Legal

Privacy Policy

How FLC collects, uses and protects data across every service we provide to clinics.

Overview

FLC ("Follow Up For Clinics", "we", "us") provides AI-powered virtual receptionist, messaging and automation services to healthcare and clinic clients. This policy explains how we collect, use, store and protect personal data encountered while providing those services.

Compliance Framework

Our systems and data handling practices are designed to align with HIPAA (United States), GDPR (European Union / United Kingdom), the DPDP Act (India), the Privacy Act 1988 (Australia), and the PDPL (United Arab Emirates), depending on where a client operates and where patient data originates.

Data We Process

On behalf of our clinic clients, our AI agents may process patient names, contact details, appointment information, insurance details provided during calls, and message content exchanged over voice, WhatsApp or SMS channels. We act as a data processor on behalf of the clinic, who remains the data controller for their patients' information.

Data Security

Data in transit and at rest is encrypted. Access to patient data is restricted to authorized personnel and systems required to deliver the service. Business Associate Agreements (BAAs) and Data Processing Agreements (DPAs) are available for clients requiring them under HIPAA and GDPR respectively.

Your Rights

Depending on your jurisdiction, you may have the right to access, correct, delete, or restrict processing of your personal data. Requests should be directed to your clinic in the first instance, as they control the underlying patient relationship, or to FLC directly for data we independently control.

Contact

Questions about this policy can be directed to sovon@followupforclinics.com.