Privacy Policy

Effective Date: April 23 2025

Welcome to SinapTICs! This Privacy Policy explains how SinapTICs ("SinapTICs," "we," "us," or "our") collects, uses, shares, and protects information in relation to our website sinaptics.com (the "Site"), our Laboratory Information System software-as-a-service (the "Service"), and any other services we provide.

This Policy also describes your choices regarding use, access, and correction of your personal information. By using our Site or Service, you agree to the collection and use of information in accordance with this policy.

1. Information We Collect

We collect different types of information for various purposes to provide and improve our Service to you.

a. Information You Provide to Us Directly:

  • Account Information: When you register for an account, start a free demo, or contact us, we may collect personal information such as your name, email address, phone number, lab name, job title, and payment information.
  • Customer Data (Data Processed on Behalf of Our Clients): Our LIS is designed to manage laboratory information. Our clients (laboratories) use our Service to store and process data related to their operations, which may include:
    • Patient or animal owner information (e.g., names, IDs, contact details)
    • Patient or animal medical records and test results
    • Imaging data (PACS)
    • Analyzer data and results
    • Other sensitive information as determined by our clients. SinapTICs acts as a "Data Processor" or "Service Provider" for this Customer Data. Our clients are the "Data Controllers" or "Businesses" and are responsible for their own compliance with applicable data privacy laws, including obtaining necessary consents for collecting and processing this data. Our processing of Customer Data is governed by the agreement between SinapTICs and our client.
  • Communications: If you contact us directly (e.g., via email, support tickets, contact forms), we may receive additional information about you such as your name, email address, phone number, the contents of the message and/or attachments you may send us, and any other information you may choose to provide.

b. Information We Collect Automatically When You Use Our Services:

  • Log and Usage Data: We may collect information that your browser or our application sends whenever you visit our Site or use our Service. This may include information such as your computer's Internet Protocol (IP) address, browser type, browser version, the pages of our Site or Service that you visit, the time and date of your visit, the time spent on those pages, unique device identifiers, and other diagnostic data.
  • Cookies and Similar Tracking Technologies: We use cookies and similar tracking technologies to track the activity on our Site and Service and hold certain information. Cookies are files with a small amount of data which may include an anonymous unique identifier. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service. Examples of Cookies we use: Session Cookies, Preference Cookies, Security Cookies.

c. Information from Third-Party Services (e.g., Google OAuth):

  • If you choose to register or log in to our Service using a third-party service like Google, we may collect information from your Google account.
  • Specific to Google OAuth: When you authenticate using your Google account, we request access to your basic profile information (such as your name and email address).
  • Purpose: We use this information solely for the purpose of authenticating your identity, creating or accessing your SinapTICs account, and pre-filling certain information in your profile.
  • Limited Use: We will use this information strictly in accordance with Google's API Services User Data Policy, including the Limited Use requirements. We do not use this data for advertising purposes, nor do we transfer it to third parties other than as necessary to provide or improve user-facing features, comply with applicable laws, or as part of a merger, acquisition, or sale of assets where you have been notified. We do not share Customer Data (e.g., patient records, lab results) with Google through this OAuth process.

2. How We Use Your Information

We use the collected information for various purposes:

  • To provide, operate, and maintain our Site and Service.
  • To process and manage your account, including processing payments.
  • To allow our clients to manage and process their Customer Data effectively.
  • To improve, personalize, and expand our Site and Service.
  • To understand and analyze how you use our Site and Service.
  • To develop new products, services, features, and functionality.
  • To communicate with you, either directly or through one of our partners, including for customer service, to provide you with updates and other information relating to the Service, and for marketing and promotional purposes (where permitted by law and with your consent, where required).
  • To facilitate lab analyzer integration and real-time data transfer as directed by our clients.
  • To send you technical notices, updates, security alerts, and support and administrative messages.
  • For compliance purposes, including enforcing our Terms of Service, or other legal rights, or as may be required by applicable laws and regulations or requested by any judicial process or governmental agency.
  • To ensure data security and comply with industry regulations, including HIPAA where applicable to the Customer Data we process on behalf of our clients.
  • Specific to Google OAuth Data: To authenticate users and provide seamless access to our Service. We do not use data obtained through Google OAuth for purposes other than those explicitly stated and authorized by you during the consent process.

