← Back to InTour

Privacy Policy

Last updated: March 2026

1. Who We Are

InTour ("we", "our", "us") provides AI-assisted facial mapping reference software for aesthetic clinics. This policy explains how we collect, use, and safeguard personal data in compliance with applicable UAE data protection laws and NABIDH requirements.

2. Data We Collect

  • Clinic data: name, email, phone, address, licence number.
  • Client data: name, date of birth, gender, nationality, contact details, photos, and clinical notes — collected and entered by clinic staff.
  • Usage data: pages visited, features used, session timestamps.
  • Authentication data: email address and hashed password (passwords are never stored in plain text).

3. How We Use Your Data

  • To provide and improve the InTour service.
  • To process payments via Stripe.
  • To comply with legal and regulatory obligations (including NABIDH).
  • To send transactional communications (invoice receipts, password resets).

4. Client Photos & AI-Assisted Mapping

Facial photos are uploaded by clinic staff for AI-assisted facial mapping. Photos are processed on-device using TensorFlow.js — no raw image data leaves the browser until the analysis is explicitly saved by the user. Saved analyses are stored securely on our servers (hosted on Neon / Vercel infrastructure in the US/EU region).

5. Data Retention

Client and analysis records are retained for as long as your clinic subscription is active, plus 90 days after cancellation. You may request earlier deletion at any time via Settings → Delete Account.

6. Data Sharing

We do not sell your data. We share data only with trusted sub-processors required to operate the service: Vercel (hosting), Neon (database), Stripe (payments), and Google (OAuth authentication).

7. Security

All data is transmitted over TLS. Passwords are hashed with bcrypt. We maintain an internal audit log of all data access and modifications for NABIDH compliance.

8. Your Rights

You have the right to access, correct, or delete your personal data. To exercise these rights, contact us at privacy@intour.ai.

9. Cookies

We use strictly necessary cookies to maintain your login session and remember your language preference. We do not use tracking or advertising cookies.

10. Contact

Questions about this policy? Email us at privacy@intour.ai.