Privacy

Privacy Policy

This policy explains how idixit collects, uses, and protects personal data for demo requests, product engagement, and security monitoring across our site and agentic audit platform.

Last updated: March 2025

Data we collect

  • Contact details you share (name, professional email, role, organization, and the message in demo requests).
  • Product usage metadata in aggregate (pages visited, device/browser, approximate region).
  • Security and audit logs (IP, user agent, timestamps) to protect the service.
  • Support interactions if you contact us for help or onboarding.

Why we use it

  • Respond to demo and partnership requests and schedule meetings.
  • Provide and improve the site, including performance, reliability, and accessibility.
  • Maintain security, prevent abuse, and meet legal or regulatory obligations.
  • Develop new features and better align the product with medical organizations and clinicians.

Lawful bases

  • Consent when you submit forms or sign up for communications.
  • Legitimate interest to secure our systems and understand product engagement.
  • Legal obligations where required by regulators or court orders.

Retention

  • Demo requests: retained for up to 24 months to manage follow-ups and contracting.
  • Security logs: typically retained for up to 12 months unless required for investigations.
  • Analytics: stored in aggregate without directly identifying information.

Sharing and processing

  • We do not sell personal data.
  • Trusted processors (cloud hosting, analytics, email providers) under data processing agreements and security requirements.
  • Disclosures only when required to comply with law or to protect rights, safety, or integrity of the service.

Your rights

  • Access, rectify, or delete your personal data where applicable.
  • Object to or restrict certain processing, or withdraw consent for communications.
  • Data portability where legally applicable.
  • To exercise rights or raise a concern, contact privacy@idixit.io.

Security

  • Role-based access, encryption in transit and at rest for customer data.
  • Audit logging for model prompts, evidence sources, and user actions inside the platform.
  • Data residency in the EU. Additional controls may apply for regulated medical data per contract.

Exercising your rights or requesting more details: privacy@idixit.io

HDS - GDPR - ISO 27001 aligned • Data residency: EU