CCPA-Compliant Fax Service — Protect California Consumer Data
The California Consumer Privacy Act gives California residents rights over their personal information. If you fax documents containing California residents' data, your fax service must support CCPA compliance.
CCPA Requirements for Fax
- Right to know — disclose what personal information is collected via fax
- Right to delete — delete faxed personal information on request
- Right to opt-out — honor opt-out requests for data sharing
- Data security — reasonable security measures for faxed data
- Service provider agreements — contractual protections with fax providers
- Privacy policy disclosure of fax data practices
How Send FAX Mail Meets CCPA
- Transparent data practices — we document what data we collect during faxing
- Deletion capabilities for right-to-delete requests on faxed records
- We do not sell personal information from fax transmissions
- Encryption and access controls provide reasonable security measures
- Service provider agreement available for CCPA compliance
- API access for automated compliance request processing
Industries Affected
Starter
- 600 fax pages per month
- 1 dedicated fax number
- Send & receive faxes
- Fax to email delivery
- Fax history & downloads
- No per-page overage charges
Professional
- 2,000 fax pages per month
- 3 dedicated fax numbers
- HIPAA compliance + self-serve BAA
- Sign documents before sending
- Priority delivery
- No per-page overage charges
Business
- 5,000 fax pages per month
- 5 dedicated fax numbers
- HIPAA compliance + self-serve BAA
- Public API & webhooks
- Audit logs
- Team roles & permissions
- Priority support
Enterprise
- 8,000 fax pages per month
- 10 dedicated fax numbers
- Everything in Business
- Public API & signed webhooks
- Dedicated support
- Custom integrations
No per-page overage. No activation fees. No contracts. Cancel anytime.
What’s current · as of August 2026
- HIPAA large-breach reporting threshold
- 500+ individuals — reported to HHS OCR without unreasonable delay Source: HHS Office for Civil Rights
- HIPAA documentation retention period
- 6 years from creation or last-effective date Source: HHS — HIPAA Administrative Requirements (45 CFR 164.316)
Recent updates
Federal interoperability rules keep pushing healthcare past the fax machine
CMS has advanced a series of interoperability rules that press hospitals, payers, and providers toward electronic data exchange and standardized claims attachments. The direction of travel is clear: paper and analog fax workflows are being replaced by digital transmission that carries an auditable record — which is exactly what a cloud fax with delivery confirmation provides for offices not yet on a full EHR pipeline.
CMS →Federal agencies still write fax into new rules and notices
The Federal Register — the daily journal of U.S. federal rulemaking — regularly publishes rules and notices that reference fax as an accepted or required submission channel for filings with agencies like the IRS, SSA, and CMS. That is why fax remains a live requirement for many official forms even as electronic portals expand.
Federal Register →Healthcare breach reporting keeps document handling under scrutiny
Ongoing reporting on HIPAA breaches and OCR settlements underscores how much scrutiny falls on how medical documents are stored, sent, and received. Sending records through a controlled, access-logged channel rather than an unmanaged machine reduces the mishandling risks that show up repeatedly in breach analyses.
HIPAA Journal →
CCPA Fax Compliance — FAQ
Yes. CCPA applies to businesses that collect personal information from California residents, including through fax. You must be able to disclose, delete, and protect this data.
Yes. Under CCPA, California residents can request deletion of their personal information. Send FAX Mail supports deletion of fax records for CCPA compliance.
Yes. CCPA requires service provider agreements with companies that process personal information on your behalf. Send FAX Mail provides service provider agreements for business customers.
CCPA violations can result in civil penalties up to $2,500 per violation or $7,500 per intentional violation. Consumers can also sue for data breaches with statutory damages of $100-$750 per incident.
CCPA-compliant faxing starts at $39.99/mo
Encrypted transmission, audit logs, secure storage. No enterprise contract needed.
7-day free trial · No credit card required