Privacy Policy

Your privacy is important to us. This policy explains how Cara Technologies, Inc. collects, uses, and protects your information.

Last updated: August 8, 2025

Privacy Policy for CaraMedical Marketing Suite
Cara Technologies, Inc. ("we," "our," or "us") is committed to protecting your privacy.

1. Information We Collect

Personal Information: We collect information you provide directly to us, such as when you create an account, including your name, email address, practice information, and contact details.

Usage Information: We automatically collect certain information about your use of our services, including IP address, browser type, device information, and usage patterns.

Health Information: Through our EHR integrations, we may process patient data in accordance with HIPAA regulations and your practice's privacy policies.

2. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve our marketing services
  • Process transactions and send related information
  • Send technical notices, updates, and support messages
  • Respond to your comments, questions, and requests
  • Monitor and analyze trends, usage, and activities
  • Detect, investigate, and prevent fraudulent transactions
  • Personalize and improve your experience

3. Information Sharing and Disclosure

We do not sell, trade, or otherwise transfer your personal information to third parties except in the following circumstances:

  • Service Providers: We may share information with trusted third-party service providers who assist us in operating our platform
  • Legal Requirements: We may disclose information if required by law or to protect our rights and safety
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred
  • Consent: We may share information with your explicit consent

4. Data Security

We implement appropriate technical and organizational security measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit and at rest
  • Regular security assessments and updates
  • Access controls and authentication measures
  • Employee training on data protection

5. Your Rights and Choices

You have the right to:

  • Access and update your personal information
  • Request deletion of your personal information
  • Opt-out of marketing communications
  • Request a copy of your data
  • Lodge a complaint with supervisory authorities

6. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to enhance your experience, analyze usage, and provide personalized content. You can control cookie settings through your browser preferences.

7. Third-Party Services

Our services may integrate with third-party platforms (such as EHR systems and social media platforms). These services have their own privacy policies, and we encourage you to review them.

8. Google OAuth Integration & Limited Use Compliance

🔒 Google Limited Use Compliance Statement

CaraMedical Marketing Suite complies with Google's Limited Use of User Data requirements.We access Google user data only for the specific purposes outlined below and do not use this data for advertising, retargeting, or any other purposes beyond what is necessary to provide our healthcare marketing services.

Official Google Policy Compliance: The use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

Google Analytics Integration: Our platform integrates with Google Analytics to provide website performance insights and patient acquisition optimization. When you connect your Google Analytics account, we request the following scopes:

  • https://www.googleapis.com/auth/analytics.readonly - Read-only access to Google Analytics data for website performance analysis

Google Business Profile Integration: We also integrate with Google Business Profile for reputation management:

  • https://www.googleapis.com/auth/business.manage - Manage Google Business Profile listings and reviews

Google Photos API Integration: Our platform may integrate with Google Photos for image management and optimization:

  • https://www.googleapis.com/auth/photoslibrary.readonly - Read-only access to Google Photos for image optimization

For Google Photos integration, we also comply with the Google Photos API Limited Use Policy.

Permitted Uses Under Google's Limited Use Policy: The data accessed through these OAuth scopes is used exclusively for:

  • Website performance analysis and optimization for healthcare practices
  • Patient acquisition insights and marketing recommendations
  • Business profile management and review monitoring
  • Healthcare practice marketing optimization and strategy development
  • Providing analytics reports and insights to healthcare providers
  • Improving our healthcare marketing platform functionality

Restricted Uses: We explicitly do NOT use Google user data for:

  • Advertising or retargeting purposes
  • Selling or transferring data to third parties
  • Creating user profiles for non-service purposes
  • Cross-site tracking or behavioral advertising
  • Any purpose outside of providing our healthcare marketing services

Data Protection & Security: All Google user data is:

  • Encrypted in transit and at rest
  • Securely stored in our HIPAA-compliant infrastructure
  • Accessible only to authorized personnel
  • Used only for the specific purposes described above
  • Retained only as long as necessary to provide our services

User Control: You can revoke our access to your Google data at any time through your Google account settings or by contacting us directly.

9. Children's Privacy

Our services are not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data in accordance with applicable laws.

11. Changes to This Policy

We may update this privacy policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.

12. Contact Us

If you have any questions about this privacy policy or our data practices, please contact us:

Cara Technologies, Inc.

Email: privacy@caramedical.com