This section is educational guidance, not legal advice. Verify all compliance requirements with your legal team and state licensing authority.
Treatment centers operate under HIPAA (45 CFR), 42 CFR Part 2 (confidentiality of substance use disorder treatment), state advertising rules, and in some states, patient-brokering restrictions (e.g., Florida Statute 817.505). Your website must signal compliance to build authority with Google and trust with prospects.
- HIPAA disclaimer and privacy policy: Your privacy policy must explicitly state you do not collect or store PHI (protected health information) through contact forms or website comments. Your privacy policy should reference HIPAA compliance. Link from footer and before contact forms. This isn't a legal protection, but it's a trust signal Google recognizes.
- LegitScript certification and patient-broker disclosure: If you're LegitScript-certified, display the badge prominently (footer, homepage). If applicable in your state, include a patient-broker disclaimer: "This facility may receive compensation for patient referrals from third-party sources." This is required in many states and builds transparency signals.
For detailed compliance requirements, see our HIPAA, LegitScript, and FTC Compliance Guide for Treatment Centers and State Advertising Regulations for Addiction Treatment Centers. Both pages reference the specific statutes and regulations your state enforces.