HIPAA Compliance

Last updated: March 27, 2026

Kovex is built for dental practices, and we understand the importance of patient privacy in the healthcare industry. This page explains our approach to HIPAA (Health Insurance Portability and Accountability Act) compliance and how we handle data related to your practice.

Kovex Does Not Handle Protected Health Information (PHI)

Kovex is a social media content creation and management platform. Our platform does not access, store, process, or transmit Protected Health Information (PHI) as defined by HIPAA. We have no connection to your patient records, appointment scheduling systems, electronic health records (EHR), billing systems, or any other systems that contain patient data.

The only information Kovex handles relates to your social media presence, including:

- Your practice name, address, and contact information
- Brand assets such as logos, colors, and messaging preferences
- AI-generated social media content (images, captions, and post schedules)
- Connected social media account credentials (encrypted at rest)

None of this information constitutes PHI under HIPAA regulations.

No Access to Patient Records or Health Information

Kovex does not integrate with, request access to, or interface with any patient management systems, electronic health record platforms, or insurance billing software. Our AI agents work exclusively with social media content and marketing materials. At no point in our workflow does patient-identifiable health information enter our systems.

Data Encryption and Security

Although we do not handle PHI, we take the security of your practice data seriously. All practice information stored on our platform, including your clinic name, services offered, brand colors, and social media credentials, is encrypted both in transit and at rest. We use industry-standard encryption protocols to ensure your data is protected.

Our security practices include:

- TLS encryption for all data transmitted between your browser and our servers
- Encryption at rest for stored practice data and credentials
- Secure token management for connected social media accounts
- Regular security reviews and updates

HIPAA-Aware Best Practices

While Kovex is not a HIPAA-covered entity and does not handle PHI, we follow HIPAA-aware practices as a matter of principle and professional responsibility. This means we design our systems with privacy and security in mind, even for non-PHI data. We believe dental practices deserve a platform that respects the same standards of care they provide to their patients.

Our HIPAA-aware approach includes:

- Minimizing the data we collect to only what is necessary for the service
- Never requesting or storing patient information of any kind
- Ensuring our AI agents are trained to avoid generating content that could inadvertently reveal patient identities
- Maintaining clear data boundaries between social media content and healthcare data

Your Responsibilities

As a dental professional, you are responsible for maintaining HIPAA compliance within your practice. When using Kovex, please keep the following in mind:

Do not share patient information - Never input patient names, photos, health conditions, treatment details, or any other patient-identifiable information into the Kovex platform. This includes chat messages, content prompts, image uploads, and brand descriptions.

Review content before publishing - While our AI agents generate professional, compliant content, always review posts before they go live to ensure they do not inadvertently reference specific patients or protected information.

Use stock and AI-generated imagery - Kovex generates original AI images for your posts. Do not upload photos of actual patients unless you have obtained proper written consent in accordance with HIPAA and your state's regulations.

Questions About Compliance

If you have questions about how Kovex handles your practice data, or if you need documentation regarding our data practices for your own compliance records, please contact us at support@kovexagent.com. We are happy to provide any information your compliance team may need.

Novalyra LLC
30 N Gould St Ste R, Sheridan, WY 82801