Privacy Policy
Last Updated: September 2026
1. Introduction
Med Spa Web Designs ("we," "our," or "us") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, and safeguard your information when you visit our website or engage with our web design services.
Note: This privacy policy applies to our agency website. Websites we build for our clients will have their own distinct privacy policies and HIPAA Notices of Privacy Practices.
2. Information We Collect
We only collect information necessary to provide our web design and consulting services:
- Identity & Contact Data: Name, email address, phone number, and clinic name when you book a consultation or fill out our contact forms.
- Technical Data: IP address, browser type, and operating system collected via privacy-friendly, cookieless analytics (such as Fathom or Plausible). We do not use invasive tracking pixels like the Meta Pixel on our site.
3. How We Use Your Information
We use your data exclusively to:
- Schedule and conduct discovery calls.
- Provide quotes, proposals, and invoicing.
- Communicate regarding the development of your website.
4. Your Data Rights (CCPA & GDPR)
Depending on your location (such as California or the EU), you have the right to request access to, correction of, or deletion of your personal data. To exercise these rights, contact us at privacy@medspawebdesigns.com.
5. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction. We do not store sensitive health information (PHI) on our servers.
6. Third-Party Services
We use minimal third-party services. Our email is delivered via Resend or Postmark (transactional only). Analytics are cookieless. We do not share your data with advertisers or data brokers.
7. Contact Us
If you have questions about this Privacy Policy, please contact us at privacy@medspawebdesigns.com or through our contact page.