Legal

Privacy Policy

Last updated 21 August 2026

Draft. VeloERP is pre-GA and this document has not yet been through legal review. It describes how we actually intend to operate, and it is not a contract. The binding terms are the ones in your signed agreement and BAA.

This policy covers veloerp.com and the VeloERP application. Protected health information that a customer's tenant processes is governed by that customer's Business Associate Agreement, not by this policy — we are a business associate for that data, and the customer remains its controller.

What we collect on the marketing site

The contact form collects your name, work email, organization and an optional bed or provider count, plus whatever you write in the message field. We use it to answer you and for nothing else.

We do not run third-party advertising or cross-site tracking on this site, and we do not sell or share what you send us.

What we process inside the application

Inside a tenant, VeloERP processes financial, supply chain, employee and patient-account data on the customer's instruction. Each tenant's data is encrypted under its own key and isolated by row-level security in the database.

We never train models on tenant data — contractually and technically. Model calls go only to vendors under a signed Business Associate Agreement, and those vendors are listed publicly on our security page.

We do not embed patient-identified text. Retrieval covers item masters, payer rules, contract text, vendor records and configuration only.

Retention and erasure

Financial records follow the retention schedule in your agreement — typically seven years for financial archives and six years for the audit log, which is what the HIPAA audit-control requirement expects.

Offboarding ends with destruction of your tenant's encryption key. That is cryptographic erasure: the ciphertext that remains in backups is unreadable, and we can evidence the key destruction to your compliance team.

Your rights

If you are an individual whose data sits inside a customer's tenant, direct access, correction and deletion requests to that customer — they control the record. We support them in responding.

For data you sent us directly through this site, email us and we will remove it.