Legal

Privacy

Effective date: September 8, 2026

This Privacy Policy describes how Persentic Inc ("Persentic," "we," "us," or "our") collects, uses, discloses, and protects personal information when you visit persentic.ai, request a demonstration, contact our teams, request investor materials, or otherwise interact with our marketing site and related business-development channels (the "Site").

1. Who we are and what this Policy covers

Persentic provides an agentic-AI operating layer for service businesses. Our current production vertical is healthcare practices (including medical and dental operators). The Site is a marketing and investor-relations surface. It is not a patient portal and is not intended for patients to submit health information.

This Policy covers personal information we collect as a business about website visitors, prospective customers, current customer contacts, investors, and other business counterparts.

What this Policy does not cover

  • Protected health information (PHI) or other regulated health data that a customer practice may process in its own systems. If we process PHI for a covered entity or business associate, that processing is governed by a Business Associate Agreement and the customer's own notices, not by this website Policy.
  • Content a customer uploads into a paid production environment under a separate master services agreement.
  • Third-party websites linked from the Site.

2. Information we collect

Information you provide

When you request a demo, contact us, apply for investor materials, or otherwise submit a form, we may collect:

  • Identifiers and professional contact data: name, work email, phone number, job title, company or practice name, and similar business information.
  • The content of your inquiry (for example, practice size, specialty, or the reason you requested a conversation).
  • Investor-related information you choose to provide when requesting access to confidential materials.

Information collected automatically

  • Device and log data: IP address, browser type, operating system, referring URL, pages viewed, timestamps, and approximate location derived from IP.
  • Cookies and similar technologies used for security, load balancing, basic analytics, and remembering preferences. See Section 9.

Information we do not seek on the Site

Do not submit patient names, medical record numbers, diagnoses, insurance identifiers, Social Security numbers, or other PHI through Site forms. If you do so accidentally, contact hello@persentic.ai so we can delete it.

Sensitive personal information

We do not intentionally collect sensitive personal information (as defined under California and other state laws — for example, precise geolocation, racial or ethnic origin, religious beliefs, or health diagnoses) through the Site. Professional role and employer are business contact data, not consumer health data.

3. How we use information

We use personal information to:

  • Respond to demo, sales, support, and investor requests.
  • Evaluate whether to grant access to confidential investor or customer materials.
  • Operate, secure, and improve the Site.
  • Maintain records required for corporate, securities, tax, and legal compliance.
  • Communicate about our products, events, or capital-raise process where permitted by law. You may opt out of marketing emails at any time.
  • Detect, investigate, and prevent fraud, abuse, and security incidents.

We do not use Site personal information to train public foundation models. We do not use it for cross-context behavioral advertising.

4. How we share information

We do not sell personal information as that term is commonly understood, and we do not sell or share personal information for cross-context behavioral advertising as those terms are defined under the California Consumer Privacy Act (as amended by the CPRA) and analogous state laws.

We disclose personal information only:

  • To service providers and processors that host the Site, deliver email, provide analytics, or support investor-data rooms, under contracts that limit use to our instructions and impose confidentiality and security obligations.
  • To professional advisors (counsel, accountants, auditors) under confidentiality duties.
  • To a successor in connection with a merger, financing, or sale of assets, subject to this Policy or equivalent protections.
  • When required by law, legal process, or to protect rights, safety, or the integrity of the Site.

We do not disclose personal information to data brokers.

5. Retention

We retain Site personal information only as long as needed for the purposes described above, including to complete a sales or investor conversation, maintain security logs, and meet legal recordkeeping obligations. Inquiry records are typically retained for up to 36 months unless a longer period is required by law or an active commercial relationship. Security logs are retained for a shorter operational window unless needed for an investigation.

6. Security

For production deployments in regulated healthcare environments, additional HIPAA-aligned technical and organizational measures apply under the customer contract and, where required, a Business Associate Agreement. "HIPAA-aligned" on the marketing Site is not a representation that the public website is a HIPAA-covered system or that visiting persentic.ai creates a treatment relationship.

No method of transmission or storage is perfectly secure. If we become aware of a breach affecting your personal information, we will provide notice as required by applicable law.

