Your privacy matters to us. This policy explains how Doctiplus collects, uses, stores, and protects your personal and medical data when you use our online doctor consultation platform.
Effective Date: April 22, 2026Last Updated: April 22, 2026Version 2.0
HIPAA CompliantHealthcare grade security
End to End EncryptedBank level AES 256
GDPR CompliantEU data protection
Never SoldYour data stays yours
At Doctiplus, we take your privacy seriously. As a global digital healthcare platform connecting patients with certified doctors, we understand that your personal health information is among your most sensitive data. This Privacy Policy explains in clear, simple terms how we collect, use, store, share, and protect information when you use our website, mobile app, and online consultation services.
By using Doctiplus, you agree to the practices described in this policy. If you do not agree, please do not use our platform. We recommend reading this policy carefully and contacting us with any questions.
01
Introduction and Scope
This Privacy Policy applies to all services offered by Doctiplus through our website doctiplus.co, mobile applications, and related platforms. It covers information collected from patients, doctors, healthcare providers, and visitors.
Doctiplus operates as a digital healthcare intermediary connecting patients with licensed medical professionals for online video consultations and in person appointments worldwide. We comply with international data protection standards including HIPAA, GDPR, CCPA, and other applicable regional privacy laws.
02
Information We Collect
We only collect information necessary to provide safe, high quality healthcare services. The types of data we collect include:
Personal Identification Information
Full name, date of birth, and gender for identity verification
Email address and phone number for communication and appointment confirmations
Physical address and country for locating nearby doctors and in person appointments
Government issued ID where required for doctor verification or regulatory compliance
Medical and Health Information
Symptoms, medical history, and health concerns shared during consultations
Prescription details, lab reports, and diagnostic documents you upload
Consultation notes, diagnoses, and follow up recommendations from doctors
Video and audio recordings of consultations where legally permitted and with consent
Payment Information
Credit card or debit card details processed through secure encrypted payment gateways
Billing address and transaction history for records and refunds
Insurance details when submitting claims through partner providers
Technical and Usage Information
IP address, device type, browser, operating system, and screen resolution
Pages visited, features used, and time spent on our platform
Referral source and search terms used to find Doctiplus
You are in control. We never collect more data than necessary, and you can access or delete your information at any time by contacting info@doctiplus.co.
03
How We Use Your Information
Your data powers the services you rely on. Doctiplus uses collected information strictly for the following legitimate purposes:
Delivering healthcare services such as booking appointments, conducting video consultations, and issuing digital prescriptions
Verifying your identity and ensuring doctor credentials meet regulatory standards
Processing payments securely and managing refunds or insurance claims
Communicating with you about appointments, reminders, follow ups, and important account updates
Improving our platform through analytics, user feedback, and usability research
Preventing fraud and abuse by monitoring suspicious activity and enforcing our terms of service
Meeting legal obligations including tax, regulatory, and healthcare compliance requirements
Sending marketing communications only when you have opted in, and you can unsubscribe anytime
04
Data Sharing and Disclosure
Doctiplus never sells your personal or medical data to third parties. We only share your information in the following controlled situations:
With your doctor to deliver the consultation you booked, including relevant medical history you provided
With trusted service providers such as secure payment processors, cloud hosting providers, and analytics tools, bound by strict data protection agreements
With your insurance company only when you submit a claim and authorize the transfer
With legal and regulatory authorities when required by law, court order, or to prevent fraud and protect user safety
During business transfers such as mergers or acquisitions, with advance notification to affected users
Every third party we work with is carefully vetted. They are contractually obligated to use your data only for the specific purpose we share it, and to maintain the same level of security we do.
