EN - USD

Privacy Policy

 

Dektori Privacy Policy and Notice of Privacy Practices

Effective Date: February 10, 2026
 

1. Introduction

Dektori ("we,” "us,” or "our”) is committed to protecting your ("you,” "user”) privacy and safeguarding the personal information you share with us. This Privacy Policy explains how we collect, use, store, and disclose personal and health information when you use our health education platform ("Platform”), which includes our website and any mobile applications. It also describes your rights regarding your information.
By using the Platform, you consent to the practices outlined in this Policy and understand that your information may be transferred to and processed in the United States, United Kingdom, or European Union where our Experts operate.
 

2. Information We Collect

Dektori collects only the information necessary to provide and improve our services. Information is obtained directly from you, through automated technologies, and occasionally through third parties. Some of the information identified above, including identification document information and health information, may be considered sensitive personal information under certain laws. We will collect and process sensitive information only if you share the information voluntarily.
2.1 Information You Provide
When you create an account, book or participate in a consultation, subscribe to newsletters, or communicate with us, you may provide personal identifiers such as your name, date of birth, gender, phone number, email address, and demographic information. You may also provide information including your health history, symptoms, medications, test results, or consultation notes.
Payment details, such as billing addresses and transaction information, may also be collected. Sensitive payment card information is processed securely by third-party providers like Stripe or PayPal; Dektori does not store complete credit card numbers.
We also collect the content of your communications with support staff or independent U.S.-licensed, UK-licensed or EU-licensed healthcare professionals ("Experts”), as well as feedback, attachments, reviews, or complaints. Newsletter subscriptions require an email address, which we use only for sending updates and materials you consent to receive.
2.2 Information Collected Automatically (Cookies and Tracking Technologies)
When you use the Platform, we and our service providers may employ cookies, pixels, SDKs, and other tracking technologies to support functionality, security, and analytics. We collect technical details such as your IP address, device identifiers, browser type, language settings, pages visited, and activity logs. This information supports security, performance, and reliability.
Cookies help maintain secure sessions, recognize returning users, and remember preferences. Some are essential for login and navigation, while others help analyze usage trends. For example, authentication services like Apple, Google, and Facebook use cookies or tokens to verify identity, while our chatbot uses session cookies to continue conversations across pages.
Other integrations, such as Google reCAPTCHA, Firebase, Google Analytics, and Google Tag Manager, collect technical data to improve stability and detect fraudulent or automated activity. These tools are configured to avoid linking activity data with your personal consultation records. Marketing tools such as Google or Facebook pixels may be used for limited outreach campaigns, but these are configured not to collect health information.
We may also infer approximate location from your IP address, or collect precise location information if you enable it on your device. Services like Google reCAPTCHA, Firebase, and authentication systems from Apple, Google, or Facebook may process technical signals to ensure secure login and session management. These services handle metadata only.
You may manage cookies through your browser settings. While most cookies can be declined or cleared, disabling certain cookies may impact the functionality of the Platform.
2.3 Information from Third Parties
At times, we may receive information about you from third parties, such as when an Expert enters information on your behalf, a parent or guardian supplies details for a minor, or a payment processor updates billing information. If you log in through Apple, Google, or Facebook, we receive only limited account details necessary for authentication and account management.
Newsletter services and translation tools (such as Microsoft Translator) may also process limited information. These services are used only for their intended function and do not retain or repurpose your content. We ensure that any sensitive information processed by translation tools is handled with appropriate confidentiality and security measures.
 

3. How We Use Your Information

We use your information for purposes essential to operating and improving the Platform:
  • Providing Services: Personal information is used to connect you with Experts, allow Experts to review information you submit, and facilitate educational consultations.
  • Health Care Operations: Information may be used to assess service quality, train Experts, improve functionality, and support customer service. Health information may also be de-identified and used for analytics, research, or platform development.
  • Communications: We use your contact details to send confirmations, respond to inquiries, provide service announcements, and share updates. You may receive newsletters or promotional content, but you may opt out of marketing messages at any time.
  • Personalization and Improvement: Usage information helps us tailor your experience, recommend relevant services, and optimize the Platform's performance and accessibility.
  • Analytics and Marketing: Non-identifiable information may be used to understand user behavior and for targeted outreach, always in compliance with law. We do not sell your personal information.
  • Legal and Safety Purposes: We may use your information to comply with laws, respond to lawful requests, prevent fraud, enforce the Terms and Conditions posted on our website, or protect the safety of users and the public.
 

