Find answers to common questions about patient data, privacy, security, and data access in Allia.
Can Allia Health employees access my patient notes?
No. Patient clinical content is end-to-end encrypted and inaccessible to Allia Health employees, including the technical team and leadership. Only you can decrypt and view clinical information.
What happens if Allia Health is sold to another company?
Your patients’ data keeps the same privacy protections. Clinical content stays encrypted and inaccessible to the new owner. You keep the same control over patient records.
Can Allia Health provide patient data if subpoenaed?
Allia can provide only non-clinical account data, such as billing information. Allia cannot provide clinical content because it cannot decrypt that data. You would need to respond directly to a subpoena that requests clinical records.
How can I verify that patient data is secure?
Allia’s security practices are regularly audited, and Allia is HIPAA compliant. Allia works with Scrut to manage compliance.
Can I export patient records to another EHR?
Yes. You can export patient clinical data at any time. Contact Allia Support for help with data portability.
What if a patient is under 18?
Users under 13 cannot use Allia. Users ages 13 through 17 require parental consent. Special privacy protections apply to minors. You remain responsible for following state-specific minor consent laws.
Am I responsible for patient data security?
Yes. Allia provides technical security, but you remain responsible for using the platform appropriately, protecting your login credentials, and following HIPAA-compliant practices in your clinical work.
