Privacy Policy

Effective Date: April 23, 2026

Zenith Mental Health sends text message updates and responses to healthcare customers about pricing and products offered at www.zenithmhc.com.

Mobile information will not be shared with third parties or affiliates for marketing or promotional purposes. Zenith Mental Health We respect your privacy. We use information you provide to send and respond to your mobile messages. This includes sharing it with platform providers, phone companies, and other vendors who help us deliver messages. We won’t share mobile information with third parties for marketing. Text messaging originator opt-in data and consent are exempt from this. We may disclose information to satisfy legal, regulatory, or governmental requests, avoid liability, or protect our rights or property. This policy applies to your use of the Text Message Service and doesn’t modify our general Privacy Policy, which may govern our relationship with you in other contexts.

1. Introduction

Zenith Mental Health Center (“we,” “our,” or “us”) is committed to protecting the privacy of our patients, website visitors, and users. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website at https://zenithmhc.com, use our services, or otherwise interact with us.

We comply with all applicable federal and state privacy laws, including the Health Insurance Portability and Accountability Act (HIPAA), 42 CFR Part 2 (Confidentiality of Substance Use Disorder Patient Records), and other applicable regulations. By using our website or services, you agree to the terms of this Privacy Policy.

2. Information We Collect

2.1 Personal Information You Provide

We may collect personal information that you voluntarily provide when you:

  • Contact usvia phone, email, or online forms (name, email address, phone number)
  • Submit an insurance verification form(name, email, phone number, insurance provider, member ID, and related insurance details)
  • Request informationabout our programs, services, or admissions process
  • Schedule an appointmentor participate in a clinical assessment

Provide testimonials or feedbackabout our services

2.2 Protected Health Information (PHI)

As a healthcare provider, we may collect Protected Health Information (PHI) as defined under HIPAA. This includes, but is not limited to:

  • Medical history and clinical assessment information
  • Diagnosis and treatment records
  • Insurance and billing information
  • Substance use disorder (SUD) treatment records protected under 42 CFR Part 2
  • Prescription and medication information

Important: The use and disclosure of PHI is governed by our separate Notice of Privacy Practices (NPP), which is provided to all patients at the time of admission and is available upon request. In the event of any conflict between this Privacy Policy and our NPP, the NPP shall control with respect to PHI.

2.3 Information Collected Automatically

When you visit our website, certain information is collected automatically through cookies and similar tracking technologies:

  • Google Analytics 4 (GA4): We use GA4 to collect anonymized usage data including pages visited, session duration, traffic sources, device type, browser type, and geographic location (city/region level). GA4 uses cookies and may collect IP addresses, which Google may truncate for anonymization.
  • Meta (Facebook) Pixel: We use the Meta Pixel to measure the effectiveness of our advertising campaigns on Facebook and Instagram. The Meta Pixel collects data about your activity on our website, which may be linked to your Facebook profile for ad targeting purposes.
  • CallRail Call Tracking: We use CallRail to track phone calls generated from our website. CallRail may use Dynamic Number Insertion (DNI) to assign unique phone numbers to website visitors, and may record call metadata including caller phone number, call duration, call recording (where permitted by law), and the referring source of the call.

Cookies and Similar Technologies: Our website uses first-party and third-party cookies, web beacons, and similar technologies to enhance your experience, analyze website performance, and deliver relevant advertising.

3. How We Use Your Information

We use the information we collect for the following purposes:

  • To provide, coordinate, and manage your treatment and care
  • To process insurance verification and billing
  • To communicate with you regarding your inquiry, appointment, or treatment
  • To respond to your questions, requests, or feedback
  • To improve our website, services, and user experience
  • To analyze website traffic and user behavior through analytics tools
  • To deliver and measure the effectiveness of online advertising campaigns
  • To comply with legal obligations, regulatory requirements, and court orders
  • To protect our rights, safety, and property, and those of our patients and staff

4. How We Share Your Information

4.1 Service Providers and Business Associates

We may share your information with third-party service providers who assist us in operating our website, conducting our business, or providing services to you. These may include:

  • Electronic health record (EHR) and practice management system providers
  • Insurance companies and billing processors
  • IT and website hosting providers
  • Analytics and advertising platforms (Google, Meta, CallRail)
  • Legal, accounting, and compliance advisors

Where required by HIPAA, we enter into Business Associate Agreements (BAAs) with third parties that access PHI on our behalf.

