This Privacy Policy explains how Lexoro Solutions ("Lexoro", "we", "us", or "our"), a company registered in the United Arab Emirates, handles personal information in connection with our products and services, including BizBrain, our WhatsApp-based clinic management and appointment booking platform.
Lexoro Solutions is the operator of BizBrain. Throughout this policy, "BizBrain" refers to the product and "Lexoro Solutions" refers to the legal entity responsible for it.
01Who we are
Lexoro Solutions is a technology company based in the United Arab Emirates. The legal entity responsible for the processing described here is:
- Company: Lexoro Solutions
- Registered address: Office F1, C1 Building, Ajman Free Zone, Ajman, UAE
- Contact for privacy matters: info@lexorosolutions.com
02Information we collect
From clinics and their staff (our customers)
- Account details: name, email address, phone number, and password (stored in hashed form).
- Clinic information: clinic name, address, location coordinates, license number, working hours, and doctor profiles.
- Billing information processed by our payment provider (we do not store full card numbers).
- Usage data: log records, device and browser information, and actions taken within the BizBrain dashboard.
From patients (on behalf of clinics)
When a patient messages a clinic's WhatsApp number that is connected to BizBrain, we process the information needed to handle their request, which may include:
- The patient's WhatsApp phone number and display name.
- Message content the patient sends (for example, the doctor, date, and time they request).
- Appointment details created as a result of the conversation.
We process patient information only to provide the booking and clinic-communication service to the clinic. We do not use patient data for advertising, and we do not sell it.
03How we use information
| Purpose | Examples |
|---|---|
| Provide the service | Authenticate clinic logins, schedule appointments, send confirmations and reminders, share clinic address and location. |
| Communicate | Send transactional emails such as password resets, verification, and welcome messages. |
| Billing | Process subscription payments and manage plans. |
| Improve and secure | Diagnose problems, prevent abuse, and maintain the reliability and security of the service. |
| Legal compliance | Meet obligations under applicable UAE law and the WhatsApp Business Platform terms. |
04WhatsApp and Meta
BizBrain operates on the WhatsApp Business Platform provided by Meta Platforms, Inc. Messages between patients and clinics are delivered through WhatsApp's infrastructure and are subject to Meta's own terms and privacy practices. When a clinic connects its WhatsApp number to BizBrain, it authorizes Lexoro to send and receive messages on its behalf through the WhatsApp Business Platform.
We use patient message data solely to operate the clinic's assistant — for example, to understand a booking request and respond. We comply with the WhatsApp Business Messaging Policy and process messages only within the scope a clinic has authorized.
05Service providers we share data with
We rely on a small number of trusted providers to run BizBrain. Each processes data only as needed to deliver their part of the service:
| Provider | Role |
|---|---|
| Meta / WhatsApp Business Platform | Message delivery between patients and clinics |
| Supabase | Database and authentication infrastructure |
| Railway | Backend application hosting |
| Vercel | Dashboard hosting |
| OpenAI | Natural-language understanding for the assistant |
| Stripe | Subscription billing and payments |
| Resend | Transactional email delivery |
We do not sell personal information to third parties or share it for their own marketing.
06Data retention
We keep personal information for as long as needed to provide the service and to meet legal, accounting, or reporting requirements. Clinic account data is retained while the account is active. Patient conversation and appointment data is retained on behalf of the clinic and is deleted or returned when the clinic's agreement ends or upon the clinic's instruction, unless we are required to keep it by law.
07Security
We use technical and organizational measures to protect personal information, including encrypted connections (HTTPS), hashed passwords, access controls, and reputable infrastructure providers. No system is perfectly secure, but we work to protect data against unauthorized access, loss, or misuse.
08Your rights
Depending on your role and applicable law, you may have the right to access, correct, or delete personal information, or to object to or restrict certain processing. Clinics can manage much of their data directly in the BizBrain dashboard. Patients should contact the clinic they messaged, as the clinic controls its patient data; we will support the clinic in fulfilling such requests. For any privacy request, contact us at info@lexorosolutions.com.
09Children
BizBrain is intended for use by clinics and businesses, not for direct use by children. Where a clinic books an appointment that concerns a minor, that information is processed on the clinic's instruction and under the clinic's responsibility as the data controller.
10International transfers
Some of our service providers operate outside the United Arab Emirates. Where personal information is transferred internationally, we take steps to ensure it remains protected consistent with this policy and applicable law.
11Changes to this policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date above and, where appropriate, notify clinics through the dashboard or by email.
12Contact us
For questions about this policy or how we handle personal information, contact:
- Lexoro Solutions
- Office F1, C1 Building, Ajman Free Zone, Ajman, UAE
- info@lexorosolutions.com