Privacy statement
Effective August 24, 2026 · Privacy contact: [email protected]
Rennage operates the public website at rennage.com and the authenticated 485 Order Validator at app.rennage.com. This statement describes how we handle information. It is the privacy statement Microsoft guests may review when they accept an invitation to Rennage.
Who we are
Rennage provides AI-assisted Medicare Form 485 (CMS-485) documentation review for home-health teams. The product is a compliance copilot: deterministic checks run first, and human review remains required. Rennage does not approve, deny, or certify Medicare coverage.
Privacy contact
Email [email protected] for privacy questions, access requests, or concerns about this statement.
Public website (rennage.com)
The public marketing site is for product information and demo requests. Do not send identifiable patient charts or other protected health information (PHI) to public inboxes such as [email protected].
- Demo requests sent by email include whatever you choose to write in that message.
- We do not ask the public site to collect Social Security numbers, Medicare IDs, or medical records.
- Hosting and delivery of this site may create standard server and security logs (for example IP address, browser, and the page requested).
Authenticated product (app.rennage.com)
Agency users sign in with enterprise identity (Microsoft Entra ID). Guest users who accept a Rennage invitation use Microsoft’s sign-in service. Microsoft’s own privacy terms apply to that sign-in experience.
The Validator is designed to operate under a HIPAA Business Associate Agreement when an agency enables PHI features. PHI storage and external AI processing stay off until the agency’s approved compliance settings allow them. We retain stored PHI only for the configured retention window, then dispose of it.
Product logs and telemetry use internal IDs (for example validation or batch IDs) and non-identifying metadata. They are not a place for patient names or raw chart text.
Invitations and guest access
If your organization invites you, Rennage may send an invitation email from [email protected]. Accepting the invite uses Microsoft’s guest redemption and consent screens. We receive the work identity Microsoft associates with that guest so you can access the Validator. We do not use a personal Gmail inbox as a patient record.
Cookies and analytics
This public site does not use advertising cookies or third-party marketing analytics. Essential cookies or local storage may be used by the authenticated app for sign-in and session.
Sharing
We do not sell personal information. We share information with service providers that host the site or product (for example Microsoft Azure and Microsoft Entra ID) and when required by law. Assistive AI, when enabled by compliance settings, receives only the minimum text needed for the review task.
Your choices
Agency administrators control who is invited and which roles they have. You can ask [email protected] to help with access or deletion requests that apply to your account. Microsoft account holders can also manage their Microsoft privacy settings with Microsoft.
Related: Terms of use · rennage.com · This page is an operational privacy statement for guests and site visitors. Counsel should review it for your jurisdiction.