4.2 Legal and Regulatory Disclosures

We may disclose your information when required or permitted by law, including:

  • To comply with a subpoena, court order, or legal process
  • To comply with federal or state regulatory requirements
  • To report suspected abuse, neglect, or domestic violence
  • To prevent or lessen a serious and imminent threat to health or safety
  • For public health activities, health oversight, and law enforcement purposes as permitted under HIPAA

4.3 42 CFR Part 2 Protections

Records related to the identity, diagnosis, prognosis, or treatment of any patient maintained in connection with substance use disorder treatment are subject to the confidentiality protections of 42 CFR Part 2. These records may not be disclosed without the written consent of the patient except as permitted by federal regulation. A general authorization for the release of medical or other information is NOT sufficient for the release of SUD treatment records under 42 CFR Part 2.

4.4 No Sale of Personal Information

We do not sell your personal information to third parties for monetary consideration.

5. Cookies and Tracking Technologies

Our website uses cookies and similar technologies to collect information about your browsing activity. You can manage your cookie preferences through your browser settings. Please note that disabling cookies may affect the functionality of our website.

5.1 Types of Cookies We Use

  • Essential Cookies: Required for basic website functionality, including form submissions and navigation.
  • Analytics Cookies: Used by Google Analytics 4 to collect anonymized data about how visitors use our website.
  • Advertising Cookies: Used by Meta Pixel and similar technologies to deliver and measure targeted advertising.

Functional Cookies: Used by CallRail for dynamic number insertion and call tracking.

5.2 Opting Out

  • You may opt out of certain tracking technologies:

    Browser Settings: Most web browsers allow you to control cookies through their settings. You can typically set your browser to refuse cookies or alert you when cookies are being sent.

6. Data Security

  • We implement administrative, technical, and physical safeguards designed to protect your personal information and PHI in accordance with HIPAA Security Rule requirements. These safeguards include:

    • Encryption of data in transit (SSL/TLS) and at rest
    • Access controls and authentication measures
    • Regular security assessments and vulnerability testing
    • Employee training on privacy and security practices
    • Incident response and breach notification procedures

    While we strive to protect your information, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security of your data.

7. Your Rights

7.1 HIPAA Rights

  • Under HIPAA, you have the following rights with respect to your PHI:

    • Right to Access: You may request access to your PHI maintained in our records.
    • Right to Amend: You may request that we amend your PHI if you believe it is inaccurate or incomplete.
    • Right to an Accounting of Disclosures: You may request a list of certain disclosures of your PHI that we have made.
    • Right to Request Restrictions: You may request restrictions on certain uses and disclosures of your PHI.
    • Right to Confidential Communications: You may request that we communicate with you about health matters through alternative means or at alternative locations.
    • Right to a Copy of the Notice of Privacy Practices: You may request a paper copy of our NPP at any time.

7.2 Website Privacy Rights

  • You may also:

    • Request information about the personal data we hold about you
    • Request deletion of personal data collected through our website (subject to legal retention requirements)
    • Opt out of marketing communications at any time
    • Disable cookies and tracking through your browser settings

8. Children’s Privacy

Our website is not directed to children under the age of 13, and we do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13 without parental consent, we will take steps to delete such information promptly.

9. Third-Party Links

Our website may contain links to third-party websites, services, or resources that are not operated by us. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party websites you visit.

10. Data Retention

We retain personal information and PHI in accordance with applicable federal and state laws, professional standards, and our internal record retention policies. Medical records are retained for the period required by Georgia state law and HIPAA. Website analytics data is retained in accordance with our analytics platform settings, typically for a period of up to 14 months for GA4 data.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or for other operational reasons. When we make material changes, we will update the “Effective Date” at the top of this policy and post the revised version on our website. Your continued use of our website after any changes constitutes your acceptance of the updated policy.

12. Contact Us

If you have questions about this Privacy Policy, wish to exercise your privacy rights, or have concerns about our data practices, please contact us:

Zenith Mental Health Center

1355 Terrell Mill Road SE, Building 1478, Suite 100, Marietta, GA 30067

Phone: (770) 675-9921

Email: info@zenithmhc.com

Website: https://zenithmhc.com

Verify Your Insurance & Get Access To Treatment

You can get insurance coverage in as little as 5 minutes!