05
Data Security Measures
Protecting your information is a top priority at Doctiplus. We use industry leading security practices to keep your data safe:
Bank level AES 256 bit encryption for data at rest and TLS 1.3 encryption for data in transit
HIPAA compliant infrastructure hosted on secure cloud servers with multi layer firewalls
Strict access controls where only authorized personnel can view limited portions of your data
Multi factor authentication available for patient and doctor accounts
Regular security audits, penetration testing, and vulnerability assessments by third party experts
Continuous monitoring for unauthorized access, breaches, or suspicious activity 24 hours a day
Automatic session timeouts and encrypted backups stored in geographically distributed data centers
06
Cookies and Tracking Technologies
Doctiplus uses cookies and similar technologies to improve your browsing experience, remember your preferences, and understand how our platform is used. Types of cookies we use include:
Essential cookies required for core features like login, session management, and booking
Analytics cookies to understand traffic patterns and improve site performance
Functional cookies to remember your language, country, and accessibility preferences
Marketing cookies used only when you explicitly opt in for relevant health content and offers
You can manage cookie preferences through our consent banner or by adjusting your browser settings. Disabling certain cookies may affect platform functionality.
07
Your Privacy Rights
Depending on your location, you have the following rights regarding your personal data under GDPR, CCPA, and similar regulations:
Right to Access
Request a copy of the personal data we hold about you
Right to Rectify
Correct inaccurate or incomplete information instantly
Right to Erasure
Request deletion of your account and personal data
Right to Portability
Export your data in a common machine readable format
Right to Object
Opt out of marketing or certain data processing activities
Right to Restrict
Limit how we process your personal information
To exercise any of these rights, simply email us at info@doctiplus.co. We respond to all requests within 30 days.
08
Data Retention Policy
We retain your information only as long as necessary to provide our services and comply with legal obligations:
Active account data kept for the duration of your account plus 2 years after closure
Medical records and consultations retained per healthcare regulations, typically 6 to 10 years depending on jurisdiction
Payment and transaction records retained for 7 years for tax and audit compliance
Marketing preferences kept until you unsubscribe or request deletion
Technical logs and analytics retained for up to 24 months for security and performance review
After the retention period, your data is securely deleted or anonymized beyond recovery.
09
International Data Transfers
As a global platform serving patients in 90+ countries, Doctiplus may transfer your data across international borders. When we do:
We use Standard Contractual Clauses approved by the European Commission for EU transfers
We ensure receiving countries provide an adequate level of data protection
We apply the same security standards regardless of where your data is processed
We work only with providers that meet HIPAA, GDPR, and ISO 27001 standards
10
Children's Privacy
Doctiplus is not intended for use by individuals under the age of 13. We do not knowingly collect personal information from children under 13 years old.
For minors between 13 and 17 years old, a parent or legal guardian must create the account and consent to the collection of information. Pediatric consultations on Doctiplus are always booked and supervised by a parent or guardian.
If you believe we have collected data from a child without proper consent, please contact us immediately at info@doctiplus.co and we will delete it.
11
Third Party Services and Links
Our platform may include links or integrations with third party services such as payment processors, video conferencing tools, insurance portals, and pharmacies.
These third parties operate under their own privacy policies. We encourage you to review their policies carefully. Doctiplus is not responsible for the privacy practices of external websites or services once you leave our platform.
12
Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, new features, or updated legal requirements. When we make significant changes, we will:
Update the Last Updated date at the top of this page
Notify registered users via email at least 30 days before changes take effect
Display a prominent notice on our website and mobile app
Seek your renewed consent where required by law
Continued use of Doctiplus after updates means you accept the revised policy.
13
Contact Our Privacy Team
If you have any questions, concerns, or requests regarding this Privacy Policy or how Doctiplus handles your personal data, please reach out to us:
Mailing Address: Doctiplus, 1401 St Joseph Pkwy, Houston, TX 77002, United States
We are committed to responding to all privacy inquiries within 30 days. For urgent data protection concerns, please mark your email as Privacy Request.
Questions About Your Privacy?
Our dedicated privacy team is here to help. Whether you want to access, correct, or delete your data, we respond to all requests quickly and respectfully.