Last updated: August 5, 2026
SOLO ("SOLO," "we," "us," or "our") is the Intelligent Operating System for independent wellness professionals — providing scheduling, payments, client management, clinical documentation, and the SOLO Intelligence™ team of digital specialists. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use the SOLO platform (the "Service"). By creating an account or using the Service, you agree to the practices described here.
SOLO is operated by SOLO Intelligence, Inc. If you are a patient or client of a practice that uses SOLO, your practitioner is the custodian of your health records. This policy covers how SOLO, as a business associate, handles data on behalf of those providers.
Account information: name, email address, password (securely hashed), business name, profession type, and referral source.
Practice & client data: client contact details, appointment history, SOAP notes, intake forms, consent signatures, payment records, and documents you upload (intake PDFs, headshots, custom anatomy diagrams).
Payment information: card details are processed directly by Stripe — SOLO never stores full card numbers, CVCs, or sensitive card data on its servers.
Usage & technical data: device type, IP address, browser, interaction logs, and analytics events used to improve the platform.
SOLO is designed to support HIPAA-compliant workflows for wellness practitioners. When a provider uses SOLO to store client intake forms, SOAP notes, or treatment records, that data may constitute Protected Health Information (PHI). SOLO acts as a Business Associate under HIPAA and executes Business Associate Agreements (BAAs) with covered-entity customers upon request.
We apply administrative, physical, and technical safeguards required under the HIPAA Security Rule, including encryption in transit and at rest, role-based access control, audit logging, and session-based row-level security that isolates each provider's data. Associates of a practice may be restricted from viewing client contact details and intake documents when the primary provider enables Client Data Protection safeguards.
We protect your data using industry-standard measures: 256-bit SSL/TLS encryption in transit, encryption at rest, secure password hashing, row-level security scoping every entity to the owning provider, least-privilege service roles, audit logging of sensitive actions, and continuous monitoring. No method of transmission or storage is 100% secure, but we work continuously to safeguard your information.
We retain your account and practice data for as long as your account is active or as needed to provide the Service. After account cancellation, we retain data for a limited period to allow reactivation and to comply with legal or tax obligations, after which it is deleted or anonymized. You may request export or deletion of your data at any time.
Depending on your location (e.g., California, the EU/UK), you may have the right to:
To exercise these rights, contact us at sales@solofrontdesk.com.
The Service is intended for use by licensed professionals and their adult clients. We do not knowingly collect personal information from children under 16. If you believe a minor has provided data through a practice's intake form, contact us so we can address it.
We may update this policy from time to time. We will notify active users of material changes via email or an in-app notice and update the "Last updated" date above. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.