Privacy Policy

Introduction

At IONIC Health, protecting personal data is a core commitment. This Privacy Policy outlines how we handle, store, share, and protect your information. It is guided by leading privacy and data protection frameworks, including ISO/IEC 27701:2019, ISO/IEC 27001:2022, ISO/IEC 27002:2022, and legal requirements such as Brazil's LGPD, the European GDPR, and other applicable laws and regulations.

This policy is approved by IONIC Health's executive leadership and is reviewed at least annually or whenever relevant regulatory or technological changes occur.

1. What Personal Data Do We Collect?

We only collect data strictly necessary for the purposes defined below. This may include:

  • Identification Data: Full name, CPF (Brazilian Taxpayer ID), email address, phone number;
  • Digital Identification: IP address, device type, access date/time, geolocation, session ID;
  • Interaction History: Customer service records, usage logs, support requests.

We collect this information through our platforms, communication channels, and service interfaces.

2. Why Do We Collect and Process Personal Data?

We process your personal data for legitimate, specific, and transparent purposes, including:

  • To create and manage your user account;
  • To provide and improve the functionality and security of our platform (e.g., login, authentication, performance analysis);
  • To fulfill legal and regulatory obligations;
  • To respond to support requests;
  • To ensure compliance with contractual agreements.

All data processing is carried out in accordance with the principles of necessity, minimization, purpose limitation, and transparency.

3. Do We Share Your Data With Third Parties?

Yes, when necessary and always under secure and contractual safeguards. Data may be shared with:

  • Business Partners: In support of your use of our services;
  • Service Providers and Operators: Including cloud providers, infrastructure partners, and analytics platforms;
  • Legal Authorities: When required by law or regulatory order;
  • Corporate Operations: In case of mergers, acquisitions, or business restructuring.

All third parties must adhere to strict data protection and confidentiality standards and are formally bound by data processing agreements.

4. Is Personal Data Transferred Internationally?

Yes, some of our service providers are located outside Brazil. In such cases, data is transferred only to countries or international organizations that ensure an adequate level of protection, as defined by LGPD, GDPR, and other applicable regulations.

5. How Long Do We Keep Your Data?

Personal data is stored only for as long as necessary to fulfill its intended purposes, unless a longer retention period is required by law, contract, or audit needs. After this period, data is securely deleted or anonymized.

We follow strict disposal procedures to ensure secure data destruction or irreversible deletion.

6. What Are Your Rights?

Under the LGPD and GDPR, you have the right to:

  • Confirm whether your data is being processed;
  • Access your personal data;
  • Request correction of incomplete or outdated data;
  • Request deletion, anonymization, or blocking of unnecessary or unlawfully processed data;
  • Revoke consent at any time;
  • Request data portability;
  • Be informed about data sharing;
  • Object to certain types of processing;
  • Request review of decisions made solely by automated means.

To exercise your rights, please email us at privacy@ionic.health. We will respond within the legally mandated deadlines.

7. Cookie Usage

Our website uses cookies and similar technologies to improve your browsing experience, analyze website performance, and deliver personalized content and advertisements. Cookies are small text files stored in your browser that help recognize you during future visits.

We use the following types of cookies:

  • Essential Cookies: Required for website functionality, such as keeping you logged in during your session;
  • Performance Cookies: Such as those from Google Analytics, which help us understand user behavior and improve the site. These may store information like visited pages and duration of visit;
  • Advertising and Tracking Cookies: Used to deliver relevant ads and measure the effectiveness of campaigns across platforms like Google and LinkedIn.

Some cookies are marked as HttpOnly and Secure, enhancing protection against common attacks and ensuring encrypted transmission over HTTPS.

You may manage or disable cookies through your browser settings. Please note that disabling cookies may affect your experience and the performance of certain website features.

8. Updates to This Privacy Policy

This Privacy Policy is subject to periodic review and will be updated when necessary. Any relevant changes will be prominently communicated on our website. Continued use of our services following updates implies acceptance of the revised terms.

Contact Us

If you have questions, complaints, or wish to exercise your privacy rights, please contact: privacy@ionic.health