Privacy
Privacy Notice
Last updated: [FECHA_AVISO_PRIV]
Data controller
[ORG_NAME] (“the clinic”), located at [DIRECCION], [CIUDAD], [PAIS], is responsible for the use and protection of your personal data. For any matter, contact [PRIVACY_DPO] at [EMAIL_PRIVACIDAD].
Data we collect
- Identification: name, phone, email.
- Contact details and channel preference.
- Reason for visit and relevant clinical background (sensitive).
- Granular consent: privacy, WhatsApp, marketing.
- Minimal technical metadata (hashed IP and user-agent for audit).
Purposes
- Respond to requests and coordinate appointments.
- Provide administrative and, when applicable, clinical follow-up.
- Comply with legal and medical quality obligations.
We do not use your data for advertising without express consent.
Legal basis
Processing is based on your explicit consent, on the contractual relationship from the care requested, and where applicable on legal obligations. We follow data protection principles consistent with the laws of [PAIS].
Retention
Data is retained for the time needed to fulfill the described purposes and any legal retention periods applicable to the clinical record.
Your rights
You may request access, rectification, deletion, or objection to processing, as well as withdraw consent, by writing to [EMAIL_PRIVACIDAD].
WhatsApp and communications
If you authorize WhatsApp contact, it will be used for appointment coordination, reminders, and authorized administrative or clinical follow-up. You can withdraw consent anytime by replying “STOP” or writing to privacy.
Security
We apply reasonable technical and organizational measures: in-transit encryption, access control, minimization, and activity logging.
Transfers
We may share data with technology providers strictly necessary to operate the site (hosting, messaging, conversational AI providers) under confidentiality agreements. We do not sell personal data.
Changes
Material changes to this notice will be published at the same URL with an updated date.