Privacy Policy

Last Updated: January 30, 2026

Your Privacy Matters

Estemed is committed to protecting your personal information and your right to privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our platform.

1. Information We Collect

1.1 Personal Information You Provide

When you use Estemed, you may provide us with:

  • Account Information: Name, email address, password, phone number
  • Profile Information: Date of birth, gender, location, profile photo
  • Medical Information: Medical history, procedure interests, health conditions (shared with healthcare providers only)
  • Communication Data: Messages exchanged with healthcare providers through our platform
  • Treatment Diary: Optional notes and updates you choose to record

1.2 Payment Information

Important: Estemed does NOT store your credit card or payment card information. All payment transactions are processed securely by Stripe, our third-party payment processor. Stripe is PCI-DSS compliant and maintains the highest security standards.

We receive limited information from Stripe including:

  • Last 4 digits of your card (for display purposes only)
  • Card brand (Visa, Mastercard, etc.)
  • Transaction status and confirmation
  • Stripe customer ID (encrypted reference)

1.3 Automatically Collected Information

  • Usage Data: Pages visited, features used, time spent on platform
  • Device Information: IP address, browser type, device type, operating system
  • Location Data: Approximate geographic location based on IP address
  • Cookies and Tracking: See Section 4 below

2. How We Use Your Information

We use your information to:

  • Provide Platform Services: Facilitate connections between patients and healthcare providers
  • Process Transactions: Handle platform booking fees and payment processing
  • Enable Communication: Allow messaging between you and healthcare providers
  • Account Management: Create and maintain your account
  • Customer Support: Respond to inquiries and provide assistance
  • Platform Improvement: Analyze usage patterns to improve functionality
  • Security: Detect and prevent fraud, abuse, and security incidents
  • Legal Compliance: Comply with legal obligations and enforce our terms
  • Marketing: Send promotional communications (with your consent, opt-out available)

3. How We Share Your Information

3.1 With Healthcare Providers

When you request a quote or book an appointment, we share relevant information with the healthcare provider including your name, contact information, and medical details you've provided. This is necessary to facilitate your treatment inquiry.

3.2 With Service Providers

We share information with trusted third-party service providers:

  • Stripe: Payment processing (see their privacy policy at stripe.com/privacy)
  • Supabase: Database hosting and authentication services
  • Cloud Infrastructure: Hosting and data storage providers
  • Analytics Services: Anonymous usage analytics

3.3 Legal Requirements

We may disclose your information if required by law, court order, or governmental authority, or to protect the rights, property, or safety of Estemed, our users, or others.

3.4 We Do NOT Sell Your Data

Estemed does not sell, rent, or trade your personal information to third parties for their marketing purposes.

4. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to improve your experience on our platform:

4.1 Essential Cookies

Required for platform functionality, including authentication, session management, and security. These cannot be disabled.

4.2 Analytics Cookies

Help us understand how users interact with our platform to improve services. These are anonymized and aggregated.

4.3 Preference Cookies

Remember your language preferences, favorites, and settings for a better experience.

You can control cookies through your browser settings, but disabling essential cookies may limit platform functionality.

5. Medical Data Handling

Important Medical Data Notice:

  • Medical information you provide is shared directly with healthcare providers you contact
  • Healthcare providers are independently responsible for maintaining medical record confidentiality
  • Estemed acts as a facilitator and does not practice medicine or maintain official medical records
  • You control what medical information you choose to share on the platform
  • Messages containing sensitive medical data are encrypted in transit

6. Data Security

We implement industry-standard security measures including:

  • Encryption of data in transit (HTTPS/TLS)
  • Encryption of sensitive data at rest
  • Secure authentication and password hashing
  • Regular security audits and monitoring
  • Access controls and principle of least privilege
  • Secure payment processing through PCI-DSS compliant provider (Stripe)

However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

7. Data Retention

We retain your personal information for as long as necessary to provide our services and comply with legal obligations:

  • Account Data: Retained while your account is active and for 2 years after closure
  • Transaction Records: Retained for 7 years for legal and tax compliance
  • Communication Logs: Retained for 3 years for support and dispute resolution
  • Anonymized Analytics: May be retained indefinitely in aggregated form

You can request earlier deletion of certain data by contacting us (see Your Rights section below).

8. Your Privacy Rights

You have the following rights regarding your personal information:

  • Access: Request a copy of the personal information we hold about you
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your account and personal information
  • Portability: Request your data in a portable format
  • Objection: Object to certain processing activities
  • Withdraw Consent: Withdraw consent for optional data processing
  • Opt-out: Unsubscribe from marketing communications

To exercise these rights, contact us at [email protected]. We will respond within 30 days.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your information in accordance with this Privacy Policy.

10. Children's Privacy

Our platform is not intended for users under 18 years of age. We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

11. Changes to This Privacy Policy

We may update this Privacy Policy periodically. We will notify you of material changes via email or platform notification. The "Last Updated" date at the top indicates when the policy was last revised.

12. Contact Us

For questions, concerns, or requests regarding this Privacy Policy or your personal information:

Privacy Contact:

Email: [email protected]

Phone: +994 50 999 11 15

Address: Baku, Azerbaijan

Response Time: We aim to respond to all privacy inquiries within 24-48 hours.

13. Third-Party Links

Our platform may contain links to external websites operated by healthcare providers or other third parties. This Privacy Policy does not apply to those websites. Please review their privacy policies before providing any personal information.

Estemed

Connect with top-rated doctors and get personalized quotes for your medical procedures

Connecting patients with Azerbaijan's finest medical professionals for world-class care.

Contact Us

Baku, Azerbaijan

Marketplace Platform: Estemed connects patients with independent, licensed medical professionals in Azerbaijan. We do not provide medical services. All treatments are provided by independent healthcare providers who are solely responsible for their services.

© 2026 Estemed. All rights reserved.