1. Information we collect
We collect information necessary to deliver our Service, including:
- Account information (email, name, clinic details)
- Authentication data (passwords, WebAuthn credentials)
- Usage logs (device, browser, IP address)
- Clinical and patient data entered by your practice
2. How we use information
Data is used to deliver and improve the Service, secure your account, and fulfill legal and regulatory obligations. We do not sell your data.
3. Data security and storage
We host data on secure cloud infrastructure with encryption at rest and in transit, access control, and real-time monitoring. We comply with major data protection frameworks including GDPR and equivalent standards.
4. International transfers
Your data may be transferred across borders to deliver the Service globally. Such transfers are performed securely and in compliance with international data protection laws.
5. Third-party services
We engage vetted third-party providers for hosting, analytics, and payments. They are contractually bound to data protection standards equivalent to ours.
6. Your rights
You may request access, correction, or deletion of your personal data at any time by contacting us. We may require verification of your identity.
7. Retention and deletion
We retain data only for as long as necessary to provide the Service or meet legal obligations. Upon account closure, all data will be securely deleted or anonymized.
8. Policy updates
We may update this Policy periodically. We will notify you of significant changes by email or in-app notification; continued use of the Service implies acceptance of the updated Policy.
Questions regarding data protection? Contact dpo@lidento.com.