Privacy Policy of doctorsa.com

This Application collects some Personal Data from its Users.

Personal Data processed for the following purposes and using the following services:

    • Analytics

      • Google Analytics 4

        Personal Data: number of Users; session statistics; Trackers; Usage Data

      • Google Analytics for Firebase (for apps)

        Personal Data: device information; operating systems; Usage Data

      • Rebrandly

        Personal Data: clicks; Trackers; Usage Data

      • Site Kit

        Personal Data: country; purchase history; search history; Trackers; Usage Data; various types of Data as specified in the privacy policy of the service

    • Beta Testing

      • TestFlight

        Personal Data: Data communicated while using the service

    • Building and running this Application

      • WordPress (self-hosted)

        Personal Data: Data communicated while using the service

    • Collection of privacy-related preferences

      • iubenda Consent Database

        Personal Data: Data communicated while using the service; IP address; Trackers

      • iubenda Privacy Controls and Cookie Solution

        Personal Data: IP address; Trackers

    • Data transfer outside of the UK

      • Data transfer abroad based on standard contractual clauses (UK)

        Personal Data: various types of Data

    • Data transfer outside the EU

      • Data transfer abroad based on standard contractual clauses

        Personal Data: various types of Data

    • Device permissions for Personal Data access

      • Device permissions for Personal Data access

        Personal Data: Camera permission, without saving or recording; Microphone permission, without recording; Precise location permission (non-continuous)

    • Displaying content from external platforms

      • Google Maps widget

        Personal Data: Usage Data

    • Handling payments

      • Stripe

        Personal Data: email address; first name; last name; payment info

    • Hosting and backend infrastructure

      • Google Cloud

        Personal Data: various types of Data as specified in the privacy policy of the service

    • Infrastructure monitoring

      • Crashlytics

        Personal Data: crash data; device information; Universally unique identifier (UUID)

    • Interaction with live chat platforms

      • WhatsApp Business Chat widget

        Personal Data: answers to questions; contents of the email or message; Data communicated while using the service; date of the message; first name; last name; phone number; profile picture; sender of the message; time the message was sent; user content

    • Location-based interactions

      • Non-continuous geolocation

        Personal Data: geographic position

    • Managing contacts and sending messages

      • Mailgun

        Personal Data: email address

      • OneSignal

        Personal Data: email address; geographic position; language; Trackers; unique device identifiers for advertising (Google Advertiser ID or IDFA, for example); Usage Data; various types of Data as specified in the privacy policy of the service

      • Twilio

        Personal Data: phone number

      • Trustpilot Automatic Feedback Service

        Personal Data: email address; first name; order ID

    • Managing data collection and online surveys

      • Data provided via online forms, managed directly

        Personal Data: answers to questions; billing address; city; company name; contact info; country; date of birth; email address; first name; gender; language; last name; phone number; physical address; Usage Data

    • Managing support and contact requests

      • WhatsApp Business customer support

        Personal Data: Data communicated while using the service

    • Registration and authentication provided directly by this Application

      • Direct registration

        Personal Data: academic background; billing address; city; company name; country; date of birth; email address; field of activity; first name; gender; house number; language; last name; password; phone number; physical address; profession; profile picture; Social Security number (SSN); state; Tax ID; Usage Data; User ID; various types of Data; VAT Number; workplace; ZIP/Postal code

    • Spam and bots protection

      • Google reCAPTCHA

        Personal Data: answers to questions; clicks; keypress events; motion sensor events; mouse movements; scroll position; touch events; Trackers; Usage Data

    • Tag Management

      • Google Tag Manager

        Personal Data: Trackers

    • Traffic optimization and distribution

      • Cloudflare

        Personal Data: Trackers

      • Google Hosted Libraries

        Personal Data: Trackers; Usage Data

      • jQuery CDN

        Personal Data: Usage Data

Information on opting out of interest-based advertising

In addition to any opt-out feature provided by any of the services listed in this document, Users may learn more on how to generally opt out of interest-based advertising within the dedicated section of the Cookie Policy.

Further information about the processing of Personal Data

    • Management of Health-Related Information

      Doctorsa.com does not process, store, or manage any medical records or Protected Health Information (PHI)—except for minimal information provided by the user, such as a description of their current need, required to ensure they obtain the service they need.

      Users may provide sensitive health-related information through the request form, at their sole discretion and voluntarily. This information is treated with utmost care and is used solely for the purpose of providing the requested service.
      The selected medical provider with whom the user books an appointment is the only one who receives this information in connection with the user’s identification.
      In certain cases, such as when facilitating insurance payments or communication at the patient's request, doctorsa.com may collect and process sensitive health-related information. This information is handled with the utmost diligence and in compliance with GDPR standards. We only collect the minimum necessary information required to fulfill the requested service, and we ensure that it is used solely for the purpose of providing the requested assistance.

      Consent for Processing Sensitive Data:
      Patients will be explicitly asked to provide their consent before any health-related data is processed. This consent is required to ensure that patients are fully informed and agree to the use of their data for the specific purposes outlined.

      Security of Sensitive Information:
      We implement robust technical and organizational measures to protect sensitive health information, including encryption, secure storage, and access controls. Access to this data is strictly limited to authorized personnel who need it to perform their duties.

