Nemira
Pricing
Sign inSign upBook a demo
Sign inSign up
Nemira

The clinic OS for cash-pay practices. Charting, scheduling, packages, payments, and patient financing in one place.

✦HIPAA-eligible
Platform
  • Charting & SOAP
  • Scheduling
  • Payments & invoicing
  • Packages & memberships
  • Patient financing
  • SMS & broadcasts
  • Reporting & QuickBooks
For
  • Chiropractic
  • Medspa & Aesthetics
  • Dental
  • Wellness & IV
Resources
  • Pricing
  • Our promises
  • Refund policy
  • Security
  • Integrations
  • Customer stories
  • FAQ
Company
  • About
  • Contact
  • Sign in
  • Create account
  • Privacy
  • Terms

Nemira is a software platform for cash-pay clinics. It does not provide medical advice. Treatment outcomes vary by provider, procedure, and individual case.

Financing offers shown in the platform are estimates and do not represent loan approvals. Actual rates, terms, and approvals are subject to lender review and applicable law.

© 2026 NEMIRA
Privacy

How we handle your information

Nemira is a clinic operations platform used by independent healthcare providers to manage bookings, patient communication, financing options, and billing. This notice describes what we collect, why we collect it, how we store and share it, and how you can revoke access.

What we collect

Contact information (name, email, phone), inquiry and visit details (treatment interest, preferred date and time, chart notes authored by the clinic), financing inputs (treatment amount, term preference, self-reported credit range, employment status, state), and the data we receive from connected third-party services that a clinic chooses to link, such as QuickBooks Online.

How we use it

To route booking requests to the clinic you select, compute sample financing payment options, maintain your account, deliver communications you have asked for, sync invoice and payment data into the clinic's accounting system when they have authorized it, and operate basic platform features. We do not sell personal information to advertisers.

Text messaging (SMS)

If you give a clinic your mobile number when booking or joining a waitlist, you may receive appointment reminders, confirmations, waitlist offers, and, where you agreed, occasional recall or promotional texts from that clinic. Message frequency varies. Message and data rates may apply. Reply STOP to any message to opt out, or HELP for help.

We do not sell or share your mobile phone number, or your SMS opt-in consent, with third parties or affiliates for their own marketing purposes. Your number is shared only with our messaging carrier (Telnyx) for the sole purpose of delivering the messages you asked for.

AI features and your data

The clinic assistant and voice-to-SOAP charting run on Amazon Bedrock (Anthropic's Claude models) and Amazon Transcribe, both covered by our AWS Business Associate Agreement. Protected health information processed by these features stays inside our AWS environment under the BAA. Your data is never used to train the AI models. We do not send patient data to any vendor without a BAA. Chart notes and transcripts are part of the patient record and are deletable on the same terms as the rest of that record.

QuickBooks Online data

Clinics can connect their QuickBooks Online company file to Nemira. The connection is established by the clinic owner using Intuit's standard OAuth 2.0 flow. We never see the clinic's Intuit password. The clinic can disconnect at any time from Settings, QuickBooks, Disconnect, and also from inside QuickBooks Online under Apps, Manage my apps.

With the clinic's authorization, Nemira requests the QuickBooks Online accounting scope. We use this access to read chart of accounts, customers, items, and invoices so the clinic can map Nemira's services to QuickBooks accounts, and to write invoices, payments, and credit memos that reflect activity recorded inside Nemira. We do not read or write payroll, time tracking, or 1099 contractor data.

We store the OAuth access token, refresh token, the realm identifier of the connected company, and the timestamps of when the connection was created and last synced. Access and refresh tokens are encrypted at rest using AES-256-GCM with a key held in our server-side configuration and never exposed to the browser. Tokens are decrypted in memory only for the duration of an outbound API request to Intuit. We retain these records while the connection is active. When a clinic disconnects, we revoke the refresh token with Intuit and delete the stored tokens within seven days. Aggregate sync history (timestamps and counts, no QuickBooks field values) is retained for thirteen months for audit and support, then deleted.

Clinics can request a copy or deletion of QuickBooks-derived data we hold about their company by emailing support@nemira.app. Patient-facing data that originates in QuickBooks (for example, an invoice line) is treated under the same rules as the rest of the patient's record.

Other connected services

When a clinic enables Stripe for payments, Telnyx for SMS, AWS SES for email, or other integrations, those providers receive the minimum data needed to perform their function (for example, a payer's card details flow directly to Stripe and are not stored on Nemira). Each provider operates under its own privacy notice, and the clinic remains the controller of the underlying patient data.

Cookies and browser storage

Nemira uses a small number of cookies, and only the ones the platform needs to work: keeping you signed in, protecting sign-in and account connections, and remembering the location you chose. We do not use advertising cookies, analytics cookies, or tracking pixels, and we do not let other companies place cookies on our pages.

CookieWhat it doesHow long it lasts
nemira_sessionKeeps you signed in30 days, or until you sign out
nemira_mfa_pendingHolds your sign-in open while you enter a two-factor code5 minutes
nemira_active_locationRemembers which location you are viewing, for clinics with more than one180 days
nemira_g_login_state
nemira_g_login_next
Protects signing in with Google and returns you to the page you started on10 minutes
nemira_g_cal_stateProtects connecting a Google Calendar10 minutes
qb_oauth_stateProtects connecting QuickBooks Online10 minutes

All of these are set by nemira.app itself, cannot be read by scripts running on the page, and are never shared with advertisers. Because the platform cannot work without them, we do not ask for consent before setting them. If you block them in your browser, you will not be able to sign in.

We also save a few settings in your browser so the dashboard looks the way you left it: your theme, text density and contrast, the width of the sidebar and whether it is collapsed, whether the assistant panel was open and which conversation you had open, and when you dismissed the prompt to add Nemira to your home screen. These stay on your device and are removed when you clear your browser data. The app also keeps a copy of its own code files on your device so pages load quickly and an offline notice can appear when you lose your connection.

Some steps hand you off to another company. Paying an invoice or a deposit opens a checkout page hosted by Stripe, and signing in with Google opens a Google page. Those companies set their own cookies on their own sites, under their own privacy notices. If your clinic places our booking widget on its website, the widget uses only the cookies listed above, and the clinic can set it to wait until you accept that site's cookie notice.

If we ever add analytics or advertising tools, we will update this notice before they go live and ask for your consent wherever the law requires it.

Where your data is stored

Nemira runs on Fly.io and stores data in Amazon Web Services, both in the United States. Aurora Postgres holds the database, S3 holds file uploads, Amazon SES sends email, and the AI features run on Amazon Bedrock and Amazon Transcribe. Protected health information stays inside AWS and Fly, each covered by a Business Associate Agreement. Error monitoring (Sentry) and rate limiting (Upstash) receive only scrubbed, non-clinical data.

How long we keep it

Account and booking data are retained while the account is active and for a period afterwards consistent with the clinic's recordkeeping obligations. Encrypted backups roll off on a thirty-five day cycle. Audit logs are retained for thirteen months. Specific deletion requests are honored within thirty days, subject to legal holds.

Future lender integrations

When the platform connects to real lenders, additional disclosures will appear at the time of application, including credit pull authorization, FCRA permissible purpose, and an electronic-signature consent. Those disclosures do not apply yet because financing offers shown today are estimates and not offers of credit.

Contact

Questions, access requests, deletion requests, or anything else: support@nemira.app.

Last updated: 2026-09-14.