Legal
Privacy Policy
Last updated January 1, 2026
Dentora AI, Inc. (“Dentora AI,” “we,” “us”) builds clinical AI for dental practices. This Privacy Policy explains how we handle information, including protected health information (PHI), when you use our website and platform. Our handling of PHI is also governed by our Business Associate Agreement (BAA) with your practice.
1. Information we collect
Account information such as name, email, practice name, and role when you register or request a demo.
Clinical data, including radiographs, chart notes, and treatment information, processed on behalf of your practice as a business associate.
Usage and device data such as log files, IP address, browser type, and interaction events to operate and improve the service.
2. How we use information
To provide, maintain, and improve the Dentora AI platform and its AI features.
To generate clinical decision-support outputs that a licensed provider reviews and approves.
To communicate with you about your account, security, and product updates.
3. Protected health information (PHI)
We process PHI solely as a business associate under HIPAA and only as permitted by our BAA and applicable law.
We do not use or disclose PHI for advertising, and we do not sell PHI.
Where AI models are trained or improved, we use de-identified data in accordance with HIPAA de-identification standards.
4. How we share information
With subprocessors that support our infrastructure under written contracts requiring appropriate safeguards.
When required by law, regulation, legal process, or governmental request.
In connection with a merger, acquisition, or asset sale, subject to the protections described here.
5. Data security
We encrypt data in transit (TLS 1.3) and at rest (AES-256), enforce role-based access controls and MFA, and maintain SOC 2 Type II certification.
We maintain audit logs of access and AI actions and conduct regular security reviews and penetration testing.
6. Data retention
We retain information for as long as needed to provide the service and as required by our agreements and applicable law.
Upon termination, we return or destroy PHI in accordance with the BAA.
7. Your rights
Patients may exercise rights regarding their PHI directly through their dental practice, which is the covered entity.
Website visitors may request access to or deletion of personal data we control by contacting us.
8. Changes and contact
We may update this policy and will revise the date above when we do. Material changes will be communicated as required.
Contact us at legal@dentora.ai with any questions or requests.
Questions about this policy? Contact our team at legal@dentora.ai.