Privacy Policy

Effective Date: April 1st, 2026
Last Updated: April 1st, 2026

PLEASE READ THIS PRIVACY POLICY CAREFULLY BEFORE USING OUR WEBSITE, PLATFORM, OR SERVICES.

IMPORTANT NOTE: Aesthetica may provide a separate Notice of Privacy Practices and/or additional health-information authorization documents in connection with patient coordination activities, onboarding, checkout, or case management. Those companion documents may provide additional details regarding how health-related information is handled in connection with coordination, communications, international transfer, and case administration.

I. Introduction

This Privacy Policy (this “Privacy Policy”) describes how Aesthetica Medical Travel, LLC, a Wyoming limited liability company (“Aesthetica,” “we,” “us,” or “our”), collects, uses, maintains, protects, and discloses Personal Data and other information through our website, hosted forms, intake tools, checkout flows, portals, email, SMS/text, WhatsApp, telephone, and other electronic communications.

Aesthetica is a non-clinical coordination company. We coordinate aspects of the patient journey, including intake administration, provider introductions, scheduling support, records organization, logistics planning, communications support, and related concierge-style services. We do not practice medicine, do not diagnose, do not prescribe, do not provide clinical clearance, and do not make medical decisions. Clinical advice, treatment, consent, surgical planning, and medical judgment are provided solely by independent licensed providers and facilities.

This Privacy Policy applies to information we collect:

  • on our website and any related landing pages, forms, and portals;
  • in email, text, WhatsApp, phone, and other electronic communications between you and Aesthetica;
  • through intake forms, checkout flows, scheduling tools, customer support interactions, and related service channels; and
  • from third parties who assist us in providing or supporting our services.

This Privacy Policy does not apply to information collected by independent medical providers, hospitals, laboratories, recovery facilities, payment processors, advertising platforms, or other third parties operating under their own privacy notices, except to the extent we receive or process such information ourselves.

By accessing or using our website, platform, or services, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with this Privacy Policy, please do not use our website, platform, or services.

II. Information We Collect

We may collect several categories of information from and about you, including:

A. Personal Information You Provide Directly

This may include:

  • full name;
  • mailing address;
  • billing address;
  • email address;
  • phone number;
  • date of birth;
  • emergency contact details;
  • passport or travel document information, where relevant;
  • city, state, country, and travel preferences;
  • payment-related details needed to facilitate payment processing;
  • information you submit through forms, email, chat, phone, or messaging apps;
  • account, login, portal, or intake information; and
  • any other information you choose to provide to us.

B. Health-Related Information

Because Aesthetica coordinates elective medical travel cases, you may voluntarily provide health-related information, including:

  • health history;
  • medication lists;
  • allergies;
  • prior procedures;
  • photographs;
  • laboratory reports;
  • medical records;
  • disclosed risk factors;
  • post-operative updates; and
  • other information relevant to case coordination.

C. Travel and Case Coordination Information

We may collect:

  • itinerary information;
  • desired treatment dates;
  • scheduling availability;
  • hotel or accommodation preferences;
  • companion or caregiver information;
  • transportation details; and
  • records related to your case coordination, specialist matching, and operational support.

D. Payment and Transaction Information

When you make a payment or submit billing information, we or our service providers may collect:

  • payer name;
  • billing address;
  • transaction details;
  • partial payment instrument details;
  • payment status; and
  • related fraud-prevention or verification information.

For security reasons, we may use third-party processors and may not store your full payment card number on our own systems.

E. Information Collected Automatically

When you visit our website or interact with our platform, we may automatically collect:

  • IP address;
  • browser type;
  • device identifiers;
  • operating system;
  • referring URLs;
  • access times;
  • site usage data;
  • page interactions;
  • cookie identifiers;
  • approximate geolocation inferred from IP address; and
  • analytics or performance data.

F. Communications and Support Information

We may keep records of:

  • emails;
  • SMS/text messages;
  • WhatsApp messages;
  • call recordings or call logs, where permitted by law;
  • portal messages;
  • support tickets; and
  • other communications with Aesthetica.

G. Information From Third Parties

We may receive information from:

  • independent physicians, clinics, hospitals, labs, pharmacies, and other providers involved in your case;
  • family members, companions, or emergency contacts where appropriate;
  • payment processors;
  • CRM, scheduling, call-center, analytics, and communications vendors;
  • marketing or advertising partners;
  • referral sources; and
  • other service providers who support our operations.

III. How We Collect Information

We collect information:

  • directly from you when you complete forms, communicate with us, make purchases, or otherwise interact with Aesthetica;
  • automatically when you use our website or digital tools through cookies, pixels, analytics tools, logs, and related technologies;
  • from service providers and vendors who support our platform, communications, marketing, payments, or operations; and
  • from independent providers and operational partners involved in delivering or supporting your case coordination.

