Odyssey Solutions publishes HIPAA-related technology and operational guidance, but the public website is not a patient portal, clinical communication channel, or authorized method for transmitting protected health information.
Do not send PHI through public forms
Do not include patient names, medical details, images, dates of service, identifiers, account credentials, or other sensitive data in the contact form, email subject, or scheduling page. Use an approved secure channel after Odyssey establishes the appropriate service relationship and instructions.
Compliance responsibility
No website statement, tool, assessment, training session, hosting label, or technology provider can guarantee HIPAA compliance. Covered entities and business associates remain responsible for evaluating their obligations, risks, safeguards, contracts, and required documentation.
Technology and operational guidance
Odyssey may help organizations assess and implement technology and operational practices that support HIPAA Security Rule objectives. Odyssey does not provide legal advice. Organizations should involve qualified legal or compliance counsel when appropriate.
Service agreements
Any business associate responsibilities, permitted data handling, safeguards, breach obligations, and service boundaries must be established in applicable written agreements before protected health information is shared.
Questions
For general questions that do not include sensitive information, contact leo@odysseysolutions.co or call (832) 805-8467.