Skip to main content

Privacy Policy

Last updated: June 11, 2026

Synaptis Technologies LLC (“Company,” “we,” “our,” “us”) is committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use and share it, and the rights you have over your data. By using our website at synaptisusa.com or any of our services, you agree to this policy.

1. Information We Collect

1.1 Information you provide

  • Contact and account data — name, email address, phone number, organization, job title, and any content you submit through forms.
  • Payment data — billing address and payment method (processed by Stripe; we do not store full card numbers).
  • Communications — messages, support tickets, feedback, and survey responses.

1.2 Information collected automatically

  • Usage and log data — IP address, browser type, referring URL, pages visited, timestamps, and error logs.
  • Cookies and similar technologies — see our Cookie Policy (/cookies) for full detail.
  • Device data — operating system, screen resolution, and hardware identifiers for security and compatibility purposes.

1.3 Protected Health Information (PHI)

When Synaptis provides services under a HIPAA Business Associate Agreement (BAA), we process PHI strictly as a Business Associate under 45 CFR Part 160 and 164. PHI is:

  • Never used for advertising, model training on external corpora, or any purpose outside the covered services;
  • Encrypted at rest (AES-256) and in transit (TLS 1.3+);
  • Subject to access controls enforcing minimum-necessary access;
  • Logged in a tamper-evident PHI audit trail.

If you are a healthcare organization or covered entity, please execute a BAA before using any service that involves PHI. Contact trust@synaptisusa.com.

2. How We Use Your Information

  • Provide, operate, and improve our platforms and services;
  • Process transactions and send related communications;
  • Send service announcements, security alerts, and support messages;
  • With your consent, send marketing communications (opt-out any time);
  • Monitor and analyze usage to improve performance and security;
  • Comply with legal obligations and enforce our agreements.

We do not sell personal information to third parties.

3. Sharing Your Information

We share data only in the following circumstances:

  • Service providers — vendors acting as processors under a Data Processing Agreement (DPA): cloud infrastructure, payment processing, email delivery, analytics. See our Subprocessor List (/trust/subprocessors).
  • Legal requirements — when required by law, regulation, court order, or to protect the rights and safety of Synaptis, its customers, or the public.
  • Business transfers — in connection with a merger, acquisition, or asset sale, subject to the same privacy commitments.
  • With your consent — for any other purpose with your explicit consent.

4. Data Retention

We retain personal data for as long as necessary to provide services and fulfill the purposes described here, unless a longer retention period is required or permitted by law. Ambient audio recordings associated with AXIFI clinical sessions are deleted after 48 hours per our data-destruction policy. De-identified or aggregated data may be retained indefinitely.

5. Your Rights

Depending on your jurisdiction, you may have rights to:

  • Access the personal data we hold about you;
  • Correct inaccurate data;
  • Request deletion of your data (subject to legal retention obligations);
  • Restrict or object to certain processing;
  • Data portability in a structured, machine-readable format;
  • Withdraw consent at any time where processing is consent-based;
  • Lodge a complaint with a supervisory authority (EU/EEA residents).

To exercise these rights, email hello@synaptisusa.com. We respond within 30 days.

6. International Transfers

Our infrastructure is primarily located in the United States. If you are located in the EU/EEA or another jurisdiction with data-transfer restrictions, we transfer data under Standard Contractual Clauses (SCCs) or equivalent approved mechanisms. Enterprise customers may request a DPA with region-specific data-residency commitments.

7. Security

We implement administrative, technical, and physical safeguards including encryption at rest (AES-256) and in transit (TLS 1.3+), role-based access controls, multi-factor authentication, and annual third-party penetration testing. See the Security page for detail. No system is completely secure; if you believe your account has been compromised, contact security@synaptisusa.com immediately.

8. Children

Our services are not directed to individuals under 18. We do not knowingly collect personal information from children. If we learn that we have, we will delete it promptly.

9. Changes to This Policy

We may update this policy periodically. We will notify you of material changes by email or prominent notice on our website at least 30 days before the change takes effect. Continued use after the effective date constitutes acceptance.

10. Contact Us

Synaptis Technologies LLC1309 Coffeen Ave STE 18826Sheridan, WY 82801hello@synaptisusa.com