Legal

Privacy Policy

Last updated: January 24, 2026

1. Introduction

keenoak ("we", "our", or "us") is committed to protecting the privacy of our users. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our no-show recovery platform and related services.

2. Information We Collect

We collect information that you provide directly to us, as well as information collected automatically when you use our services.

Information You Provide

  • Account registration details (name, email, business name)
  • Practice information and appointment data
  • Patient contact information for follow-up communications
  • Billing and payment information

Automatically Collected Information

  • Usage data and analytics
  • Device and browser information
  • Log data and IP addresses

3. How We Use Your Information

We use the information we collect for the following purposes:

  • Provide and maintain our services
  • Send automated follow-up messages on your behalf
  • Process transactions and billing
  • Analyze usage to improve our platform
  • Communicate updates and support
  • Comply with legal obligations

4. HIPAA Compliance

keenoak is designed to be HIPAA-compliant for healthcare providers. We implement appropriate administrative, physical, and technical safeguards to protect electronic Protected Health Information (ePHI). We will enter into a Business Associate Agreement (BAA) with covered entities as required by HIPAA regulations.

5. Data Security

We implement industry-standard security measures to protect your data, including encryption in transit and at rest, access controls, regular security audits, and secure infrastructure hosted on trusted cloud providers. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.

6. Data Sharing

We do not sell your personal information. We may share data with:

  • Service providers who help us operate our platform (e.g., messaging, hosting)
  • Legal authorities when required by law or to protect our rights
  • Business transfers in connection with a merger, acquisition, or sale of assets

7. Data Retention

We retain your data for as long as your account is active or as needed to provide services. After account deletion, we will remove your personal data within 90 days, except where retention is required by law or for legitimate business purposes.

8. Your Rights

Depending on your location, you may have the following rights:

  • Access your personal data
  • Correct inaccurate data
  • Delete your data
  • Data portability
  • Opt out of marketing communications
  • Withdraw consent

9. Cookies

We use essential cookies to operate our platform and optional analytics cookies to understand usage patterns. You can manage cookie preferences through your browser settings. Disabling essential cookies may affect the functionality of our services.

10. Contact Us

If you have questions about this Privacy Policy or wish to exercise your rights, please contact us: