Placeholder content — not legal advice. Final wording pending counsel review. The substance below is a good-faith description of current practice and will be replaced by a counsel-drafted document.
Last updated: September 21, 2026 · Intended for use in the United States.
Dentivore is built so that protected health information (PHI) never enters the service. Specifically:
Account and subscription data are stored on infrastructure operated by the engineering team in the United States. Authentication tokens are short-lived. Backups follow the underlying provider's standard policy.
For the list of third-party providers that operate this infrastructure on our behalf (hosting, payments, email, observability), see our Subprocessors page.
Account data is retained while your account is active. On account deletion, identifying data is removed within 30 days, except where retention is required by law (e.g. tax records on paid invoices).
You can request deletion yourself, at any time, from your profile — no need to email us. Requesting deletion starts a 30-day grace window: we email you a one-click link to cancel the request, and your account is fully usable again if you do. If you do not cancel, your account is automatically anonymized once the 30 days pass — your name, email address, and profile data are permanently removed and cannot be recovered.
What we keep after deletion, and why:
Dentivore is intended for use in the United States. You can download a copy of the data we hold about you, or request account deletion, at any time from your profile — both are immediate, self-service actions and do not require emailing us. You can also request corrections. California users have rights under CCPA/CPRA; the final policy will document specific timelines and any state-by-state variations (Virginia VCDPA, Colorado CPA, Connecticut CTDPA, Utah UCPA, etc.). Send correction requests, or any other privacy question, to the contact email below.
Dentivore is not a covered entity or business associate under HIPAA; it is designed not to receive PHI. Do not enter patient-identifying information into the product. If you believe PHI has inadvertently been transmitted to Dentivore, contact us immediately so we can purge it.
We use first-party cookies for authentication and session management. Analytics is implemented in a way that avoids third-party advertising trackers.
Browser-side analytics (PostHog) and error reporting (Sentry) do not run until you allow them. Manage cookies to review or change your choice at any time.
One measurement runs regardless of that choice: our edge network (Cloudflare) records page-load and performance data on every page. It is cookieless — it sets no cookie, writes nothing to your browser’s storage, does not fingerprint you, and is not linked to your account — which is why it sits outside the consent control above. See our Subprocessors page.
We send two kinds of email. Transactional emails (sign-in codes, receipts, subscription and account notices) are part of the service and are sent to all users. Marketing emails (product updates and announcements) are sent only with your express opt-in — the opt-in checkbox is unticked by default.
You can opt in or out at any time from your profile's “Email preferences” section, or with the one-click unsubscribe link in every marketing email — it takes effect immediately and requires no login. Unsubscribing stops marketing email only; you continue to receive essential transactional email.
If a marketing email bounces or is reported as spam, we automatically stop sending marketing email to that address to protect deliverability.
We will update the “Last updated” date when this policy changes and surface a notice in-app for material changes.
Privacy questions or requests: [email protected]