Back to Home

Privacy Policy

Last Updated

January 14, 2026

1. Introduction

At OrapexAI, we value your privacy and the confidentiality of your patients' information. This Privacy Policy outlines our practices regarding the collection, use, and disclosure of personal data when you use our platform and the choices you have associated with that data. We operate in strict accordance with United States federal and state laws, including HIPAA and the California Consumer Privacy Act (CCPA).

2. Information Collection and Use

We collect several different types of information for various purposes to provide and improve our service to your dental practice:

  • Personal Data: While using our service, we may ask you to provide us with certain personally identifiable information that can be used to contact or identify your practice, including email addresses, phone numbers, and staff names.
  • Protected Health Information (PHI): In providing AI voice services, our system processes patient names, appointment details, and insurance information. This data is handled under the strict guidelines of our Business Associate Agreement (BAA).
  • Usage Data: We may also collect information on how the Service is accessed and used, such as IP addresses, browser types, and call duration metadata.

3. Data Processing & AI Learning

Voice interactions are recorded and transcribed for the sole purpose of executing dental receptionist duties (scheduling, insurance verification).

Important Notice on AI Training: OrapexAI does not use Protected Health Information (PHI) to train generalized AI models. Any system improvements rely solely on anonymized, non-identifiable metadata and operational metrics, consistent with the Business Associate Agreement.

We use this anonymized metadata to improve the accuracy of our Natural Language Processing (NLP) models. We do not sell your practice data or patient information to third-party data brokers or advertisers.

4. Disclosure of Data

We may disclose your personal data in the following situations:

  • Legal Requirements: To comply with a legal obligation or protect and defend the rights or property of OrapexAI.
  • Service Providers: To third-party companies that facilitate our Service (e.g., cloud hosting, SMS providers) who are also bound by HIPAA-compliant security standards.

5. Your Rights (CCPA Compliance)

If you are a resident of California or other states with comprehensive privacy laws, you have the right to:

  • Request access to the personal information we hold about you.
  • Request the deletion of your personal information.
  • Opt-out of the "sale" or "sharing" of personal information (though we do not sell data).
  • Non-discrimination for exercising your privacy rights.

6. Security of Data

The security of your data is critical to us. We implement industry-standard technical safeguards, including end-to-end encryption and multi-factor authentication, to protect your information. However, please remember that no method of transmission over the Internet or method of electronic storage is 100% secure.

Legal Inquiries

Contact our US-based legal team.

Email Legal Team