    • Patient Rights Regarding Health Information

      As a user of doctorsa.com, you have the following rights concerning your personal and sensitive health information:
      Right of Access: You have the right to request access to any personal data we hold about you, including any health-related information.
      Right to Rectification: You may request corrections to any inaccurate or incomplete information we hold about you.
      Right to Erasure: Under certain circumstances, you have the right to request the deletion of your personal data, including health-related information, if it is no longer necessary for the purposes it was collected.
      Right to Restrict Processing: You can request that we restrict the processing of your personal data in certain situations, such as when you contest the accuracy of the data.
      Right to Data Portability: You have the right to receive your personal data in a structured, commonly used, and machine-readable format, and to have this data transmitted to another data controller.
      Right to Object: You may object to the processing of your personal data, including for direct marketing purposes.
      Withdrawal of Consent: You can withdraw your consent to process your sensitive health data at any time, without affecting the lawfulness of processing based on consent before its withdrawal.

    • International Data Transfers

      In certain cases, your personal and sensitive health data may be transferred to and processed in countries outside the European Economic Area (EEA). When this occurs, we ensure that appropriate safeguards are in place to protect your data, such as using standard contractual clauses approved by the European Commission or transferring data to countries that have been recognized as providing an adequate level of data protection.

      We are committed to ensuring that your data receives the same level of protection regardless of where it is processed.

    • Data Breach Notification

      In the unlikely event of a data breach involving your personal or sensitive health data, doctorsa.com will promptly notify you and the relevant supervisory authorities as required by GDPR. Our notification will include:

      • The nature of the data breach and the types of data involved.
      • The potential consequences of the breach.
      • The measures we have taken or plan to take to address the breach and mitigate its effects.
      • Information on who to contact for more details about the breach.

      We are committed to protecting your data and will take immediate action to contain and address any data breaches to prevent further impact.

    • Push notifications

      This Application may send push notifications to the User to achieve the purposes outlined in this privacy policy.

      Users may in most cases opt-out of receiving push notifications by visiting their device settings, such as the notification settings for mobile phones, and then change those settings for this Application, some or all of the apps on the particular device. Users must be aware that disabling push notifications may negatively affect the utility of this Application.

    • Selling goods and services online

      The Personal Data collected are used to provide the User with services or to sell goods, including payment and possible delivery. The Personal Data collected to complete the payment may include the credit card, the bank account used for the transfer, or any other means of payment envisaged. The kind of Data collected by this Application depends on the payment system used.

    • The Service is intended for adults

      Users declare themselves to be adult according to their applicable legislation. Minors may not use this Application.

    • Collection of Personal Information about California consumers below the age of 13

      We collect Personal Information of consumers below the age of 13 and won't Sell or Share their Personal Information unless their parents or guardians have opted in on behalf of those minors.

    • Equal protection of User Data

      This Application shares User Data only with third parties carefully selected to ensure that they provide the same or equal protection of User Data as stated in this privacy policy and requested by applicable data protection laws. Further information on data processing and privacy practices by third parties can be found in their respective privacy policies.

    • Preference Cookies

      Preference Cookies store the User preferences detected on this Application in the local domain such as, for example, their timezone and region.

    • sessionStorage

      sessionStorage allows this Application to store and access data right in the User's browser. Data in sessionStorage is deleted automatically when the session ends (in other words, when the browser tab is closed).

    • Transfer of personal information outside of Brazil based on contracts and other legal means

      We can transfer your personal information outside of the Brazilian territory provided that we are able to ensure that any further processing of your personal information will be in compliance with the principles and the rules established by the LGPD, and your rights are safeguarded.

      To do so, we may use one of the following legal means:

      specific contractual clauses for each given transfer. This means that we will enter into an agreement with the recipient of your personal information to make sure that such transfers meet the requirements explained above. Such an agreement shall be subject to the ANPD’s prior verification; standard contractual clauses. These clauses set terms and conditions for the transfer of personal information and are adopted by the ANPD; global corporate clauses. These clauses set terms and conditions for the transfer of personal information within an organisation and, before they come into force, are subject to the ANPD’s prior verification; seals of approval, certificates and codes of conduct regularly issued by the ANPD. These legal instruments allow us to transfer your personal information provided that we abide by their rules. They are subject to the previous approval of the ANPD.
    • Transfer of Data outside of Switzerland to third countries that guarantee an adequate level of data protection

      If this is the condition for Data transfer, Personal Data can be transferred outside of Switzerland to a destination country, or international organization guaranteeing an adequate level of protection of the Data according to a decision of the Swiss Federal Council.

Contact information

    • Owner and Data Controller


      Contact Information for Privacy Inquiries
      : If you have any questions, concerns, or requests regarding your personal data or this privacy policy, please contact our Data Protection Officer (DPO) using the details below:

      Francesco-Maria Serino
      Data Protection Officer
      Via Frattina, 48 - 00187 Rome, Italy

      Our DPO is responsible for overseeing our data protection strategy and ensuring compliance with GDPR and other applicable data protection regulations.

      Owner contact email: legal@doctor.today