Sharma Psychology PLLC
Effective Date: August 27, 2025
Last Updated: August 27, 2025
This Privacy Policy explains how Sharma Psychology PLLC (“we,” “us,” or “our”) collects, uses, and protects information submitted through our website. We are committed to protecting your privacy and complying with the Health Insurance Portability and Accountability Act (HIPAA) and all applicable federal and state privacy laws.
We are a licensed mental health and therapy practice offering both in-person and telehealth services. Dr. Sharma serves as the Privacy Officer for this practice and is responsible for ensuring compliance with all applicable privacy laws.
Privacy Officer Contact:
Our website collects limited information to allow you to contact us and submit intake forms. We do not store any patient health information directly on our website servers.
All patient intake forms on our website are provided and managed by IntakeQ, a HIPAA-compliant third-party platform. When you complete an intake form, your information is submitted directly and securely to IntakeQ’s servers. We have a signed Business Associate Agreement (BAA) with IntakeQ, as required under HIPAA.
We use Google Analytics to understand how visitors use our website. Google Analytics collects non-identifiable information such as pages visited, time spent on pages, and general location data. Google Analytics is not active on any page where patient intake forms are displayed.
We use the WP Consent API and a cookie consent tool on our website. Google Analytics will only activate after you provide explicit consent through our cookie banner.
We use the information you provide only for the following purposes:
We do not sell, rent, or share your personal or health information with any third party for marketing purposes.
As a HIPAA-covered entity, we handle all Protected Health Information (PHI) in accordance with the HIPAA Privacy Rule and Security Rule. PHI includes any information that relates to your health condition, treatment, or payment for healthcare services that can be linked to you as an individual.
All PHI submitted through our intake forms is handled exclusively by IntakeQ. This information is encrypted in transit using TLS 1.2 or higher and stored securely on IntakeQ’s HIPAA-compliant servers.
For a full description of your rights regarding your PHI, please refer to our Notice of Privacy Practices, which is available on our website and upon request at our office.
We work with the following third-party service providers who may have access to certain information through our website:
IntakeQ is our HIPAA-compliant patient intake and scheduling platform. A signed Business Associate Agreement is in place. All patient form data is submitted directly to IntakeQ and is not stored on our website. Learn more at intakeq.com.
We use Google Analytics to analyze general website traffic. Google Analytics is not active on pages containing patient intake forms. Analytics data is only collected after you provide cookie consent. Google Analytics does not have access to any patient health information. Note that Google does not sign a Business Associate Agreement and is used only for general, non-health website analytics.
This website is hosted by Newfold Digital, Inc. (iPage) with traffic managed through Cloudflare, Inc. Our website does not store patient health information on our hosting servers. All patient intake data is submitted directly to IntakeQ, our HIPAA-compliant intake platform.
Our website uses cookies and similar tracking technologies. You will be asked for your consent before any non-essential cookies are activated. You may withdraw your consent at any time through the cookie settings on our website.
Types of cookies we use:
Our practice offers telehealth therapy sessions in addition to in-person appointments. Telehealth sessions are conducted through a separate HIPAA-compliant platform. Any information exchanged during telehealth sessions is protected under HIPAA and handled in accordance with this Privacy Policy and our Notice of Privacy Practices.
We take reasonable and appropriate steps to protect your information from unauthorized access, disclosure, alteration, or destruction. Our security measures include:
As a patient, you have the following rights regarding your health information under HIPAA:
To exercise any of these rights, please contact Dr. Sharma directly using the contact information provided in Section 1 of this policy.
If you believe your privacy rights have been violated, you may file a complaint with us directly by contacting Dr. Sharma at the contact information listed in Section 1. You will not be retaliated against for filing a complaint.
You may also file a complaint with the U.S. Department of Health and Human Services, Office for Civil Rights:
We may update this Privacy Policy from time to time to reflect changes in our practices or applicable law. When we make changes, we will update the effective date at the top of this page. We encourage you to review this policy periodically.
If we make material changes that affect how we handle your PHI, we will notify you as required under HIPAA.
If you have any questions about this Privacy Policy or how we handle your information, please contact us: