Privacy Policy

1. Introduction

DOK32 (“we”, “us”, or “our”) is a digital healthcare platform operated by IT Flakes LLC, a company registered in Abu Dhabi, United Arab Emirates. This Privacy Policy explains how we collect, use, store, share, and protect your personal information when you use our website (dok32.com), our patient mobile application, and related digital services (collectively, the “Services”), in accordance with the laws of the United Arab Emirates, including Federal Decree-Law No. 45 of 2021 on the Protection of Personal Data.

By using our Services, you agree to the practices described in this Privacy Policy. If you do not agree, please discontinue use of the Services.

2. Information We Collect

2.1 Information You Provide

  • Full name, date of birth, gender, and nationality
  • Contact details: email address, phone number, and mailing address
  • Medical and health information necessary for appointment booking and clinical services
  • Payment and billing information (credit/debit card details)
  • Account credentials (username and password)
  • Communications you send to us (enquiries, feedback, support requests)

2.2 Information Collected Automatically

  • Device information: device type, operating system, unique device identifiers
  • Usage data: pages visited, features used, session duration, click patterns
  • IP address and approximate location (city/region level)
  • Cookies, pixels, and similar tracking technologies

2.3 Information from Third Parties

  • Analytics data from Google Analytics (see 9)
  • Information from referring healthcare providers, where applicable and with your consent

3. How We Use Your Information

We use the information we collect for the following purposes:

  • To provide and manage our clinical and digital services, including appointment scheduling
  • To create and maintain your account
  • To process payments and billing
  • To communicate with you regarding appointments, services, and support
  • To send marketing communications, newsletters, and promotional offers (with your consent)
  • To improve our Services, content, and user experience
  • To comply with legal obligations, including healthcare regulations and UAE data protection laws
  • To protect the safety, rights, and property of DOK32, IT Flakes LLC, our patients, and the public

4. Data Sharing & Disclosure

We do not sell, rent, or trade your personal information to third parties. We may share your information only in the following circumstances:

  • Service Providers: With trusted third-party vendors who perform services on our behalf (e.g., hosting, payment processing, analytics), bound by confidentiality obligations.
  • Legal Compliance: When required by law, regulation, court order, or governmental authority in the United Arab Emirates.
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction.
  • Healthcare Operations: With authorised healthcare professionals and clinics connected through the DOK32 platform, for continuity of care, where applicable and with your consent.

We do not permit third parties to use your information for their own marketing purposes.

5. Data Storage & Security

Your personal information is stored on secure servers located in the United Arab Emirates. We implement industry-standard technical and organisational measures to protect your data, including:

  • SSL/TLS encryption for data in transit
  • Encryption at rest for stored data
  • Access controls with role-based permissions
  • Regular security assessments and monitoring

While we take every reasonable precaution, no method of electronic transmission or storage is 100% secure. You are responsible for keeping your account credentials confidential.

6. Data Retention

We retain your personal information for as long as necessary to fulfil the purposes outlined in this Policy, comply with legal obligations (including UAE healthcare record retention requirements), resolve disputes, and enforce our agreements. When your data is no longer required, it will be securely deleted or anonymised.

7. Your Right to Data Deletion

You have the right to request the deletion of your personal data held by DOK32 / IT Flakes LLC. To submit a data deletion request:

  • Email: Send a request to info@dok32.com with the subject line “Data Deletion Request” and include your full name, registered email address, and phone number for verification.
  • In-App (where applicable): If you use the DOK32 patient application, you may also submit a request via Settings → Account → Request Data Deletion within the app, where available.

Upon receiving your request, we will:

  • Verify your identity to prevent unauthorised deletion.
  • Process the request within 30 calendar days.
  • Confirm deletion via email once completed.

Please note that certain data may be retained where required by UAE law (e.g., medical records subject to mandatory retention periods under healthcare regulations) or where necessary to fulfil legitimate business obligations. In such cases, we will inform you of the specific data retained and the legal basis for retention.

8. Your Rights

Under UAE data protection law, you have the right to:

  • Access: Request a copy of the personal data we hold about you.
  • Correction: Request correction of inaccurate or incomplete data.
  • Deletion: Request deletion of your data (see 7).
  • Restriction: Request that we limit the processing of your data in certain circumstances.
  • Objection: Object to processing of your data for direct marketing purposes.
  • Portability: Request transfer of your data in a commonly used electronic format.

To exercise any of these rights, contact us at info@dok32.com.

9. Cookies & Google Analytics

Our website uses cookies — small text files stored on your device — to enhance your browsing experience and analyse site usage.

We use Google Analytics, a web analytics service provided by Google, Inc. Google Analytics uses cookies to collect information about how visitors use our website, including your IP address. This information is transmitted to and stored by Google on servers in the United States. Google uses this data to evaluate website usage, compile reports, and provide related services. Google may transfer this information to third parties where required by law or where third parties process data on Google's behalf.

You may refuse cookies by adjusting your browser settings. However, disabling cookies may limit certain functionality of the website. By using our website, you consent to the processing of data by Google as described above.

10. Children's Privacy

Our Services are not directed at children under 18. We do not knowingly collect personal information from children without parental or guardian consent. If you are a parent or guardian and believe your child has provided personal information to us, please contact us at info@dok32.com. We will promptly delete such information upon verification.

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. The updated policy will be posted on dok32.com and within the DOK32 mobile application (once published) with a revised “Last Updated” date. We encourage you to review this Policy periodically. Continued use of the Services after changes constitutes acceptance of the updated Policy.

12. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:

Organisation IT Flakes LLC — DOK32
Email info@dok32.com
Address Abu Dhabi, United Arab Emirates

For privacy-related complaints, please include “Privacy Policy” in the subject line of your email.