Privacy Policy

Last updated: August 5, 2026

1. Introduction

SOLO ("SOLO," "we," "us," or "our") is the Intelligent Operating System for independent wellness professionals — providing scheduling, payments, client management, clinical documentation, and the SOLO Intelligence™ team of digital specialists. This Privacy Policy explains how we collect, use, disclose, and protect your information when you use the SOLO platform (the "Service"). By creating an account or using the Service, you agree to the practices described here.

SOLO is operated by SOLO Intelligence, Inc. If you are a patient or client of a practice that uses SOLO, your practitioner is the custodian of your health records. This policy covers how SOLO, as a business associate, handles data on behalf of those providers.

2. Information We Collect

Account information: name, email address, password (securely hashed), business name, profession type, and referral source.

Practice & client data: client contact details, appointment history, SOAP notes, intake forms, consent signatures, payment records, and documents you upload (intake PDFs, headshots, custom anatomy diagrams).

Payment information: card details are processed directly by Stripe — SOLO never stores full card numbers, CVCs, or sensitive card data on its servers.

Usage & technical data: device type, IP address, browser, interaction logs, and analytics events used to improve the platform.

3. Protected Health Information (PHI) & HIPAA

SOLO is designed to support HIPAA-compliant workflows for wellness practitioners. When a provider uses SOLO to store client intake forms, SOAP notes, or treatment records, that data may constitute Protected Health Information (PHI). SOLO acts as a Business Associate under HIPAA and executes Business Associate Agreements (BAAs) with covered-entity customers upon request.

We apply administrative, physical, and technical safeguards required under the HIPAA Security Rule, including encryption in transit and at rest, role-based access control, audit logging, and session-based row-level security that isolates each provider's data. Associates of a practice may be restricted from viewing client contact details and intake documents when the primary provider enables Client Data Protection safeguards.

4. How We Use Your Information

  • To provide, operate, and maintain the Service and your practice dashboard.
  • To process subscription and add-on payments and manage your account.
  • To deliver automated client communications (reminders, intake forms, receipts, review requests) through the BEA™ Client Experience Engine when enabled.
  • To power the SOLO Intelligence™ team (KIT™, MISHA™, BEA™) so they can read your practice data and take autonomous, in-platform action on your behalf.
  • To provide customer support, respond to inquiries, and send service notifications.
  • To detect, prevent, and address fraud, abuse, and security issues.
  • To comply with legal obligations and protect our rights.

5. How We Share Information

We do not sell your personal or client data. We share information only as described below:

  • Service providers: Stripe (payments), Resend (transactional email), Twilio (SMS & voice), and cloud infrastructure providers — each under contracts that limit their use of data to providing their services.
  • SOLO Partner Network™: when a referred provider signs up using a partner's promo code, limited attribution data is shared with that partner for reward tracking.
  • Legal compliance: when required by law, court order, or to protect rights, property, or safety.
  • Business transfers: in connection with a merger, acquisition, or sale of assets, subject to confidentiality obligations.

6. Data Security

We protect your data using industry-standard measures: 256-bit SSL/TLS encryption in transit, encryption at rest, secure password hashing, row-level security scoping every entity to the owning provider, least-privilege service roles, audit logging of sensitive actions, and continuous monitoring. No method of transmission or storage is 100% secure, but we work continuously to safeguard your information.

7. Data Retention

We retain your account and practice data for as long as your account is active or as needed to provide the Service. After account cancellation, we retain data for a limited period to allow reactivation and to comply with legal or tax obligations, after which it is deleted or anonymized. You may request export or deletion of your data at any time.

8. Cookies & Analytics

We use essential cookies to keep you signed in and to remember preferences, and analytics to understand how the platform is used so we can improve it. We do not use cookies for cross-site advertising or sell analytics data. You can disable cookies in your browser, though some features may not function correctly.

9. Your Privacy Rights

Depending on your location (e.g., California, the EU/UK), you may have the right to:

  • Access the personal data we hold about you.
  • Request correction of inaccurate data.
  • Request deletion of your data ("right to be forgotten").
  • Opt out of the sale or sharing of personal information (we do not sell data).
  • Withdraw consent for optional processing.

To exercise these rights, contact us at sales@solofrontdesk.com.

10. Children's Privacy

The Service is intended for use by licensed professionals and their adult clients. We do not knowingly collect personal information from children under 16. If you believe a minor has provided data through a practice's intake form, contact us so we can address it.

11. Changes to This Policy

We may update this policy from time to time. We will notify active users of material changes via email or an in-app notice and update the "Last updated" date above. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.

12. Contact Us

sales@solofrontdesk.com
Data Protection & Privacy Team
SOLO Intelligence, Inc.