Individual Security. All information related to an client's status as a recipient of Dovetail services is confidential per State and Federal Law. This includes your identity, which is why we ask that you not use email to arrange for or discuss services because email is an inherently insecure medium. All Dovetail counselors are licensed in the state in which they practice and maintain your records under lock and key and in accordance with State and Federal Law. All information is protected in accordance with our Privacy Practices.
Office Security. Dovetail provides all in person services in private counseling offices or in your workplace. All information stored in Dovetail's central office is under lock and key. Dovetail's central office is accessible only to Dovetail staff: the mailing address on the Contact Us page is not a location where we provide face to face services. All staff in the central office have been trained in compliance with the law and our Privacy Practices.
Computer Security. This web site is hosted by a third party in a state other than Illinois. There is no direct connection between the Internet and Dovetail's central office file server. Connections to the Internet in our central office are through workstations, each running a software firewall behind a switch in a subnet which connects to a hardened hardware firewall using stateful packet sniffing, which is connected to a DSL bridge using PPoE and DHCP. VPN and all remote firewall management services have been both disabled and blocked. Wifi in Dovetail's central office connects directly to the firewall using NAT and DHCP on a separate subnet. Wifi is encrypted using pre-shared keys and connections are restricted by MAC address. Central office Wifi is only for surfing the Internet: there is no connection between our Wifi subnet and our central office LAN.
Internet Security. Dovetail will never send you an email with a link requesting personal or identifiable information. Anyone who sends you such an email is not from Dovetail and is engaging in a "phishing scam." Do not click on any link in any of these emails or respond to these requests. Instead, please forward the email to our webmaster. Dovetail will never set up an Internet web page or form requesting any personal or identifiable information. Anyone using basic web authoring tools can create such a page and attempt to lure your there with a link in an email. While we have taken reasonable measures to thwart bad guys from "spoofing" our web site by stealing our graphics and code, the best security practice is for you to not click on links in unsolicited email. If you should ever encounter any web page that represents itself as Dovetail, Inc., that requests any private or identifiable information, please copy the exact address in the address bar of your browser (highlight it and hit Ctrl-C) and paste the address (Ctrl-V) in the body of an email to our webmaster. Your assistance is greatly appreciated.
Security You Can Trust. Every agreement Dovetail has with an employer for EAP counseling requires that the employer acknowledge client privacy as matter of law. Dovetail reports of EAP use to employers are aggregate statistics no employer can use to identify any individual recipient of counseling services. Dovetail does not engage in electronic transfer of Protected Health Information and Dovetail has never released any information to any party except in accordance with the law. Dovetail has no evidence of any intentional or inadvertent violation of client confidentiality since we first opened our doors over eleven years ago.
Dovetail's Privacy Officer is Evan Peterson, IL LCSW, MI LMSW, who has been certified in court as an expert witness in Mental Health confidentiality. Call 888-275-3683 (888-ASK-DOVE) to speak with Evan.