Privacy Policy

Mexcotech Solutions LLC

 

Effective Date: January 1, 2026

 

This Privacy Policy explains how Mexcotech Solutions LLC (“Mexcotech,” “we,” “us,” or “our”) handles the personal information we collect, including personal information collected through our websites, applications, platforms, digital forms, cloud systems, and/or devices (collectively, the “Company Site” and the “Services”).

 

This Privacy Policy does not apply to personal information collected and processed about Mexcotech employees, job applicants, or independent contractors. If you are an employee, job applicant, or independent contractor, please contact us at: support@mexcotech.com.

 

We use the Company Site to make information, products, and services available to you. The term “personal information” refers to information you provide to us or that we collect that identifies you, relates to you, describes you, can be associated with you, or could be linked with you, directly or indirectly (e.g., your name, telephone number, email, online identifiers, and other linked data).Table of Contents

  1. 1. What personal information do we collect?
  2. 2. How do we collect personal information?
  3. 3. How we use the information we collect
  4. 4. How we disclose information
  5. 5. Children
  6. 6. Third-party links
  7. 7. Do Not Track
  8. 8. Patient Information
  9. 9. Data Security and Retention
  10. 10. Nevada Residents
  11. 11. California Residents
  12. 12. Residents of Colorado, Connecticut, Delaware, Iowa, Montana, New Jersey, Oregon, Texas, Virginia, and Utah
  13. 13. EU Residents
  14. 14. EU and UK Data Subject Representative: Data Subject Requests
  15. 15. Notification of Changes
  16. 16. Compliance, Questions, and Concerns
  1. What personal information do we collect?

 

We may collect personal information when you use the Company Site or when you obtain information, products, and services from us. The information may include, as applicable:

  • Contact Data and Identifiers: name, mailing address, email, telephone number, organization/company name, and job title.
  • Account Data: username, password, or other authentication data.
  • Professional or Commercial Data: specialty, team size, or number of vendors/users, and other information you provide to us when contacting us.
  • Technical and Usage Data: IP address, device identifiers, browser type, pages visited, access times, and interaction with the Site/Services.
  • Payment Data (if applicable): information necessary to process payments (e.g., payment method, billing/shipping address, and verification data).
  • Sensitive Data (only if applicable to the contracted Services): for example, governmental identifiers or data that the client enters into our systems (see section “Patient Information”).

No one is obligated to provide us with information at any time. However, if you do not provide us with the requested information, we may not be able to provide you with information, products, or services, or certain features may not be available.2. How do we collect personal information?2.1 Information you provide to us

 

We obtain personal information when you provide it through the Company Site (e.g., forms such as “Contact Us,” demo requests, account creation, support), via email and other communications, or during routine operations of our Services.2.2 Information we collect from other sources

 

If an organization you are affiliated with purchases our products or services, we may receive information to create and manage your account (e.g., name, email, login credentials, and role). Occasionally, we may receive publicly available business contact information, in accordance with the law.2.3 Information we collect automatically (cookies and similar technologies)

 

We, and certain third-party providers of analytics and digital advertising, may automatically collect information while you use the Company Site and/or our Services using cookies, pixels, and similar technologies. These technologies may collect information about browsers and devices, including IP address, device identifiers, access times, and pages visited.

 

We use these technologies to operate and improve the Site/Services, troubleshoot technical issues, understand how they are used, personalize your experience, and, where applicable, display advertisements or measure their effectiveness. You can manage preferences through our banner or cookie preference tool: mexcotech.com.

 

We may use analytics tools such as Google Analytics and/or Mixpanel (or other equivalents) on some sites, products, or services. Depending on your settings, these tools may use cookies or identifiers to measure usage, performance, and behavior within the Site/Services. For opt-out options, consult the provider’s options or our cookie preferences.3. How we use the information we collect

 

We may use personal information to:

  • Provide, operate, and improve the Company Site and our Services.
  • Provide products, services, and information resources.
  • Develop new or updated functionalities.
  • Administer, protect, and manage the Site/Services (including support and quality control).
  • Provide customer service and technical support.
  • Communicate with you about products/services, including marketing communications where permitted by law and your preferences.
  • Respond to inquiries, requests, or contact forms (by call, SMS, or email, as applicable).
  • Allow access to accounts, restricted areas, and authenticated functionalities.
  • Process orders, subscriptions, and payments (if applicable).
  • Investigate and enforce contractual terms and applicable policies.
  • Prevent fraud, abuse, security incidents, and other illegal activities.
  • Comply with legal, regulatory obligations, and industry standards (e.g., privacy and security).
  • Other purposes disclosed to you at the time of collection.

We may create and use aggregated or de-identified datasets that do not reasonably allow an individual to be identified. We may use and disclose such aggregated/de-identified data for analysis, development, improvement, and other business purposes.4. How we disclose information

 

We may disclose personal information to external vendors who provide services to help us provide, operate, develop, promote, market, and support the Site/Services (e.g., hosting, infrastructure, support, analytics, and payment processing). We enter into agreements with vendors that limit the use and disclosure to the purposes for which the information is shared.

