Privacy Policy

Last updated: October 8, 2024

Purpose and Scope

Why This Policy Exists & Who It Applies To

This privacy policy explains how Anserina ("Anserina", "we", "us", "our") collects, uses, shares, and protects personal data to:

  • Maintain transparency about data handling practices
  • Help individuals understand their privacy rights
  • Comply with applicable privacy laws
  • Build trust with medical clinic customers and their patients

This policy applies to:

  • Customers: Medical clinics and their staff
  • End Users: Patients and callers whose data is processed through our AI receptionist
  • Online Users: Website visitors
  • Partners: Business partners and vendors

Note: Anserina operates as a data processor on behalf of medical clinics who are the data controllers. Clinics maintain the primary relationship with patients and are responsible for obtaining appropriate consent.

Types of Personal Data Collected

Customer-Provided & Processed Data

Business Information

  • Business name and clinic contact information
  • Staff names and email addresses
  • Cliniko or similar software API credentials

Account Details

  • Account credentials and user preferences
  • Payment information for service purchases

Call Data (processed on behalf of customers)

  • Call recordings and transcripts
  • Patient names and appointment details

Automatically Collected Data

  • Device information (type, operating system, browser)
  • IP address and general location
  • Usage analytics and log data for security and service improvement

Cookies and Similar Technologies

How We Use Cookies

Anserina uses cookies and similar technologies to operate our website and services, analyze usage, enhance security, and personalize your experience.

Types of Cookies

Essential Cookies

Required for core functionality (authentication, preferences). Cannot be disabled. Duration: Session to 1 year.

Analytics Cookies

Help us understand site usage. Duration: Up to 2 years.

Functionality Cookies

Remember your preferences. Duration: Up to 1 year.

You can control cookies through your browser. Visit www.allaboutcookies.org.

Purposes of Data Use

Service Delivery & Operations

  • Providing and maintaining our AI receptionist service
  • Account creation and management
  • Processing transactions and payments via Stripe
  • Transcribing calls via ElevenLabs and AssemblyAI
  • Analyzing call content using Anthropic & OpenAI
  • Sending appointment confirmations through Twilio
  • Ensuring platform security and preventing fraud
  • Analyzing usage patterns to improve services

Communication & Legal Obligations

  • Responding to inquiries and support requests
  • Sending service-related notifications and updates
  • Complying with applicable laws and regulations
  • Enforcing our terms of service
  • Sending marketing communications (with consent)

Legal Basis for Processing

We process personal data only when we have a valid legal basis:

Consent (withdrawable at any time)

  • Marketing communications
  • Non-essential cookies
  • Call processing (through customer agreements with patients)

Contractual Necessity

  • Service delivery and core functions
  • Payment processing
  • Account management and support

Legitimate Interests

  • Service enhancement
  • Security and fraud prevention
  • Business operations and analytics

Data Sharing & Third-Party Providers

Service Providers

We engage third-party service providers who process data only for specified purposes. These include ElevenLabs (call storage & voice AI), AssemblyAI (transcription), Anthropic & OpenAI (transcript analysis), Twilio (telephony & messaging), Cliniko (patient data), and Stripe (payments).

Cross-Border Transfers

  • Data processing occurs primarily in US and EU cloud environments
  • Protected by standard contractual clauses or other legal safeguards

Data Retention

Account DataDuration of active account + 30-90 days
Call Recordings & TranscriptsDeleted upon subscription cancellation
Transaction RecordsAs required for tax compliance
Website Logs90 days

Your Rights & How to Exercise Them

You have the right to: Access, Correct, Request deletion, Receive your data in portable format, Object, Withdraw consent.

Contact us at privacy@anserina.com.au. We aim to respond within 30 days.

Complaints & Security

Submit privacy concerns to privacy@anserina.com.au. If unsatisfied, you may contact the OAIC (Australia) or your local data protection authority (EU).

We protect data through encrypted storage, secure transmission, multi-factor authentication, and regular security reviews.

Policy Updates

We will notify users of material changes at least 30 days before implementation.

Contact Information