Privacy Policy
Last updated: 2026
1. Purpose of this Policy
This Privacy Policy explains how the dentapus platform collects, uses, stores, and protects personal data related to healthcare professionals, dental clinic staff, and patients, in the context of a dental software application for patient management, appointment calendar workflows, clinical records, and administrative operations. The platform applies strong encryption to all data without exception.
2. Data Processing Roles
Depending on the service context, dentapus may act either as Data Controller or Data Processor on behalf of a dental clinic/professional, in accordance with GDPR (EU 2016/679) and applicable national legislation.
3. Categories of Data We Process
- Account and user identity data (name, email, credentials, access roles).
- Clinic profile data (organization name, contact details, operational settings).
- Patient data entered by authorized users, including demographics, medical/dental history, clinical records, treatment plans, appointment calendar entries, and related administrative files.
- Technical and operational data (IP address, access logs, security events, device/browser metadata).
4. Special Categories of Data (Health Data)
The application may involve processing of special categories of personal data (health data). Such processing is performed exclusively for healthcare delivery, treatment management, and medical record keeping by authorized healthcare professionals.
5. Purposes of Processing
- Platform operation and provision of dentapus services.
- Patient and clinical workflow management throughout treatment lifecycle.
- Appointment scheduling and calendar management.
- Account security, access control, and abuse prevention.
- Support, quality improvement, and legal/regulatory compliance.
6. Legal Bases for Processing
- Performance of a services contract.
- Compliance with legal obligations.
- Legitimate interest for platform security and continuity.
- Explicit consent where required by applicable law.
7. Data Sharing and Recipients
We do not sell personal data. Data may be disclosed to trusted providers (for example: hosting, technical support, security services) strictly as needed for service delivery and under appropriate contractual confidentiality and protection safeguards.
8. Data Retention
Data is retained for as long as necessary for service delivery and legal obligations. After applicable retention periods, secure deletion or anonymization is applied.
9. Information Security
We apply appropriate technical and organizational safeguards, including access control, authentication measures, audit logging, and incident prevention/response procedures. We explicitly state that strong encryption is applied to all data without exception, both in transit and at rest.
10. Data Subject Rights
Data subjects may have rights of access, rectification, erasure, restriction, objection, portability, and withdrawal of consent where applicable, subject to legal conditions and limitations.
11. Cookies and Similar Technologies
The application/website may use cookies or similar technologies for proper operation, security, session continuity, and user experience improvements.
12. International Transfers
If data is transferred outside the European Economic Area, appropriate GDPR safeguards are applied (such as Standard Contractual Clauses or equivalent protective measures).
13. Policy Updates
This Policy may be updated for legal, regulatory, or operational reasons. The latest update date is shown at the top of this page.
14. Contact
For personal data protection requests, contact info@dentapus.com.