 

We may also disclose information when we deem it necessary to: (a) comply with applicable laws and regulations; (b) respond to subpoenas or other valid legal requests; (c) enforce terms and conditions; (d) protect our rights, reputation, and property, or those of users/affiliates/the public; (e) support auditing, compliance, and corporate governance; and (f) perform or evaluate corporate transactions (merger, acquisition, asset sale, or related processes).5. Children

 

The Company Site and our Services are not directed to or designed for use by minors. We do not intentionally collect personal information online from children under eighteen (18) years of age.6. Third-Party Links

 

The Company Site may contain links to third-party sites. Except as set forth in this Policy, we do not share your personal information with such third parties, and we are not responsible for their privacy practices. We encourage you to read the privacy policies of those sites.7. Do Not Track

 

Currently, the Company Site may not respond to browser “Do Not Track” signals. You can configure privacy preferences in your browser. For more information, you can visit: www.donottrack.us.8. Patient Information

 

Generally, we do not solicit clinical or patient information through the public Site. However, some of our Services (e.g., digital forms, consents, electronic records, before/after photo modules, teleconsultation, secure messaging, or others) may involve access to and/or processing of patient information when a client (e.g., a clinic, medical spa, or healthcare organization) uses our platforms.

 

When we process health data or protected health information (“PHI”) on behalf of healthcare provider clients, we do so pursuant to applicable contractual agreements (e.g., business associate agreements, where applicable) and relevant laws such as HIPAA and applicable state laws. This Privacy Policy does not govern the healthcare provider’s use of PHI; if you have questions about your PHI, contact the provider with whom you have a relationship directly.9. Data Security and Retention

 

We implement reasonable and appropriate security measures (technical, physical, and administrative) designed to protect personal information against unauthorized access, alteration, loss, disclosure, or use. However, no transmission over the Internet can be guaranteed 100%.

 

Users are responsible for maintaining the confidentiality of their credentials (username/password) and any authentication methods for accessing secure areas. We may suspend or restrict access if we suspect a security breach.

 

We retain personal information for as long as necessary to fulfill the purposes for which it was collected, provide the requested Services, and comply with legal, accounting, or contractual obligations.10. Nevada Residents

 

Under Nevada law, we do not sell your personal information in exchange for monetary consideration. If you are a Nevada resident, you may request that we do not sell personal information we have collected about you by contacting us at: +13467167000. 11. California Residents

 

The California Consumer Privacy Act, as amended by the California Privacy Rights Act (“CCPA/CPRA”), grants California residents specific rights regarding their personal information. This section describes those rights, how to exercise them, and details about categories of personal information.

 

Please note that Protected Health Information (PHI) subject to HIPAA is not subject to the CCPA/CPRA.11.1 Consumer Rights (California)

  • Right to Know: request what personal information we collect, use, disclose, “sell,” or “share” (as per legal definitions).
  • Right to Request Deletion: ask us to delete personal information, subject to legal and operational exceptions.
  • Right to Opt-Out of the “Sale” or “Sharing” (e.g., third-party cookies for analytics/targeted advertising, where applicable).
  • Right to Correct inaccurate personal information.
  • Right to Limit the Use/Disclosure of Sensitive Personal Information, where applicable.
  • Non-discrimination for exercising your rights.

Opt-Out Preference Signals (e.g., Global Privacy Control “GPC”): where applicable, our consent management platform may receive and process compatible signals sent by your browser/device.11.2 How to submit a request (California)

 

To exercise your rights, submit a verifiable request via: Phone: +13467167000 | Website: https://mexcotech.com/ | Email: support@mexcotech.com.

 

We may request additional information to verify your identity and/or authority (e.g., if acting through an authorized agent). We will use the information provided solely for verification and response.12. Residents of Colorado, Connecticut, Delaware, Iowa, Montana, New Jersey, Oregon, Texas, Virginia, and Utah

 

If you are a resident of these states (and other states with similar laws), you may have the right to: (i) confirm whether we process your personal information and access it; (ii) correct inaccuracies; (iii) delete personal information; (iv) obtain a portable copy of your information; and (v) opt-out of certain processing, such as targeted advertising, “sale” of personal information, and, where applicable, profiling that has legal or similar effects.

 

To exercise these rights, contact us using the channels indicated in the “Compliance, Questions, and Concerns” section. If we decline a request, you may appeal by following the instructions we provide in the response.13. EU and UK Residents

 

Regulation (EU) 2016/679 (“GDPR”) and UK laws grant residents rights over their personal data. With respect to certain processing activities, Mexcotech may act as the data controller (e.g., contact data for demos, marketing, or support). When we process patient data on behalf of a healthcare provider, the provider is generally the data controller and Mexcotech acts as the processor.13.1 Rights (EU/UK)

  • Access to personal data and confirmation of processing.
  • Rectification of inaccurate data.
  • Erasure (“right to be forgotten”) in certain circumstances.
  • Restriction of processing in certain circumstances.
  • Objection to processing (including direct marketing).
  • Data portability in certain circumstances.
  • Withdrawal of consent when processing is based on consent.
  • Lodge a complaint with a supervisory authority.

International transfers: our systems may operate and be hosted in the United States or other jurisdictions. Where applicable, we will implement adequate safeguards for international transfers pursuant to the GDPR.14. EU and UK Data Subject Representative: Data Subject Requests

 

If Mexcotech designates a representative in the EU/UK for GDPR requests, the contact information will be published here. In the meantime, you can send requests to: support@mexcotech.com with the subject line “GDPR Request”.15. Notification of Changes

 

Any changes to this Privacy Policy will be posted on this page or through the corresponding channels. We encourage you to review this Policy periodically to stay informed.16. Compliance, Questions, and Concerns

 

We monitor our compliance with this Privacy Policy. If you have questions or concerns, contact us:

  • Email: support@mexcotech.com
  • Mailing Address: 396 w greens rd
  • DSAR Form/Portal: