Effective date: January 2025
Welcome to Ameda (hereinafter: "the System", "we", "us", "our"). This Privacy Policy describes how we collect, use, store, disclose, and delete personal information — particularly medical data — in connection with our services, and your rights as a data subject.
We act as the Data Controller and process data under agreements and instructions from medical entities / physicians that provide us with data.
When we use third-party service providers (e.g., storage, computational processing), they act as Data Processors and are bound by contractual obligations to process data only per our instructions.
We receive medical data from medical entities, such as:
Purpose: to generate medical reports, provide analytical support to physicians, and present insights per agreement with the supplying medical entities.
We commit to collecting only the minimal data required to fulfill these purposes and refraining from unnecessary or excessive collection.
Processing is based on one or more of the following legal bases (in accordance with Israeli law and Amendment 13, when applicable):
If processing is based on consent, the consent may be withdrawn at any time. Upon withdrawal, we will cease processing or delete the data, in accordance with our retention and deletion policy.
All personal and medical data we process is hosted on Google Cloud servers located in Israel (Region: Tel Aviv, "me-west1"). We use Google's "Israel Data Boundary and Support" to help ensure that data does not cross outside the country as part of storage or routine processing.
If in the future cross-border data transfer becomes necessary (for example, to a third-party service outside Israel), such transfer will only occur under strong encryption, binding agreements, and with explicit consent from the medical entity / data subject.
We adopt technical and organizational measures to protect data security, including:
Our retention and deletion policy is structured as follows:
As a user / data subject, you have the following rights (to the extent permitted by law):
We will respond to requests without undue delay, subject to legal and security constraints.
If a security breach or unauthorized disclosure occurs and presents a high risk to privacy, we will:
We have appointed a Data Protection Officer (DPO) as required under applicable law:
Name: Yaniv Levi
Position: Product Manager
Email: yaniv@quamm.ai
Phone: 050-2231414
We may update this Privacy Policy from time to time (e.g., due to legal changes or technical improvements). For material changes, we will notify users in advance and allow them time to review revisions.
If you have questions, complaints, or requests regarding privacy, contact us at: privacy@quamm.ai. We will respond in good faith and with due diligence.
You may submit privacy-related requests (access, deletion, correction, objections) through our dedicated privacy requests page: Privacy Requests Page.
Note: This policy is a general template. It should be reviewed and tailored by a qualified privacy / legal professional to ensure full compliance with Israeli law and with the specific architecture and practices of Ameda.