Last updated: September 7, 2026

This Privacy Policy explains how North Star Direct Management (“NDM,” “we,” “us,” or “our”) collects, uses, and protects information through this website and during our revenue cycle management engagements. We are committed to handling sensitive information responsibly and in accordance with applicable legal requirements.

1. Information We Collect

We collect and handle the following categories of information through this website and our services:

  • Website visitor information: Basic technical details such as browser type, device type, and pages visited, collected through standard analytics tools.
  • Prospective client information: Contact details you voluntarily submit through forms, consultation requests, or direct communication, such as your name, email address, phone number, and practice information.
  • Client and patient information: When you engage NDM for revenue cycle management services, we may access practice, payer, and patient information necessary to perform the agreed work, which may include Protected Health Information (PHI).

2. How We Use Information

We use the information we collect to:

  • Respond to inquiries and consultation requests;
  • Provide and manage revenue cycle management services to engaged clients;
  • Communicate with clients regarding claims, accounts, and engagements;
  • Maintain agreements, documentation, and applicable compliance records;
  • Improve our website, services, and internal processes; and
  • Meet applicable legal, contractual, and regulatory obligations.

3. Protected Health Information (PHI) and HIPAA

NDM structures its operations around applicable HIPAA responsibilities. When our work involves access to Protected Health Information, that access is governed by a Business Associate Agreement (BAA) and is limited to authorized personnel who need it to perform the agreed services. We do not use or disclose PHI beyond what is necessary to provide our services or as otherwise permitted or required by applicable law and our agreements.

4. How We Share Information

We do not sell your information. We may share information only as necessary to provide our services, to interact with payers and platforms on a client’s behalf under applicable agreements, or where required by law. Any third-party platforms we use in the course of service (such as claims platforms and payer portals) are used under the applicable terms and safeguards of those platforms.

5. Data Retention

We retain information for as long as necessary to provide our services and to meet applicable legal, contractual, and regulatory obligations. When information is no longer needed, it is handled in accordance with our documented processes and applicable agreements.

6. Security Measures

We take reasonable measures to protect information through controlled access, secure technology platforms, encryption in transit and at rest where provided by the relevant platform, documented procedures, and background-checked staff. No method of transmission or storage is completely secure, but we work to protect information consistent with applicable requirements and our agreements.

7. Cookies and Analytics

This website may use standard cookies and analytics tools to understand how visitors use the site and to improve its content. You can control cookies through your browser settings. Disabling cookies may affect some features of the website.

8. Third-Party Links and Services

This website may contain links to third-party websites or services that we do not control. We are not responsible for the privacy practices or content of those third-party sites. We encourage you to review the privacy policies of any third-party sites you visit.

9. Your Rights

Depending on your location, you may have rights regarding your personal information, including the right to request access, correction, or deletion of certain information, subject to applicable legal and contractual obligations. To exercise any applicable rights, contact us using the information below.

10. Children’s Privacy

This website and our services are not directed to children, and we do not knowingly collect information from children through this website.

11. Changes to This Policy

We may update this Privacy Policy from time to time. Changes will be posted on this page with an updated revision date. We encourage you to review this page periodically.

12. Contact Us

If you have questions about this Privacy Policy or our information practices, please contact us:

North Star Direct Management
300 Mt. Lebanon Blvd, Suite 221
Pittsburgh, PA 15234
Phone: 412-206-6081
Email: nico@northstardirectmanagement.com