Privacy policy
Effective August 18, 2026 · Version 3
Who we are
EndpointEMR is practice-management software for aesthetic practices, operated by Endpoint AI, LLC (“we”, “us”). This policy covers endpointemr.com and the EndpointEMR application.
Two kinds of data
Practice data: your account, your team's logins, your subscription and your settings. For this data we are the controller and this policy is the whole story.
Patient data: the records your practice keeps inside EndpointEMR, including protected health information. That data belongs to your practice. We process it only on your instructions, under a business associate agreement, to run the service for you. We do not sell it, mine it, advertise with it, or use it to train anything.
What we collect to run the service
Account details you give us: names, email addresses, practice information. Billing details are handled by Stripe; full card numbers never reach our servers.
Operational records the system creates: sign-ins, actions taken and when, which we keep as an audit trail because medical software without one would be negligent.
We do not run third-party advertising trackers on the application.
Who touches data on our behalf
We use a small set of subprocessors to run the service: cloud hosting and file storage (Amazon Web Services), database hosting (Neon), email delivery (Resend), text messaging (Twilio), push notification delivery (Apple), and payments (Stripe). Each receives only what its job requires.
Security
Data is encrypted in transit and at rest. Every practice's records are isolated by row-level security enforced in the database itself. Access is logged. Backups are taken regularly and restore-tested.
Your practice's control
You can export your practice's complete records at any time. If you cancel, your records remain exportable; an unpaid subscription pauses booking and charging but never your ability to read your own charts. On written request after account closure, we delete your data, subject to legal retention obligations for medical records.
Patients
If you are a patient of a practice that uses EndpointEMR, your relationship is with that practice: requests about your records go to them, and we support the practice in fulfilling them.
Cookies
This website sets no advertising or analytics cookies and shows no consent banner because there is nothing to consent to. The application sets one strictly necessary cookie: the session that keeps you signed in. It identifies your login, nothing else, and deleting it simply signs you out.
Text messages (SMS)
Practices can send appointment-related text messages, reminders, confirmations, waitlist openings and review requests, to clients who gave their number and agreed to be texted. Reply STOP to any message to opt out, HELP for assistance. Message frequency varies with your appointments and message and data rates may apply. Full terms: endpointemr.com/sms-terms.
No mobile information will be shared with third parties or affiliates for marketing or promotional purposes.
All categories of data described in this policy exclude text messaging originator opt-in data and consent: this information will not be shared with, or sold to, any third parties, excluding the aggregators and providers of the text messaging service necessary to deliver the messages themselves.
Changes and contact
If this policy changes materially, practices are notified by email before the change takes effect. Questions: privacy@endpointemr.com.