MyCare
Home/Security & HIPAA
Security & HIPAA

Patient data, protected by design.

Confidentiality is built into every layer of MyCare — from how records are stored to how patients choose to share them.

Our approach

Four layers of protection.

Digital record-keeping with advanced encryption ensures patient confidentiality and easy retrieval, while cloud-based backups make sure data is always available and protected.

Advanced encryption

Digital record-keeping with advanced encryption protects patient confidentiality.

Cloud-based backups

Data is backed up in the cloud so records are always available — and never lost to a filing cabinet.

Patient-controlled sharing

Patients can download their record or securely share it with their doctor from the app.

Permission-based health sync

Apple Health data is synced only with the patient’s permission, into one secure overview.

HIPAA

Our HIPAA
obligations.

Healthcare providers that use MyCare are covered entities under the Health Insurance Portability and Accountability Act (HIPAA). When MyCare creates, receives, maintains or transmits protected health information (PHI) on a provider’s behalf, MedCare Link LLC acts as the provider’s business associate.

  • Business Associate Agreement. MedCare Link enters into a Business Associate Agreement with each covered entity before handling its PHI (45 CFR §§ 164.502(e), 164.504(e)).
  • Safeguards. MedCare Link maintains administrative, physical and technical safeguards for electronic PHI as required by the HIPAA Security Rule (45 CFR Part 164, Subpart C).
  • Use of PHI. PHI is used and disclosed only as permitted by the Business Associate Agreement and the HIPAA Privacy Rule.
  • Breach notification. MedCare Link notifies the covered entity of any breach of unsecured PHI without unreasonable delay and no later than 60 calendar days after discovery (45 CFR § 164.410).
  • Patient rights. Patients should contact their healthcare provider to exercise their HIPAA rights and to obtain the provider’s Notice of Privacy Practices.
California

California medical
privacy law.

MyCare is subject to the California Confidentiality of Medical Information Act (CMIA), which treats a business offering software designed to maintain medical information for patients or providers as a provider of health care (Cal. Civ. Code § 56.06(b)). MedCare Link maintains the confidentiality of medical information and does not disclose it without authorization, except as permitted or required by law.

This website

drmycare.com is not
for patient data.

This public website is separate from the MyCare application. Please do not submit patient health information through website forms. Information submitted through this website is handled under our Privacy Policy.

Contact

Privacy & security questions.

Contact us through our contact page or by mail: MedCare Link LLC, Attn: Privacy & Security Officer, 18008 Skypark Cir, Irvine, CA 92614.

Contact us →