EviraLabsEviraLabs
← Back to Home

Privacy Policy

Last updated: 1 January 2025

1. Introduction

EviraLabs Ltd ("we", "us", or "our") is committed to protecting and respecting your privacy. This policy explains how we collect, use, and safeguard your personal data when you use our services, in accordance with the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018.

2. Data Controller

EviraLabs Ltd is the data controller for personal data collected through our services.

Address: Suite A, 82 James Carter Road, Mildenhall, Bury St. Edmunds, IP28 7DE, United Kingdom

Email: support@eviralabs.com

3. Information We Collect

We may collect and process the following categories of personal data:

  • Identity data: name, username, or similar identifiers
  • Contact data: email address, telephone numbers
  • Financial data: payment card details, billing information
  • Transaction data: details about payments and services purchased
  • Technical data: IP address, browser type, operating system, referral source
  • Usage data: how you use our website and services
  • Patient communications data: call logs and appointment information processed on behalf of our healthcare customers

4. How We Use Your Data

We use your personal data to:

  • Provide and manage our AI receptionist services
  • Process payments and manage your account
  • Communicate with you about your subscription and support requests
  • Improve and develop our services
  • Comply with legal obligations
  • Prevent fraud and ensure security

5. HIPAA Compliance

For customers in the healthcare sector, we process Protected Health Information (PHI) as a Business Associate under HIPAA. We maintain appropriate technical and organisational measures to ensure the confidentiality, integrity, and availability of all PHI we handle.

6. Data Security

We implement appropriate technical and organisational security measures to protect your personal data against unauthorised access, alteration, disclosure, or destruction. This includes SSL encryption, firewalls, and strict access controls. While we take reasonable precautions, no method of transmission over the internet is 100% secure.

7. Your Rights

Under UK GDPR, you have the following rights:

  • Right to access — request a copy of your personal data
  • Right to rectification — request correction of inaccurate data
  • Right to erasure — request deletion of your data
  • Right to restrict processing — request we limit how we use your data
  • Right to data portability — request transfer of your data
  • Right to object — object to certain processing activities

To exercise any of these rights, contact us at support@eviralabs.com.

8. Data Retention

We retain your personal data for as long as necessary to provide our services and comply with legal obligations. When data is no longer required, we securely delete or anonymise it.

9. Third-Party Services

We may share data with trusted third-party service providers who assist us in operating our platform (e.g. payment processors, cloud hosting). All third parties are contractually required to protect your data and may only process it for specified purposes.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of significant changes by posting the new policy on this page with an updated date. Continued use of our services after changes constitutes acceptance of the revised policy.

11. Contact Us

If you have any questions about this Privacy Policy or how we handle your data, please contact us at:

Email: support@eviralabs.com
Address: Suite A, 82 James Carter Road, Mildenhall, Bury St. Edmunds, IP28 7DE, United Kingdom