IV. How We Use Your Information

We may use your information for the following purposes:

A. To Provide and Operate Our Services

We use information to:

  • create and manage your case file;
  • coordinate consultations and introductions to independent providers;
  • organize and transmit records and communications;
  • facilitate scheduling and logistics;
  • support travel and operational planning;
  • process payments and administer checkout flows;
  • provide customer support; and
  • manage post-operative administrative follow-up and related coordination.

B. To Communicate With You

We may use your information to:

  • respond to inquiries;
  • send confirmations, reminders, updates, and notices;
  • communicate by email, phone, SMS/text, WhatsApp, portal, or other channels;
  • follow up regarding intake, scheduling, billing, or case logistics; and
  • send operational or service-related announcements.

C. To Improve Our Website and Services

We may use information to:

  • analyze site performance and user behavior;
  • troubleshoot technical problems;
  • improve workflows, forms, and user experience;
  • audit usage;
  • understand campaign effectiveness; and
  • enhance service quality and operations.

D. For Safety, Fraud Prevention, and Legal Compliance

We may use information to:

  • verify identity;
  • prevent fraud, abuse, and unauthorized transactions;
  • protect Aesthetica, users, and third parties;
  • investigate complaints or incidents;
  • enforce our agreements and policies; and
  • comply with applicable legal, regulatory, and contractual obligations.

E. For Marketing and Communications

Where permitted by law, we may use information to:

  • send newsletters, updates, or promotional communications;
  • personalize content;
  • retarget or measure campaigns;
  • maintain suppression or opt-out lists; and
  • better understand our audience.

You may opt out of marketing communications as described below.

F. To Create Aggregated or De-Identified Information

We may create aggregated, anonymized, or de-identified information that does not reasonably identify you and use it for analytics, reporting, service improvement, and lawful business purposes.

V. Legal Bases for Processing

To the extent applicable under data protection laws such as the LGPD, GDPR, or similar laws, we may process personal data based on one or more of the following legal bases:

  • your consent;
  • performance of a contract or steps requested before entering into a contract;
  • compliance with legal or regulatory obligations;
  • our legitimate interests, provided such interests are not overridden by your rights and freedoms;
  • protection of life, health, or safety; and
  • exercise of rights in judicial, administrative, or arbitral proceedings.

Where consent is required by law, you may withdraw it, subject to legal or operational limitations.

VI. How We Disclose Information

We may disclose your information as follows:

A. Independent Providers and Facilities

We may share information with independent physicians, surgeons, anesthesiologists, clinics, hospitals, labs, pharmacies, recovery partners, and other providers or facilities involved in your case so that they can review information, communicate with you, assess fit, provide estimates, or deliver services directly to you.

B. Operational and Concierge Partners

We may share information with transportation providers, hotels, recovery accommodations, translators, companions, aftercare coordinators, call centers, CRM providers, scheduling vendors, secure storage providers, e-signature providers, and other operational partners as reasonably necessary to coordinate your case.

C. Payment Processors and Financial Service Providers

We may disclose information to third-party payment processors, fraud-screening vendors, banks, and related service providers to process transactions, manage disputes, prevent fraud, and support reconciliation.

D. Affiliates, Advisors, and Service Providers

We may disclose information to our affiliates, contractors, professional advisors, auditors, insurers, consultants, attorneys, accountants, and technology vendors who support our business and are subject to appropriate obligations.

E. Legal and Compliance Purposes

We may disclose information:

  • to comply with legal obligations;
  • to respond to subpoenas, court orders, lawful requests, or regulatory inquiries;
  • to enforce our agreements and policies;
  • to protect the rights, property, or safety of Aesthetica, our users, or others; and
  • in connection with dispute resolution, insurance claims, fraud prevention, or incident response.

F. Business Transfers

In the event of a merger, acquisition, restructuring, financing, sale of assets, or other change in ownership or control, information may be transferred as part of that transaction, subject to applicable law.

G. With Your Direction or Consent

We may disclose information where you instruct us to do so or where you otherwise provide consent.

VII. International Data Transfers

Aesthetica operates in an international medical travel context. As a result, your information may be collected, processed, stored, accessed, or transferred across borders, including between the United States, Brazil, and other jurisdictions reasonably involved in your case, operations, vendors, or support infrastructure.

By using our services and providing your information, you acknowledge that:

  • privacy and data protection standards may differ across jurisdictions;
  • your information may be stored on servers located outside your country of residence;
  • independent providers and operational partners in different countries may receive information relevant to your case; and
  • Aesthetica may rely on contractual, organizational, and technical safeguards to support such transfers where required by law.

VIII. Cookies, Pixels, Analytics, and Similar Technologies

We may use cookies, web beacons, pixels, session tools, analytics technologies, and similar tools to:

  • operate and secure our website;
  • remember preferences;
  • understand traffic and engagement;
  • improve user experience;
  • diagnose errors;
  • measure campaign effectiveness; and
  • support fraud prevention and payment processing.

