Legal

Privacy Policy

How TuskaMind collects, uses, shares and protects information, including protected health information we handle on behalf of the practices we serve.

Last updated: 2026

Privacy at TuskaMind

TuskaMind is designed for behavioral health organizations that handle sensitive personal and health information. Our privacy and HIPAA framework has been reviewed with HIPAA counsel, and Business Associate Agreements are integrated into the platform where applicable. This page explains in plain language how information is handled. The applicable Privacy Policy, Business Associate Agreement, and customer agreements govern in the event of any inconsistency.

Information we collect

TuskaMind collects information necessary to provide, secure, support, and improve the platform.

Depending on how TuskaMind is used, this may include account and contact information, professional and practice information, client demographic information, appointment and scheduling information, billing and payment information, insurance information, clinical documentation, assessments and forms, telehealth-related information, technical and security information, and communications with TuskaMind.

The specific information collected depends on the user's role, the services selected by the practice, and the features being used.

How we use information

TuskaMind uses information to provide and operate the platform, authenticate users, manage appointments, support clinical and administrative workflows, process billing and payments, support claims and revenue-cycle services, provide telehealth functionality, maintain security and audit records, provide customer support, and improve platform reliability and functionality.

Information may also be used to meet contractual, legal, regulatory, security, and compliance obligations.

TuskaMind does not use protected health information for unrelated advertising purposes.

Protected health information

TuskaMind is designed for healthcare organizations subject to HIPAA and may create, receive, maintain, or transmit protected health information on behalf of its customers.

When TuskaMind performs functions involving PHI on behalf of a HIPAA-covered customer, TuskaMind acts as a Business Associate and handles PHI in accordance with the applicable Business Associate Agreement and HIPAA requirements.

TuskaMind's Business Associate Agreement was prepared with HIPAA counsel and is integrated into the platform's contracting and onboarding process.

Customers remain responsible for determining who within their organization should have access to PHI and for configuring user roles and permissions appropriately.

Sharing and subprocessors

TuskaMind may use carefully selected service providers and subprocessors to support infrastructure, communications, payment processing, telehealth, artificial intelligence, analytics, security, and other platform functions.

Access to information is limited to what is necessary for the service being provided, and contractual, privacy, security, and Business Associate requirements are applied where appropriate.

TuskaMind does not sell protected health information.

When a third-party provider is permitted to receive PHI on TuskaMind's behalf, the relationship is handled in accordance with applicable HIPAA and contractual requirements.

Data retention

TuskaMind retains information for as long as reasonably necessary to provide the services, meet contractual obligations, comply with applicable legal and regulatory requirements, preserve required healthcare and business records, resolve disputes, maintain security, and enforce agreements.

Retention periods may vary depending on the type of information, the customer's configuration, applicable healthcare record-retention requirements, and legal obligations.

When information is no longer required, TuskaMind follows appropriate processes for deletion, de-identification, or continued protected retention where required.

Your rights

Depending on applicable law and your relationship with TuskaMind, you may have rights regarding access, correction, deletion, restriction, or other use of your personal information.

If you are a patient or client of a healthcare practice using TuskaMind, requests concerning your medical record or protected health information should generally be directed to your healthcare provider. Your provider remains responsible for responding to patient rights requests under HIPAA and other applicable laws.

For information held directly by TuskaMind outside of the healthcare-provider relationship, privacy requests may be submitted to [email protected].

Security

TuskaMind uses administrative, technical, and organizational safeguards designed to protect sensitive information. These include encryption, authentication controls, role-based access, session protections, audit logging, tenant isolation, and security monitoring.

No system can guarantee absolute security, but TuskaMind continuously develops and maintains safeguards appropriate to the sensitivity of the information handled by the platform.

AI-assisted features

TuskaMind may provide AI-assisted features that help authorized users with documentation, workflow support, review, and other platform functions.

AI-assisted features are designed to operate within TuskaMind's privacy and access-control framework. Access to information remains governed by user permissions and organizational authorization.

AI-generated output is assistive in nature and remains subject to review and approval by the authorized professional where applicable.

Cookies and technical information

TuskaMind may collect limited technical information such as browser type, device information, IP address, authentication activity, session information, and security events to operate, secure, troubleshoot, and improve the platform.

Website cookies and similar technologies may be used for essential site functionality, authentication, preferences, and security. Additional tracking or analytics technologies, if used, are governed by the applicable privacy and cookie disclosures.

Children/minors

TuskaMind may contain records concerning minors when the platform is used by an authorized healthcare organization providing services to those individuals. Such information is handled under the healthcare provider's authority, applicable law, and the relevant privacy and consent requirements.

TuskaMind's public website is not intended to independently solicit personal information from children.

Changes to this privacy notice

TuskaMind may update this Privacy Notice as the platform, legal requirements, or privacy practices evolve. Material changes will be communicated where required, and the effective date of the current version should be displayed on this page.

Privacy questions

For questions about TuskaMind privacy practices, HIPAA, data handling, or Business Associate Agreements, contact [email protected].

If your question concerns your healthcare record, treatment information, or patient rights, you may also need to contact the healthcare practice that provides your care.

Questions

Write to [email protected] and we will route your question to the right person.

Last Updated: September 2026

This Privacy Notice describes TuskaMind's privacy practices. It does not replace a healthcare provider's Notice of Privacy Practices.

Empowering healthcare providers with intelligent TuskaMind® solutions for smarter, safer patient care.

Contact Info

24/7 Support Available

For existing customers

© 2026 TuskaMind®. All rights reserved. HIPAA Compliant Behavioral Health Platform.