Legal

Privacy Policy

Your privacy is our priority. This policy explains how we collect, use, and protect your personal and health information.

Last Updated: November 6, 2025

Privacy at a Glance

Here's what you need to know about how we handle your data

End-to-End Encryption

All your health data is encrypted in transit and at rest using industry-standard AES-256 encryption.

HIPAA Compliant

We follow strict HIPAA guidelines to protect your protected health information (PHI).

Your Data, Your Control

You can access, download, or delete your data at any time through your account settings.

Minimal Data Collection

We only collect data necessary to provide our services and improve your experience.

No Selling Your Data

We never sell your personal or health information to third parties. Period.

Breach Notification

We'll notify you immediately if there's any security incident affecting your data.

1. Information We Collect

1.1 Personal Information

When you create an account, we collect your name, email address, phone number, date of birth, and location information. This helps us personalize your experience and connect you with nearby dental professionals.

1.2 Health Information

We collect dental scans, photos of your teeth, health history, dental records, treatment information, and AI analysis results. This information is essential for providing you with accurate health assessments and personalized recommendations.

1.3 Usage Data

We automatically collect information about how you use MySmileBridge, including app interactions, feature usage, scan frequency, and device information. This helps us improve our services and user experience.

1.4 Communication Data

When you communicate with dentists through our platform, we store messages, video call metadata (not recordings unless you consent), and appointment information to maintain your care history.

2. How We Use Your Information

2.1 Service Delivery

We use your information to provide AI-powered dental analysis, connect you with dentists, track your oral health progress, send appointment reminders, and deliver personalized health recommendations.

2.2 Product Improvement

Your data helps us train and improve our AI models (using anonymized data only), develop new features, enhance user experience, and conduct research to advance dental care technology.

2.3 Communication

We may contact you about service updates, health tips and educational content, appointment confirmations, and important account information. You can opt out of non-essential communications at any time.

2.4 Legal Compliance

We may use or disclose your information to comply with legal obligations, respond to legal requests, protect our rights and safety, and prevent fraud or abuse.

3. Data Sharing and Disclosure

3.1 With Healthcare Providers

When you book appointments or consultations, we share relevant health information with your chosen dentists to facilitate your care. You always control what information is shared.

3.2 With Service Providers

We work with trusted third-party service providers for cloud storage, payment processing, analytics, and customer support. These providers are contractually bound to protect your data and can only use it for specified purposes.

3.3 Research Partners

With your explicit consent, we may share anonymized, de-identified data with research institutions to advance dental science. No personally identifiable information is ever shared for research purposes.

3.4 What We Don't Share

We never sell your personal information to advertisers, marketing companies, or data brokers. We never share your health information for marketing purposes without your explicit consent.

4. Data Security

4.1 Technical Safeguards

We implement AES-256 encryption for data at rest, TLS 1.3 for data in transit, multi-factor authentication, regular security audits and penetration testing, and automated threat detection systems.

4.2 Administrative Safeguards

Our team follows strict access controls and role-based permissions, mandatory security training for all staff, comprehensive privacy policies and procedures, and regular compliance reviews.

4.3 Physical Safeguards

We use secure, SOC 2 Type II certified data centers with 24/7 monitoring, redundant power and network systems, and strict physical access controls.

5. Your Privacy Rights

5.1 Access and Portability

You have the right to access all your personal and health information, download your data in a portable format, and request copies of your dental scans and records at any time through your account settings.

5.2 Correction and Update

You can update your personal information, correct inaccurate health data, and modify your communication preferences directly in your account.

5.3 Deletion

You can request deletion of your account and associated data. Note that we may retain certain information as required by law or for legitimate business purposes (e.g., fraud prevention) for a limited time.

5.4 Opt-Out Rights

You can opt out of marketing communications, data sharing for research purposes, and certain AI training uses of your data while still using our core services.

6. Children's Privacy

MySmileBridge is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

For users between 13 and 18, we require parental consent before creating an account and collecting any health information.

7. International Data Transfers

MySmileBridge operates globally. If you access our services from outside the United States, your information may be transferred to, stored, and processed in the United States or other countries where our service providers operate.

We ensure that all international data transfers comply with applicable data protection laws, including GDPR for European users, through standard contractual clauses, adequacy decisions, and other approved transfer mechanisms.

8. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will:

  • Notify you via email at least 30 days before the changes take effect
  • Display a prominent notice in the app
  • Update the "Last Updated" date at the top of this policy
  • Require your consent for any material changes affecting how we use your health information
9. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Email: privacy@chanieldigitalhealth.com

Phone: 1-800-SMILE-00

Mail: MySmileBridge Privacy Team
123 Dental Plaza, Suite 500
San Francisco, CA 94105

Data Protection Officer: dpo@chanieldigitalhealth.com

Your Trust is Our Foundation

We're committed to transparency and protecting your privacy. If you have any questions or concerns, our privacy team is always here to help.