3. How We Share Your Information

We do not sell your personal information. We may share information we collect in the following circumstances:

  • Service Providers: We may share your information with third-party vendors, service providers, contractors, or agents who perform services for us or on our behalf and require access to such information to do that work (e.g., payment processing, data hosting, analytics, customer support, email delivery). These service providers are authorized to use your personal information only as necessary to provide these services to us and are contractually obligated to protect your information.
  • Lab Analyzer Integrations: At the direction of our clients, we facilitate the transfer of data between our LIS and their laboratory analyzers. This sharing is based on client configurations and agreements.
  • Business Transfers: If we are involved in a merger, acquisition, financing due diligence, reorganization, bankruptcy, receivership, sale of company assets, or transition of service to another provider, your information may be sold or transferred as part of such a transaction as permitted by law and/or contract.
  • Legal Requirements: We may disclose your information if required to do so by law or in the good faith belief that such action is necessary to:
    • Comply with a legal obligation (e.g., subpoena, court order).
    • Protect and defend the rights or property of SinapTICs.
    • Prevent or investigate possible wrongdoing in connection with the Service.
    • Protect the personal safety of users of the Service or the public.
    • Protect against legal liability.
  • With Your Consent: We may disclose your personal information for any other purpose with your consent.
  • Aggregated or De-identified Data: We may share aggregated or de-identified information, which cannot reasonably be used to identify you, for research, marketing, analytics, or other purposes.
  • Specific to Google OAuth Data: We do not share data obtained via Google OAuth with third parties except as necessary to provide our services (e.g., with our hosting provider for storage), for security purposes, to comply with applicable law, or as part of a merger/acquisition (with prior notice). The use of information received from Google APIs will adhere to the Google API Services User Data Policy, including the Limited Use requirements.

4. Data Security

SinapTICs is committed to protecting the security of your information. We use a variety of industry-standard security technologies and procedures to help protect your information from unauthorized access, use, or disclosure. These include encryption, access controls, and secure data storage. For Customer Data that may include PHI, we implement technical, administrative, and physical safeguards designed to comply with the Health Insurance Portability and Accountability Act (HIPAA) Security Rule, where applicable as a Business Associate to our clients.

However, no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your personal information, we cannot guarantee its absolute security.

5. Data Retention

We will retain your personal information only for as long as is necessary for the purposes set out in this Privacy Policy, or as needed to provide the Service to you and our clients. We will retain and use your information to the extent necessary to comply with our legal obligations (for example, if we are required to retain your data to comply with applicable laws), resolve disputes, and enforce our legal agreements and policies.

Customer Data processed by our Service is retained according to the terms of our agreement with our clients, or as instructed by them.

6. Your Data Protection Rights

Depending on your location and applicable law, you may have certain rights regarding your personal information:

  • Access: The right to access the personal information we hold about you.
  • Rectification: The right to request that we correct any inaccurate or incomplete personal information.
  • Erasure (Deletion): The right to request the deletion of your personal information, subject to certain exceptions.
  • Restrict Processing: The right to request that we restrict the processing of your personal information.
  • Data Portability: The right to receive your personal information in a structured, commonly used, and machine-readable format.
  • Object to Processing: The right to object to our processing of your personal information.
  • Withdraw Consent: If we are processing your personal information based on your consent, you have the right to withdraw your consent at any time.

To exercise these rights, please contact us using the details provided below. If you are an individual whose data is part of Customer Data managed by one of our clients (e.g., a patient of a lab using SinapTICs), please direct your request to that client (the Data Controller). We will assist our clients in responding to such requests as required by law and our agreements.

7. International Data Transfers

Your information, including personal information, may be transferred to — and maintained on — computers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ from those in your jurisdiction.

If you are located outside the United States and choose to provide information to us, please note that we transfer the data, including personal information, to the United States and process it there. Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.

SinapTICs will take all steps reasonably necessary to ensure that your data is treated securely and in accordance with this Privacy Policy and no transfer of your personal information will take place to an organization or a country unless there are adequate controls in place including the security of your data and other personal information. For transfers from the European Economic Area (EEA), UK, or Switzerland, we may rely on mechanisms like Standard Contractual Clauses.

8. Children's Privacy

Our Service is not directed to individuals under the age of 13 (or a higher age threshold depending on the jurisdiction, e.g., 16 in some parts of Europe). We do not knowingly collect personal information from children under this age without parental consent. If you are a parent or guardian and you are aware that your child has provided us with personal information, please contact us. If we become aware that we have collected personal information from children without verification of parental consent, we take steps to remove that information from our servers.

Note that our clients (e.g., pediatric labs) may use our Service to process information about children. In such cases, the client is responsible for obtaining any necessary parental consent.

Our Site or Service may contain links to other websites that are not operated by us. If you click on a third-party link, you will be directed to that third party's site. We strongly advise you to review the Privacy Policy of every site you visit. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.

10. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Effective Date" at the top. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page. For material changes, we may provide more prominent notice (such as by email or a notice on our website).

11. Contact Us

If you have any questions about this Privacy Policy, please contact us: