Last updated: 8/19/26
Search a reimbursement benchmark on the free tier.
Get 15 Free Searches View pricingPayerLenz ("PayerLenz," "we," "us," or "our") is a reimbursement benchmarking and eligibility verification platform for behavioral health providers, and is the first software product of Revenue Logic, a behavioral-health-exclusive revenue cycle management company headquartered in the Las Vegas metro area, Nevada.
This policy covers two different things, and the distinction matters.
The PayerLenz website at payerlenz.com, which is an informational site for providers evaluating the product. It does not collect protected health information.
The PayerLenz application, where customers run eligibility checks, request verifications, view reimbursement benchmarks, and may contribute claims data. The application handles protected health information on behalf of our customers, and that handling is governed by the Business Associate Agreement executed with each customer, by HIPAA, and by the sections of this policy that describe it.
This policy is not a HIPAA Notice of Privacy Practices. Individuals seeking information about how their own health information is handled should contact their treatment provider directly.
On the website. We do not currently operate a contact or consultation form. Our hosting and security providers log standard technical data for every visit, including IP address, browser type, device type, referring page, and pages viewed, for site operation, security, and performance purposes.
In the application. We collect account information provided by our customers, including names, work email addresses, organization details, and role assignments. We process the patient and plan information a customer submits in order to return an eligibility response or complete a verification, and we process the adjudicated claims data a customer chooses to contribute.
We do not knowingly collect patient information through the website. The website is intended for behavioral health providers and organizations evaluating the product, not for patients.
To provide the application and return the results a customer requests; to operate, secure, and improve the website and the application; to understand general usage and traffic patterns; to build and maintain de-identified reimbursement benchmarks as described in section 8; and to comply with legal obligations.
We do not sell personal information, and we do not use it for automated decision-making that produces legal or similarly significant effects on an individual.
The website uses essential cookies required for basic functionality and security. It uses Google Analytics, deployed through Google Tag Manager, to understand how visitors use the site, and Ahrefs Analytics for the same purpose. The site also loads fonts from Google Fonts, which transmits your IP address to Google in order to serve them.
You can control cookies through your browser settings and opt out of Google Analytics using Google's browser add-on.
No third-party analytics load on any authenticated page of the application.
Service providers. We use third-party vendors to host the website and application, to measure website usage, and to operate the eligibility and claims infrastructure. Vendors handling protected health information do so under Business Associate Agreements.
Legal requirements. We may disclose information if required by law, subpoena, or other legal process, or to protect the rights, property, or safety of PayerLenz, Revenue Logic, our customers, or others.
Business transfers. If PayerLenz or Revenue Logic is involved in a merger, acquisition, or sale of assets, information may be transferred as part of that transaction.
We do not sell or rent personal information to third parties for their own marketing purposes.
PayerLenz acts as a Business Associate, as defined under the Health Insurance Portability and Accountability Act, on behalf of the behavioral health providers who use the application.
A Business Associate Agreement is executed with every paid customer as part of onboarding. It is not an optional add-on; it is a required step before a subscription begins.
The application runs on HIPAA-eligible infrastructure, with Business Associate Agreements in place across our hosting and data providers. Our infrastructure vendors maintain SOC 2 Type II attestations. Data is encrypted in transit using TLS 1.2 or higher and at rest using AES-256.
Customers may contribute adjudicated claims data to the benchmark pool in exchange for a discount on paid plans or search credits on the free tier. Participation is optional.
Protected health information is removed before contributed data enters the aggregate pool. Member identifiers and facility identifiers are stored hashed, so the pool cannot be reverse-mapped to a named facility through ordinary use. A contributing facility's identity is never attached to a benchmark another customer sees.
The de-identification standard these controls answer to is the one set out at 45 CFR 164.514.
Several controls sit between contributed claims and anything another customer can see.
No externally visible figure is built from fewer than eleven matched claims. That floor is applied on every external surface and takes no override.
Nothing built from a single facility is published, regardless of how many claims it holds, because a figure drawn from one facility describes that facility's contract rather than a market rate.
External surfaces return cell-level aggregates only, with no path to claim-level rows.
Query velocity is limited across in-application and API traffic on one shared budget, so a suppressed result cannot be reconstructed by iterating queries around it.
Eligibility check results are retained for 30 days and then permanently deleted. Customers can export a result to keep their own copy before that. This is a deliberate handling choice rather than a technical limitation.
Account information is retained for the life of the subscription and for a period afterward as required for legal, tax, and audit purposes. Contributed claims data, once de-identified, is retained as part of the aggregate benchmark pool.
Depending on your state of residence, you may have the right to know what personal information we have collected about you, to request its deletion, to correct inaccurate information, and to opt out of the sale or sharing of personal information. As stated above, we do not sell personal information. To exercise any of these rights, contact us using the information below.
Requests concerning protected health information held on behalf of a provider are directed to that provider, who is the covered entity.
The website and the application are intended for business use by adults. Neither is directed to children, and we do not knowingly collect personal information from anyone under 18 through them.
We use administrative, technical, and physical safeguards designed to protect the information we hold, including encryption in transit and at rest, role-based access control within each customer account, and Business Associate Agreements with vendors that handle protected health information. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.
The website may link to third-party sites, including revenuelogic.io. We are not responsible for the privacy practices of third-party sites and encourage you to review their policies directly.
We may update this policy from time to time. The "Last updated" date at the top reflects the most recent revision. Material changes will be reflected here.
Email payerlenzsupport@revenuelogic.io.
PayerLenz, 32 Discovery, Suite 130, Irvine, CA 92618.