Skip to content

Privacy policy

Effective August 18, 2026 · Version 3

Who we are

EndpointEMR is practice-management software for aesthetic practices, operated by Endpoint AI, LLC (“we”, “us”). This policy covers endpointemr.com and the EndpointEMR application.

Two kinds of data

Practice data: your account, your team's logins, your subscription and your settings. For this data we are the controller and this policy is the whole story.

Patient data: the records your practice keeps inside EndpointEMR, including protected health information. That data belongs to your practice. We process it only on your instructions, under a business associate agreement, to run the service for you. We do not sell it, mine it, advertise with it, or use it to train anything.

What we collect to run the service

Account details you give us: names, email addresses, practice information. Billing details are handled by Stripe; full card numbers never reach our servers.

Operational records the system creates: sign-ins, actions taken and when, which we keep as an audit trail because medical software without one would be negligent.

We do not run third-party advertising trackers on the application.

Who touches data on our behalf

We use a small set of subprocessors to run the service: cloud hosting and file storage (Amazon Web Services), database hosting (Neon), email delivery (Resend), text messaging (Twilio), push notification delivery (Apple), and payments (Stripe). Each receives only what its job requires.

Security

Data is encrypted in transit and at rest. Every practice's records are isolated by row-level security enforced in the database itself. Access is logged. Backups are taken regularly and restore-tested.

Your practice's control

You can export your practice's complete records at any time. If you cancel, your records remain exportable; an unpaid subscription pauses booking and charging but never your ability to read your own charts. On written request after account closure, we delete your data, subject to legal retention obligations for medical records.

Patients

If you are a patient of a practice that uses EndpointEMR, your relationship is with that practice: requests about your records go to them, and we support the practice in fulfilling them.

Cookies

This website sets no advertising or analytics cookies and shows no consent banner because there is nothing to consent to. The application sets one strictly necessary cookie: the session that keeps you signed in. It identifies your login, nothing else, and deleting it simply signs you out.

Text messages (SMS)

Practices can send appointment-related text messages, reminders, confirmations, waitlist openings and review requests, to clients who gave their number and agreed to be texted. Reply STOP to any message to opt out, HELP for assistance. Message frequency varies with your appointments and message and data rates may apply. Full terms: endpointemr.com/sms-terms.

No mobile information will be shared with third parties or affiliates for marketing or promotional purposes.

All categories of data described in this policy exclude text messaging originator opt-in data and consent: this information will not be shared with, or sold to, any third parties, excluding the aggregators and providers of the text messaging service necessary to deliver the messages themselves.

Changes and contact

If this policy changes materially, practices are notified by email before the change takes effect. Questions: privacy@endpointemr.com.