7. U.S. state privacy rights

Residents of U.S. states that have enacted comprehensive consumer privacy laws may have the rights described below, subject to legal exceptions and applicability thresholds. As of the effective date of this Policy, those states include, without limitation:

  • California (CCPA / CPRA)
  • Virginia (VCDPA)
  • Colorado (CPA)
  • Connecticut (CTDPA)
  • Utah (UCPA)
  • Texas (TDPSA)
  • Oregon (OCPA)
  • Montana (MCDPA)
  • Florida (FDBR, where applicable)
  • Delaware (DPDPA)
  • Iowa (ICDPA)
  • Nebraska (NDPA)
  • New Hampshire (NHPA)
  • New Jersey (NJDPA)
  • Tennessee (TIPA)
  • Minnesota (MCDPA)
  • Maryland (MODPA)
  • Indiana (ICDPA)
  • Kentucky (KCDPA)
  • Rhode Island (RIDTPPA)

We will honor comparable rights for residents of other U.S. states as those laws become effective and apply to us, including enacted laws in Oklahoma, Alabama, Louisiana, Vermont, and any additional states that take effect after this date.

Rights that may apply

  • Know / access. Request confirmation of whether we process your personal information and a copy of the categories and specific pieces we hold.
  • Correct. Request correction of inaccurate personal information.
  • Delete. Request deletion of personal information, subject to legal retention exceptions.
  • Portability. Request a portable copy of personal information you provided to us.
  • Opt out of sale, sharing, and targeted advertising. We do not sell or share Site personal information for those purposes. If that changes, we will update this Policy and provide an opt-out.
  • Limit use of sensitive personal information (California). We do not use sensitive personal information from the Site for purposes that require a "limit" link.
  • Appeal. If we decline a request, residents of states that grant an appeal right may appeal using the contact method below.
  • Non-discrimination. We will not deny goods or services, charge a different price, or provide a different quality of service because you exercised a privacy right.

How to submit a request

Email hello@persentic.ai with the subject line "Privacy Request." Tell us which right you want to exercise and the email address or other identifier we should search. We will verify your identity using the contact information we already have. You may use an authorized agent where state law permits; we may require proof of authorization.

We will respond within the period required by the applicable state law. We will not charge a fee for a request unless it is excessive, repetitive, or manifestly unfounded, and then only as the law allows.

Notice at collection (California and similar states)

In the preceding 12 months we have collected, and expect to collect, the following categories from Site visitors and business contacts. We do not sell these categories and we do not share them for cross-context behavioral advertising.

  • Identifiers. Examples: name, work email, phone, IP address. Business purpose: respond to inquiries, security, and investor-access review.
  • Professional information. Examples: title, practice or company name, specialty. Business purpose: sales qualification and customer onboarding contact.
  • Internet and device activity. Examples: pages viewed, referrer, browser, timestamps. Business purpose: Site operation, security, and limited analytics.
  • Inferences. Examples: sales-stage notes derived from your inquiry. Business purpose: internal CRM qualification only.

California "Shine the Light": we do not disclose personal information to third parties for their own direct marketing. Nevada residents may request that we not sell covered information; we do not sell it.

Global Privacy Control / Do Not Track. Where a state law requires us to treat a recognized universal opt-out signal (including Global Privacy Control) as a valid request to opt out of sale or sharing, we will honor that signal for the browser that sends it. We do not currently sell or share Site data for advertising, so the practical effect is that we will not begin doing so for that browser.

8. Children

The Site is directed to adults acting in a business or investor capacity. We do not knowingly collect personal information from children under 16. If you believe we have, contact hello@persentic.ai and we will delete it.

9. Cookies

We use strictly necessary cookies for security and site function. We may use limited first-party analytics cookies to understand which pages are useful. We do not use third-party advertising cookies on the Site as of the effective date. You can control cookies in your browser; blocking strictly necessary cookies may break form submission.

10. International visitors

The Site is operated from the United States. If you access it from outside the U.S., your information will be processed in the United States, which may have different data-protection rules than your country.

11. Changes

We will update this Policy when our practices or the law change. The "Effective date" will change. Material changes that affect rights we have already described will be posted on this page. Continued use of the Site after the updated date constitutes notice of the revised Policy for Site use going forward.

12. Contact

Email hello@persentic.ai for all privacy requests, questions, and legal notices.

If you are a California resident and have a complaint you believe we have not resolved, you may contact the California Privacy Protection Agency (cppa.ca.gov) or the California Attorney General. Residents of other states may contact their state attorney general.

13. Healthcare vendor-review note

If you are reviewing Persentic as a prospective vendor to a health system, medical group, DSO, or practice:

  • This Policy governs the public Site and business-contact data only.
  • Production processing of practice or patient data, if any, requires a signed customer agreement and, where PHI is involved, a Business Associate Agreement.
  • Security questionnaires, SOC reports, and HIPAA control mappings are available to qualified counterparties under NDA. Request them through your Persentic commercial contact or hello@persentic.ai.