Security & Privacy Policies

We maintain the official version of our policy in English and make machine translations available for your convenience.
We maintain the official version of our policy in English and make machine translations available for your convenience.

Epic Application Privacy Policy for End Users

Last Updated: March 7, 2024

Overview

Epic takes very seriously its obligation to protect the confidentiality of your personal information. Epic develops many applications for healthcare providers and other healthcare-related staff end users. These apps include Haiku, Canto, Rover, Limerick, and Hyperspace, among others, and they are intended to connect to servers and systems operated and maintained by Epic community members in order to provide you secure and, if applicable, mobile access to those systems.

This Privacy Policy

This Privacy Policy describes how Epic Systems Corporation’s (“Epic”) applications for providers and other healthcare-related end users (our “Applications”) use, store, and transmit information and data. Epic may modify this Privacy Policy at any time effective upon its posting. Your use of our Applications is subject to the of the applicable Applications’ End User License Agreement.

Your Personal Information

When you use our Applications, Epic does not receive any personal data directly from you or your device. As described below, our Applications connect with systems operated and maintained by a healthcare institution that uses Epic’s software.

Connections to Healthcare Institutions

To use our Applications, you must have an account with a healthcare institution who uses Epic’s software. Your use of our Application with that healthcare institution may be subject to that healthcare institution’s policies and terms. You understand that while connected or attempting to connect to a healthcare institution’s system, the healthcare institution may collect, store, process, maintain, upload, sync, transmit, share, disclose, and use certain data and related information, including but not limited to information or data regarding the characteristics or usage of your device, system and application software, and peripherals as well as your personal information, location data, and other content.

Please contact your employer or other entity that providers your access to our Applications if you have any questions about their policies or terms.

Using Third Party Tools and Features

If you use any third-party tools and features, such as third-party speech-to-text dictation or third-party video, your use of those features is subject to the terms and policies of those third parties. If you have any questions about those terms or policies, you should contact your healthcare institution or the provider of the third-party tool.

How We Protect Your Personal Information

The security of your information and data while using our Applications is very important to us. Our Applications employ a variety of technical safeguards to protect the confidentiality, integrity, and availability of your personal information including supporting Transport Layer Security (TLS)/Secure Sockets Layer (SSL) certificate technology and encryption.

In addition, healthcare organizations with whom you connect may use a variety of physical, administrative, and technical measures to protect your personal information.

Your Privacy Rights

Your California Privacy Rights

If you are a California resident, California law may provide you with additional rights regarding our use of your personal information. To learn more about your California privacy rights, visit our CCPA privacy notice for California residents or contact your healthcare institution.

Contact Epic

If you have questions about medical information in an account with a healthcare organization using Epic’s software, please reach out to your healthcare organization using the contact information in their privacy policy.

If you have any questions about this Privacy Policy, you may contact Epic at 608-271-9000 or at PrivacyInquiries@epic.com.

If you need to contact Epic’s Data Protection Officer or EU Representative as defined by the General Data Protection Regulation, (EU) 2016/679 (“GDPR”), please email EUPrivacyInquiries@epic.com or call +1 608-271-9000. If you are a Data Subject as defined by GDPR, you should reach out to your healthcare organization for requests related to your personal data accessed through our Applications.

Resources
Our StoryCareersContact UsEpic Community LinkGivingLegalPrivacy & SecurityTrainingEfficiencyVisitingEpic Almanac
Events
UGMXGMEGMAPGMMajlisConnect CollaborationEuropean App ForumsOpen@Epic
Copyright © 2026 Epic Systems Corporation.
  • Software
  • Newsroom
  • Visit EpicShare
  • Visit Epic Research
  • Visit Cosmos
  • Visit MyChart
  • Visit open.epic
  • Visit UserWeb
  • Visit Showroom
  • Visit Epic.com
  • Visit EpicShare
  • Visit Epic Research
  • Visit Cosmos
  • Visit MyChart
  • Visit open.epic
  • Visit UserWeb
  • Visit Showroom
    Software
    About Us
    Our Story
    Visiting
    Epic Health System Community
    Diversity, Equity & Inclusion
    Sustainability
    Contact Us
    Newsroom