Privacy Policy
Last updated September 8, 2026
CaseFlow PI (“CaseFlow,” “we,” “us”) provides practice operations software for personal injury case management. This Privacy Policy explains how we collect, use, and protect information when you use our applications and related services, including this website.
Information we collect
- Account information: name, work email, role, and authentication data needed to sign you in and manage access.
- Operational data: case workflow records, queue assignments, notes, reminders, and similar content entered by authorized users of a practice.
- Website enquiry data: information you submit through demo, pricing, or support forms (name, email, organization, message).
- Technical data: IP address, browser type, device information, and security/audit logs used to protect the service and investigate misuse.
How we use information
- Provide, maintain, and improve CaseFlow PI
- Authenticate users, enforce permissions, and prevent unauthorized access
- Respond to demo, pricing, and support requests
- Send service-related notices (security alerts, password resets, operational emails)
- Comply with legal obligations and respond to lawful requests
Healthcare information
When CaseFlow processes protected health information on behalf of a covered entity or business associate customer, we do so under applicable agreements and with administrative, technical, and physical safeguards appropriate to the sensitivity of that data.
Sharing
We do not sell personal information. We may share information with infrastructure and service providers that process data for us under contractual confidentiality and security obligations, or when required by law.
Security
We use encryption in transit (TLS), access controls, audit logging, and related safeguards. No method of transmission or storage is completely secure; we continuously improve our controls as the platform evolves.
Retention
We retain account and operational records for as long as needed to provide the service and meet legal, contractual, and audit requirements, then delete or de-identify data according to our retention schedule and customer agreements.
Your choices
Contact your practice administrator for access, correction, or account changes within your organization. You may also contact us using the details below.
Contact
Questions about this policy: hello@caseflowpi.com
Security or vulnerability reports: security@caseflowpi.com