Privacy Policy

Last updated: June 1, 2026

This Privacy Policy explains how Imdent ("we") handles personal data when you use the platform. We act as a processor of patient data on behalf of clinics (the controllers), and as a controller for account and billing data.

1. Data we collect

2. How we use data

3. Security

We use encryption in transit and encrypt sensitive medical fields at rest. Access is restricted by role and tenant isolation so a clinic can only see its own data. No system is perfectly secure, but we work to protect your information using industry-standard measures.

4. Sharing

We share data only as needed to run the Service:

We do not sell your personal data.

5. Retention

We keep data for as long as your account is active and as needed to comply with legal, accounting, and dispute-resolution obligations. Clinics control patient-record retention within the Service; on account closure you may request export or deletion subject to legal limits.

6. Your rights

Subject to applicable law, you may request access to, correction of, or deletion of your personal data, and you may object to or restrict certain processing. For patient data, requests are directed to the clinic that controls it. Contact us to exercise these rights.

7. Cookies

We use essential cookies for sign-in, security, and preferences (such as language), and limited analytics. You can control cookies in your browser; disabling essential cookies may break core features.

8. Children and changes

The Service is intended for dental professionals and businesses, not for direct use by children; records about minors are entered and controlled by clinics under their own legal basis. We may update this Policy; material changes will be notified in-product.

This is a draft template and does not constitute legal advice. Have it reviewed by qualified counsel before relying on it.