Patient Portal

Secure, online payments made easy

Payment is painless with an intuitive patient portal. Boost collections by delivering a patient-first financial experience.

A payment experience patients expect

Simplify patient billing with an online portal that provides secure access to patient statements, payments, and support.

patient-portal/icon_secure

Accelerate collections with easy access to the portal

Patients gain access to the secure, HIPAA-compliant portal using only their birthday – no username or password required.

patient-portal/icon_accessible

Accommodate all patients with simple, flexible payment options

Accept credit card, Apple Pay, and ACH transfers or provide the option to set up a payment plan directly through the portal.

patient-portal/icon_customizable

Answer questions quickly with access to digital support channels

Resolve issues and clarify confusion at the point of payment with live chat and offer secure email communication after business hours.

Patient Payment Portal

A modern payments experience

For patients, Inbox Health is their all-in-one bill pay application.

  • 24/7 access

  • Custom User-Friendly Design

  • Keep Credit Cards on File

How it works:

  • Patients receive a link to view their statement by email or text message. A personalized QR code to access the portal is included on paper statements.
  • Patients have the option to pay immediately or view statement details. To pay immediately (only amount owed is displayed), no login credentials are required. To access the portal and view statement details, patients enter their date of birth. Simple and secure entry removes barriers to payment.
  • Patients review easy-to-understand statements. If questions arise, real-time support is offered through live chat, text, or email.
  • Payment is easy with credit card, Apple Pay, and ACH transfer. Payment plans are also offered for patients who need to pay over time.

Get started with Inbox Health today

Inbox Health was built for medical billers. Click below and schedule a quick chat – let’s get to know each other.

Schedule a call

Your questions about Inbox Health's Security & Compliance, answered

  • What compliance requirements apply to healthcare payment platforms?
    Show more

    Healthcare payment platforms must meet two overlapping sets of requirements. HIPAA governs how protected health information (PHI) — including patient names, billing records, and payment receipts — is created, stored, and transmitted. PCI DSS governs how payment card data is handled during transactions. A platform that processes both patient data and card payments, as Inbox Health does, must be independently verified for compliance with both standards.

    Show more
  • Does Inbox Health sign Business Associate Agreements (BAAs)?
    Show more

    Yes. As a HIPAA-covered Business Associate, Inbox Health executes a Business Associate Agreement with every practice or billing company we work with. A BAA is a legally required document that defines how we handle your patients’ protected health information and what our obligations are in the event of a breach or security incident.

    Show more
  • What is the difference between PCI compliance and HIPAA compliance?
    Show more

    PCI DSS (Payment Card Industry Data Security Standard) protects credit and debit card data from fraud and theft. HIPAA protects protected health information (PHI) — any data that links a patient’s identity to their medical or billing history. In healthcare payments, both frameworks apply simultaneously. Satisfying one does not satisfy the other, which is why a billing platform should hold independent certifications for both.

    Show more
  • What does SOC 2 Type 2 mean for my practice or billing company?
    Show more

    A SOC 2 Type 2 report means an independent auditor has verified that Inbox Health’s security controls — covering security, availability, processing integrity, confidentiality, and privacy — operate effectively over time, not just on paper. For your practice or billing company, it means you have third-party proof that your vendor’s security posture is real and sustained.

    Show more
  • How does Inbox Health protect patient data from cybersecurity threats?
    Show more

    Inbox Health protects patient billing data through a layered security approach: end-to-end encryption for data in transit and at rest, tokenization to prevent raw card data from being retained, two-factor authentication enforced for all users, role-based access controls, and continuous audit logging. Our SOC 2 Type 2 certification verifies that these controls are audited and maintained on an ongoing basis.

    Show more
  • What happens if there is a data breach?
    Show more

    Inbox Health maintains documented incident response procedures aligned with HIPAA’s breach notification requirements. In the event of a confirmed breach involving protected health information, we notify affected clients and coordinate disclosure within the regulatory timeframes required by HIPAA — typically 60 days of discovery for covered entities.

    Show more