SunshynOPERATIONS

Privacy Policy

Last updated: August 21, 2026

This Privacy Policy describes how Sunshyn Credentialing (“Sunshyn,” “we,” “us,” or “our”) collects, uses, and shares information when you use Sunshyn Operations, including the Team Hub, credentialing intake, billing support requests, hourly help booking, and related sign-in services (together, the “Services”).

Who this applies to

This policy covers workforce collaborators, administrators, and people who submit public request forms (for example credentialing or billing intake). It does not replace a Business Associate Agreement (BAA) or other contract that may apply to protected health information (PHI) in a client engagement.

Information we collect

  • Account and identity. Name, email address, role or group membership, and authentication details when you sign in with email/password or Google through Amazon Cognito.
  • Professional and organizational details. Practice or provider names, organizations, NPI, contact information, and other data you submit on intake or profile forms.
  • Work product in Operations. Tasks, agreements metadata, training progress, calendar availability (busy/free only when connected), help bookings, and similar operational records.
  • Technical logs. Security and audit events such as sign-in outcomes, access denials, and diagnostic data needed to operate and secure the Services.

How we use information

  • Provide, secure, and improve the Services
  • Authenticate users and enforce role-based access
  • Process credentialing, billing, and hourly-help requests you submit
  • Communicate about account, security, and service notices
  • Comply with law and enforce our terms

Google sign-in

If you choose “Continue with Google,” authentication is handled by Google and Amazon Cognito. We receive identity claims needed to create or link your Operations session (such as name and email). We do not use Google sign-in to access your Gmail or Drive content. If you separately connect Google Calendar for availability, Operations stores busy/free times only—not event titles or details.

Sharing

We share information only as needed to operate the Services, including with:

  • Infrastructure providers (for example AWS Amplify, Cognito, and related AWS services)
  • Sunshyn team members with appropriate roles to fulfill requests you submit
  • Service providers under contract who help us run the platform
  • Authorities when required by law or to protect rights and safety

We do not sell your personal information.

Retention

We retain account, operational, and audit records for as long as needed to provide the Services, meet legal and contractual obligations, and resolve disputes. You may request deletion of account data subject to retention requirements for security and compliance records.

Security

We use administrative, technical, and physical safeguards appropriate to the Services, including encrypted transport, role-based access, and audited sensitive actions. No method of transmission or storage is completely secure.

Children

The Services are not directed to children under 13, and we do not knowingly collect their information.

Changes

We may update this policy from time to time. The “Last updated” date above will change when we do. Continued use of the Services after an update means you accept the revised policy.

Contact

Questions about privacy: sunshyncredentialing@gmail.com

Privacy PolicyTerms of ServiceSign in