a condition of purchasing goods or services. Consent can be revoked at any time.
Opt-In Process: When opting in (e.g., via form submission or keyword), we provide clear disclosures including: program description, message frequency (varies; e.g., up to 4 messages per month for campaigns), that message and data rates may apply, how to opt out (text STOP), and links to this Privacy Policy and Terms of Service.
Opt-Out: Reply STOP, END, CANCEL, UNSUBSCRIBE, or QUIT to any SMS to opt out. We honor opt-outs promptly and cease further messages (except a confirmation). You may also opt out of calls by request. We respect the National Do Not Call Registry and maintain our own do-not-contact list.
Quiet Hours: We send SMS/calls only during permitted hours (typically 8 AM to 9 PM local time) unless urgent or with separate consent.
Costs: Message and data rates may apply; check your mobile plan.
We use confirmed opt-in (e.g., reply Y to confirm) where appropriate to verify consent.
We share information as follows:
We do not sell personal information. PHI is shared only as permitted by HIPAA, and we require recipients to protect it accordingly. Phone numbers are not shared for third-party marketing without consent.
We implement administrative, technical, and physical safeguards to protect information, including:
Despite these measures, no system is 100% secure. We notify affected individuals of breaches as required by law, including HIPAA's breach notification rule.
We retain information as long as necessary for the purposes described, or as required by law:
Data is securely deleted or anonymized when no longer needed.
You have rights regarding your information:
To exercise rights, contact us below. We respond within 30 days (or as required by law). Verification may be needed.
We use cookies, pixels, and similar technologies for functionality, analytics, and advertising. You can manage preferences via browser settings, but this may limit features. We do not track across third-party sites without consent.
Our Services may link to external sites (e.g., LaSRS, Zoom). We are not responsible for their privacy practices; review their policies.
Data is processed in the U.S. If transferred internationally, we ensure adequate protections (e.g., standard contractual clauses).
We may update this policy. Changes are posted here with the effective date. Significant changes will be notified via email, SMS, or prominent notice. Continued use constitutes acceptance.
For questions, requests, or complaints:
Email: privacy@dlegacybilling.com
Mail: 8446 Le Marie Ct, Denham Springs, LA 70706
Phone:
225-424-9233
For HIPAA matters, contact our Privacy Officer at the above email.