← ezScribe Push
ezScribe Push
Privacy Policy

ezScribe Push — Privacy Policy

Effective date: September 7, 2026

1. Who we are

ezScribe Push (“the Extension”) is a Chrome browser extension published by ezScribe that transfers clinical notes you have authored in ezScribe into the note fields of your browser-based Electronic Health Record (EHR) system. This policy explains what data the Extension handles and how.

2. Information the Extension collects

The Extension collects and processes only what is required to function: (a) your ezScribe account email and password, used solely to authenticate against the ezScribe API — your password is never stored by the Extension; (b) a short-lived authentication token returned after sign-in; (c) the clinical notes you explicitly choose to load and push; and (d) a user-configurable API server URL. The Extension does not collect browsing history, analytics, cookies, or any data from pages other than the note fields you push into.

3. How your data is stored

Your authentication token is kept exclusively in chrome.storage.session, which is held in memory and automatically erased when you close your browser. No credentials, tokens, or notes are written to disk by the Extension. Your API server preference is the only value kept in local extension storage, and it contains no personal or health information.

4. How your data moves

Clinical notes travel over HTTPS directly from the ezScribe API to your browser, and from your browser into the EHR page you have open. The Extension never sends your notes, credentials, or any page content to third parties, advertising networks, or analytics services. Nothing is transmitted anywhere except (a) the ezScribe API you configured and (b) the EHR page you are actively charting in.

5. Protected Health Information (PHI)

Clinical notes may contain PHI. The Extension acts only as a conduit under your direction: it fills fields on the EHR page you are viewing when you click Push, after showing you a field-mapping preview you must confirm. You remain responsible for verifying that the correct note is pushed into the correct patient’s chart, in accordance with your organization’s HIPAA policies and your EHR vendor’s terms of use.

6. Permissions explained

storage — keeps your session token in memory and your server preference. activeTab / tabs — lets the popup talk to the EHR tab you are viewing. Host permissions for supported EHR domains — allow the mapping engine to read field labels and fill note fields on those pages only. The Extension does not read or modify any other websites.

7. Data retention & deletion

The Extension retains nothing beyond your browser session. Signing out, or simply closing the browser, removes the session token. Notes live in your ezScribe account and are governed by the ezScribe service’s own retention policies. To remove all extension data, uninstall the Extension from chrome://extensions.

8. Children's privacy

The Extension is a professional clinical tool intended for licensed healthcare providers and is not directed at children under 13.

9. Changes to this policy

We may update this policy as the product evolves. Material changes will be reflected on this page with an updated effective date, and significant changes will be noted in the extension’s release notes.

10. Contact

Questions about this policy or your data? Contact the ezScribe team at privacy@ezscribe.com.