Privacy Policy
Last updated: December 24, 2025
1. Introduction
Plato Tech ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Plato MedScribe service and website.
By using our services, you agree to the collection and use of information in accordance with this policy.
2. Information We Collect
2.1 Personal Information
We may collect the following personal information:
- Name and contact information (email address, phone number)
- Professional credentials and practice information
- Billing and payment information
- Account login credentials
2.2 Health Information
As a medical documentation service, we process Protected Health Information (PHI) on behalf of healthcare providers. This includes:
- Audio recordings of patient consultations (processed temporarily)
- Transcribed clinical notes
- Patient visit summaries
2.3 Usage Information
We automatically collect certain information about your device and usage patterns, including IP address, browser type, operating system, and usage statistics.
3. How We Use Your Information
We use the collected information for:
- Providing and maintaining our medical documentation services
- Processing and transcribing clinical consultations
- Generating clinical notes and patient summaries
- Managing your account and providing customer support
- Processing payments and billing
- Improving and optimizing our services
- Communicating service updates and relevant information
- Complying with legal obligations
4. Data Security
We implement industry-standard security measures to protect your information:
- End-to-end encryption for all data transmission
- AES-256 encryption for data at rest
- Regular security audits and penetration testing
- Access controls and authentication mechanisms
- Secure cloud infrastructure with SOC 2 compliance
5. HIPAA Compliance
Plato MedScribe is fully compliant with the Health Insurance Portability and Accountability Act (HIPAA). We:
- Enter into Business Associate Agreements (BAAs) with covered entities
- Implement required administrative, physical, and technical safeguards
- Train all employees on HIPAA requirements
- Maintain audit logs and access controls
- Do not store audio recordings by default after processing
6. GDPR Compliance
For users in the European Economic Area (EEA), we comply with the General Data Protection Regulation (GDPR). You have the right to:
- Access your personal data
- Rectify inaccurate personal data
- Request erasure of your personal data
- Restrict processing of your personal data
- Data portability
- Object to processing
7. Data Retention
We retain personal information only for as long as necessary to fulfill the purposes outlined in this policy, unless a longer retention period is required by law. Audio recordings are processed in real-time and not stored on our servers unless explicitly requested by the user.
8. Third-Party Sharing
We do not sell your personal information. We may share information with:
- Service providers who assist in our operations (under strict confidentiality agreements)
- Legal authorities when required by law
- Business partners with your explicit consent
9. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
- Email: privacy@plato.tech
- Address: 25hours Hotel Dubai, One Central, Trade Center St, Dubai, UAE
- Phone: +971 50 680 7593
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date.