4. How We Share and Disclose Information

Your information is shared only as necessary and with safeguards:
  • Experts: Your health information is shared with independent Experts offering health education through the Platform. These Experts are obligated to keep it confidential.
  • Authorized Representatives: If you act on behalf of a minor or another person, or if someone acts for you, information may be disclosed to them with your consent or as allowed by law.
  • Service Providers: Trusted partners (such as payment processors, hosting services, translation providers, or analytics partners) may access information strictly to perform contracted services under confidentiality obligations.
  • Affiliated Entities: Information may be shared with Dektori's corporate affiliates for internal operations under terms consistent with this Policy.
  • Business Transfers: In the event of a merger, acquisition, restructuring, or sale of assets, your information may be transferred to the successor entity with protections intact.
  • Legal Requirements: We may disclose information if required by law, in response to lawful requests, or to report abuse, neglect, or threats to safety.
  • De-identified or Aggregated Data: We may share information stripped of personal identifiers for research, analytics, or service development. This information cannot reasonably be traced back to you.
 

5. De-Identification

Dektori may de-identify health information for internal purposes, including research and platform improvements. Once information has been de-identified, it cannot reasonably be traced back to you. De-identified information may be analyzed to improve Platform performance, evaluate trends, and develop new features, while ensuring your privacy is preserved.
 

6. Your Rights and Choices About Your Information

You have certain rights regarding your personal information, subject to applicable law. These rights may include:
  • Access: The right to request access to the personal information we hold about you.
  • Correction: The right to request that we correct any inaccurate or incomplete personal information.
  • Deletion: The right to request the deletion of your personal information, subject to certain exceptions.
  • Portability: The right to receive your personal information in a structured, commonly used, and machine-readable format.
  • Objection/Restriction: The right to object to or request restriction of our processing of your personal information in certain circumstances.
You can set your browser to refuse all or some browser cookies or other tracking technology files, or to alert you when these files are being sent. If you disable or refuse cookies or similar tracking files, some features may be inaccessible or not function properly. Some browsers include a "Do Not Track" (DNT) setting that can send a signal to the online services you visit indicating you do not wish to be tracked.
To exercise any of these rights, please contact us using the details provided in Section 12.
 

7. How We Retain Your Personal Information

We keep the categories of personal information described in this policy for as long as reasonably necessary to fulfill the purposes described or for as otherwise legally permitted or required, such as maintaining the Platform, operating our organization, complying with our legal obligations, resolving disputes, and for safety, security, and fraud prevention. This means that we consider our legal and business obligations, potential risks of harm, and the nature of the information when deciding how long to retain personal information. At the end of the retention period, personal information will be deleted, destroyed, or de-identified.
 

8. International Users and Data Transfers

Dektori is based in the United States, and information you provide may be transferred to and stored on servers in the U.S. or other jurisdictions. By using the Platform, you consent to such transfers, even where data protection laws may differ from those in your home country. For users in the European Economic Area (EEA) and the UK, we implement appropriate safeguards for international data transfers, such as standard contractual clauses, to ensure your data is protected in accordance with GDPR and UK GDPR requirements.
 

9. Data Security

We employ administrative, technical, and physical safeguards to protect your personal information and health information. Measures include encryption of data in transit and at rest, role-based access controls, auditing and monitoring of systems, firewalls, malware detection, regular patching, secure data backups, and incident response procedures.
Despite our efforts, no method of storage or transmission is completely secure, and we cannot guarantee absolute security. You also play a role by using strong passwords, safeguarding your account credentials, and notifying us promptly of any suspected unauthorized access.
 

10. Children's Privacy

The Platform is not intended for children under thirteen (13), and we do not knowingly collect information from children without parental consent. Users between thirteen (13) and seventeen (17) may only access Dektori with the involvement of a parent or guardian. By using the Platform, you confirm that you are either at least eighteen (18) years old, or that you are between thirteen (13) and seventeen (17) and have parental or guardian consent.
If you are a parent or guardian and believe that your child's information has been collected without consent, please contact us immediately so we may take corrective action.
 

11. Changes to this Policy

We may update this Privacy Policy periodically as our services or applicable laws evolve. When updates occur, we will revise the effective date and post the updated policy on our website. Substantive changes will be highlighted where appropriate, and we will notify users of any material changes via email to the address associated with your account or through a prominent notification on the Platform.
 

12. Contact Us

If you have questions, concerns, or requests related to this Privacy Policy, or if you wish to exercise your privacy rights, you may contact us at:
We will review and respond to inquiries promptly. Dektori will never retaliate against you for raising a privacy concern or filing a complaint.
Note on HIPAA Compliance: While Dektori is not a covered entity under the Health Insurance Portability and Accountability Act of 1996 (HIPAA), we voluntarily adopt privacy and security measures consistent with HIPAA standards to protect personal health information (PHI). This voluntary adoption does not, however, make Dektori a covered entity under HIPAA, nor does it imply full compliance with all HIPAA regulations. Our commitment is to safeguard your data with robust practices, even when not legally mandated by HIPAA.