This policy applies to our website (vitalsearch.ai) and pre-launch forms (e.g., waitlist and demo requests). When we launch products that process health information, we will provide product-specific privacy notices explaining HIPAA/GDPR obligations in more detail.
1. Information we collect
- Contact details you submit (name, email, role, organization, message).
- Usage data such as pages viewed, device/browser information, and approximate location (from IP) via privacy-respecting analytics.
- Communications you send us (support emails, feedback).
- No PHI by default. Our public site/forms are not intended to capture Protected Health Information (PHI). Please don’t submit patient data here.
2. How we use information
- To respond to waitlist/demo requests and provide product updates.
- To operate, maintain, and improve our site and services.
- To prevent abuse, secure our systems, and comply with law.
- With your permission, to send occasional marketing communications (you can opt out any time).
3. Legal bases (GDPR)
Where GDPR applies, we rely on: (a) consent (e.g., newsletters), (b) contract (e.g., responding to demo requests), and (c) legitimate interests (site security, product analytics) balanced against your rights.
5. Security
We employ encryption in transit (HTTPS), access controls, and monitoring. For future products that may process PHI, we will implement HIPAA-aligned safeguards. No security is perfect, but we work to reduce risk and respond quickly.
6. Data retention
We keep personal data only as long as needed for the purposes above, or as required by law. When no longer needed, we delete or de-identify it.
7. Your rights
- Access, correct, or delete your data.
- Object to or restrict certain processing.
- Withdraw consent at any time (where processing is based on consent).
- Portability of your data (where applicable).
To exercise rights, email privacy@vitalsearch.ai. We will verify your request to protect your account.
8. International transfers
We may process data in the U.S. and other countries. Where required, we use appropriate safeguards (e.g., standard contractual clauses).
9. Children
Our website is not directed to children under 16. If you believe a child provided personal data, contact us and we’ll remove it.
10. Changes to this policy
If we make material changes, we’ll update this page and adjust the “Last updated” date above.
Contact
- Email (general): hello@vitalsearch.ai
- Email (privacy): privacy@vitalsearch.ai
- Email (security): security@vitalsearch.ai
This policy is provided for transparency and does not constitute legal advice.