Some cookies are necessary for website functionality, while others are used for analytics, personalization, or advertising.

You may be able to manage cookie preferences through your browser settings or any cookie management tools made available on our website. Blocking cookies may affect website functionality.

Where required by law, we will provide applicable opt-out or consent controls for non-essential cookies.

IX. Data Retention

We retain personal information for as long as reasonably necessary to:

  • provide services;
  • maintain records;
  • comply with legal, tax, accounting, regulatory, and contractual obligations;
  • resolve disputes;
  • enforce agreements; and
  • support legitimate business and operational needs.

Retention periods may vary depending on:

  • the nature of the data;
  • whether the information relates to an active or closed case;
  • legal and compliance requirements;
  • security needs; and
  • whether deletion has been requested and can be honored under applicable law.

X. Data Security

We implement administrative, technical, and organizational safeguards designed to protect personal information against unauthorized access, loss, misuse, disclosure, alteration, and destruction. These safeguards may include:

  • access controls;
  • role-based permissions;
  • secure storage practices;
  • encryption in transit and, where appropriate, at rest;
  • vendor management;
  • logging and monitoring; and
  • incident response procedures.

However, no data transmission or storage method is completely secure. Therefore, we cannot guarantee absolute security. You are responsible for safeguarding your devices, passwords, and access credentials.

Communications by email, SMS, WhatsApp, and other electronic channels may involve risks, including interception, device access by others, misdelivery, screenshots, metadata exposure, or account compromise.

XI. Your Choices and Rights

Depending on where you live and applicable law, you may have the right to:

  • access personal information we hold about you;
  • request correction of inaccurate information;
  • request deletion of certain information;
  • object to or restrict certain processing;
  • withdraw consent where processing is based on consent;
  • request portability of certain information;
  • opt out of certain marketing communications; and
  • lodge a complaint with a data protection authority or regulator.

We may need to verify your identity before responding to a request. We may deny or limit requests where permitted by law, including where retention is necessary for legal compliance, fraud prevention, payment disputes, recordkeeping, safety, or defense of claims.

Marketing Opt-Out

You may opt out of promotional emails by using the unsubscribe link in the message.
You may opt out of SMS marketing by replying with the applicable opt-out instruction.
Operational messages related to your case, account, scheduling, payments, or service status may still be sent.

XII. California Privacy Rights

If you are a California resident, you may have additional rights under the California Consumer Privacy Act, as amended by the California Privacy Rights Act (collectively, the “CCPA”), subject to applicable exemptions.

Depending on the circumstances, California residents may have the right to:

  • know the categories and specific pieces of personal information collected;
  • know the categories of sources from which personal information is collected;
  • know the business or commercial purposes for collection, use, disclosure, sale, or sharing;
  • know the categories of third parties to whom personal information is disclosed;
  • request deletion;
  • request correction of inaccurate personal information;
  • opt out of the sale or sharing of personal information, if applicable;
  • limit the use of certain sensitive personal information, if applicable; and
  • not be discriminated against for exercising privacy rights.

Certain health-related data and medical information may be exempt from parts of the CCPA under applicable law.

To exercise privacy rights, please contact us using the information in the “Contact Us” section below. We may require you to verify your identity and may require additional information to process your request. You may also use an authorized agent where permitted by law.

XIII. Do Not Track and Global Privacy Control

Some browsers offer “Do Not Track” settings, and some users may enable Global Privacy Control (“GPC”). Because standards and legal treatment vary, our handling of these signals may depend on applicable law, technical configuration, and the specific context in which the signal is received.

Where required by law, we will process legally recognized opt-out preference signals in accordance with applicable requirements.

XIV. Third-Party Websites and Services

Our website or communications may contain links to third-party websites, portals, payment pages, provider sites, social media platforms, or other services not controlled by Aesthetica. We are not responsible for the privacy, security, content, or practices of those third parties. We encourage you to review their privacy notices before providing information to them.

XV. Children

Aesthetica’s services are not directed to children under 18, and we do not knowingly collect personal information from individuals under 18 for use of our services as patients or clients. If we learn that we have collected information from a child in violation of applicable law, we will take reasonable steps to delete it or otherwise address it as required by law.

XVI. Changes to This Privacy Policy

We may revise this Privacy Policy from time to time. When we do, we will post the updated version on our website and update the “Last Updated” date above. If changes are material, we may provide additional notice where required by law.

Your continued use of our website, platform, or services after any update becomes effective constitutes your acknowledgment of the revised Privacy Policy, to the extent permitted by law.

XVII. Contact Us

If you have questions about this Privacy Policy or wish to exercise applicable privacy rights, please contact:

Aesthetica Medical Travel, LLC
Email: concierge@myaestheticahealth.com
Website: myaestheticahealth.com