Welcome to Restoration Counseling & Consultation, P.A. (“we,” “our,” “us”). We are committed to protecting your privacy and safeguarding all personal information we collect, including health information protected under the Health Insurance Portability and Accountability Act (“HIPAA”). This Privacy Statement describes what information we collect through our website, how it is used, and the rights you have regarding your data under HIPAA, GDPR, CCPA, and other privacy regulations.
​
1. Scope
This Privacy Statement applies to:
-
Our public-facing website facilitated through our webhost
-
Information voluntarily submitted through website forms
-
Communications you initiate through the Website
This policy does not govern Protected Health Information (PHI) collected through our clinical services. PHI is handled exclusively through our secure, HIPAA-compliant Electronic Health Record (EHR) system and is never stored on, processed through, or transmitted via our public Website.
​
2. Information We Collect Through the Website
We may collect the following categories of personal information:
​
General Website Data
-
Name, email, phone number, or other contact information you voluntarily submit
-
Messages or inquiry details
-
Usage data (browser type, device type, pages visited, timestamps, etc.)
-
IP address and basic technical information
-
Essential cookies generated automatically by our webhost (see Section 5)​
​
Protected Health Information (PHI)
PHI is not collected, transmitted, or stored through this Website.
Any clinical or health-related information you disclose is stored in our secure EHR, which:
-
Meets HIPAA Security Rule requirements
-
Uses encryption in transit and at rest
-
Requires authenticated access
-
Maintains audit logs and safeguards against unauthorized use
We strongly caution clients not to submit sensitive clinical information through website contact forms, email, or unencrypted channels.
​
3. How We Use Your Information
We use Website-collected information to:
-
Respond to inquiries or scheduling requests
-
Improve, secure, and maintain the Website
-
Prevent fraud or misuse
-
Comply with legal obligations
-
Provide information you have requested
We do not use website-collected data for targeted advertising or data resale.
​
4. HIPAA Compliance and PHI Handling
Protected Health Information (PHI)
PHI refers to individually identifiable health information relating to your care. We protect PHI as required by HIPAA through:
-
Use of a secure, HIPAA-compliant EHR for appointments, documentation, and communication
-
Administrative, technical, and physical safeguards
-
Business Associate Agreements (BAAs) with any third-party vendors with access to PHI
Your HIPAA Rights
Under HIPAA, you have the right to:
-
Access your health records
-
Request amendments
-
Receive an accounting of disclosures
-
Request restrictions
-
Request confidential communications
-
File a complaint if you believe your privacy rights were violated
Information on how to exercise your HIPAA rights is provided in our full Notice of Privacy Practices (NPP), available upon request at any time.
​
5. Cookies and Tracking Technologies through our Webhost
Because of the way our webhost configures pages, essential cookies may be set automatically. According to our webhost's current cookie policy, these include cookies used for:
-
Website security
-
Session management
-
Load balancing and server performance
-
Fraud prevention
-
Core site functionality
These cookies are considered essential and do not require opt-in consent because they do not track personal data for analytics or advertising.
If any non-essential cookies (e.g., analytics or marketing) are added in the future—either by us or by optional third-party integrations—we will present a cookie-consent banner as required by GDPR and CCPA.
​
6. Sharing and Disclosure of Information
We do not sell personal data or PHI.
We may share limited information only when necessary:
-
With service providers supporting Website hosting, security, or operations (our webhost), under strict confidentiality
-
With our HIPAA-compliant EHR vendor for PHI
-
To comply with legal requirements
-
To protect the safety, rights, and property of our clients or the public
​​
7. Rights Under GDPR (EEA/UK)
If you are located in the EEA or UK, you have rights including:
-
Access
-
Correction
-
Erasure (right to be forgotten)
-
Restriction or objection to processing
-
Data portability
-
Withdrawal of consent
These rights apply only to personal data collected through the Website—not to PHI, which is governed by HIPAA.
​
8. Rights Under CCPA/CPRA (California)
If you are a California resident, you may:
-
Request to know what personal information we have collected
-
Request deletion of personal information (with legal exceptions)
-
Request to know whether your information is sold or shared (it is not)
-
Exercise privacy rights without discrimination
CCPA rights apply to Website information, not PHI.
​
9. Data Security and Retention
Website Data
We maintain reasonable administrative and technical safeguards to protect personal information collected through the Website.
PHI
PHI is retained and protected according to HIPAA retention, security, and confidentiality standards.
​
10. Third-Party Links
Our Website may contain links to external sites. We are not responsible for their privacy practices. We encourage you to review the privacy policy of any external site you visit.
​
11. Children’s Privacy
Our Website is intended for adults. We do not knowingly collect personal information from children under 16. PHI for minors is handled only through our HIPAA-compliant systems.
​
12. Changes to This Privacy Statement
We may update this Privacy Statement occasionally. Material updates will be clearly posted on the Website with the updated date.
​
13. Contact Us
For privacy-related questions, requests, or concerns, you may contact us using the information below:
Restoration Counseling & Consultation, P.A.
7926 W. 21st N.
Wichita, KS 67025
Phone: 316-272-5502
​
For HIPAA-specific concerns, or to request our full Notice of Privacy Practices, please contact our office directly.
​
Last Updated: December 01, 2025