Privacy Policy

R3Medical.com

Effective Date: April 8, 2026

Last Updated: April 8, 2026

1. Introduction

Welcome to R3Medical.com (“we,” “us,” or “our”). We are a medical tourism company connecting patients with medical and dental treatment options in the United States, Mexico and Turkey. We are committed to protecting your personal information and your right to privacy.

This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website R3Medical.com (the “Site”), contact us, or engage with our services. Please read this policy carefully. If you do not agree with the terms of this Privacy Policy, please discontinue use of our Site.

This policy is designed to comply with applicable U.S. laws including the Health Insurance Portability and Accountability Act (HIPAA), as well as the European Union General Data Protection Regulation (GDPR) for visitors located in the European Economic Area (EEA).

2. Information We Collect

We collect several types of information from and about users of our Site:

2.1 Personal Identification Information

  • Full name
  • Email address
  • Phone number
  • Mailing address
  • Date of birth
  • Nationality and country of residence

2.2 Health and Medical Information

Because we are a medical tourism company, you may voluntarily provide us with health-related information in order to receive a consultation or referral. This may include:

  • Medical history and current diagnoses
  • Current medications and treatment history
  • Physician or specialist referral information
  • Insurance information (if applicable)
  • Specific medical conditions for which you seek treatment

This information constitutes Protected Health Information (PHI) under HIPAA and special category data under the GDPR, and it is handled with the highest level of care and confidentiality.

2.3 Usage and Technical Data

  • IP address and browser type
  • Device identifiers and operating system
  • Pages visited, time spent, and referring URLs
  • Cookies and similar tracking technologies

2.4 Communications Data

  • Messages submitted through contact or inquiry forms
  • Email correspondence with our team
  • Records of telephone consultations (with your consent)

3. How We Use Your Information

We use the information we collect for the following purposes:

  • To respond to your inquiries and provide personalized consultation regarding treatment options
  • To connect you with partner clinics and medical providers in the United States and Mexico
  • To schedule appointments, arrange travel logistics, and coordinate medical care
  • To send you relevant health information, treatment updates, and follow-up communications
  • To comply with legal and regulatory obligations including HIPAA and applicable international law
  • To improve and optimize our website and services
  • To send marketing and promotional communications (only with your consent, and you may opt out at any time)
  • To detect and prevent fraud or unauthorized access

We will never sell your personal or medical information to third parties for marketing purposes.

4. HIPAA Compliance (U.S. Patients)

As a company that handles health-related information in connection with medical services, R3Medical.com takes its obligations under the Health Insurance Portability and Accountability Act (HIPAA) seriously.

4.1 Protected Health Information (PHI)

Any health information you share with us that can be used to identify you is treated as PHI. We use and disclose PHI only as permitted by HIPAA, including:

  • For treatment purposes, such as sharing your information with a treating physician or clinic
  • For healthcare operations, such as quality improvement and care coordination
  • As required by law, such as reporting to public health authorities
  • With your written authorization for any other disclosures

4.2 Your HIPAA Rights

You have the right to:

  • Access and obtain a copy of your PHI that we hold
  • Request corrections to inaccurate or incomplete PHI
  • Request an accounting of disclosures of your PHI
  • Request restrictions on how your PHI is used or disclosed
  • Receive this notice in a format accessible to you

To exercise any of these rights, please contact us at info@r3stemcell.com.

4.3 Business Associates

We may engage third-party service providers (“Business Associates”) who assist us in providing services. These parties are contractually required to safeguard your PHI in accordance with HIPAA through a Business Associate Agreement (BAA).

5. GDPR Compliance (EEA Residents)

If you are located in the European Economic Area (EEA), the General Data Protection Regulation (GDPR) applies to our processing of your personal data.

5.1 Legal Basis for Processing

We rely on the following legal bases to process your personal data:

  • Consent: You have given clear, informed consent for us to process your data for a specific purpose (e.g., receiving a consultation or marketing emails)
  • Contract: Processing is necessary to fulfill our services to you
  • Legal Obligation: Processing is required to comply with applicable law
  • Vital Interests: In limited circumstances, to protect your vital interests or those of another person
  • Legitimate Interests: Where processing is in our legitimate business interests and does not override your fundamental rights

For health data specifically, we rely on your explicit consent or the necessity of processing for preventive or occupational medicine purposes, subject to appropriate safeguards.

5.2 Your GDPR Rights

As an EEA resident, you have the following rights regarding your personal data:

  • Right of Access: Request a copy of the personal data we hold about you
  • Right to Rectification: Request correction of inaccurate or incomplete data
  • Right to Erasure (“Right to be Forgotten”): Request deletion of your data, subject to legal obligations
  • Right to Restrict Processing: Request that we limit how we use your data
  • Right to Data Portability: Receive your data in a structured, machine-readable format
  • Right to Object: Object to processing based on legitimate interests or for direct marketing
  • Rights Related to Automated Decision-Making: We do not use automated decision-making or profiling that produces legal effects

To exercise any of these rights, contact us at info@r3stemcell.com. We will respond within 30 days. You also have the right to lodge a complaint with your local data protection supervisory authority.

5.3 International Data Transfers

As a medical tourism company operating across the U.S.-Mexico border, your data may be transferred to and processed in countries outside the EEA, including the United States and Mexico. When we transfer your data internationally, we ensure appropriate safeguards are in place, including:

  • Standard Contractual Clauses approved by the European Commission
  • Adequacy decisions where applicable
  • Explicit consent for transfers involving health data

6. Disclosure of Your Information

We may share your information with the following categories of recipients, only as described and permitted by this policy:

  • Partner Clinics and Physicians: Medical providers in the U.S. and Mexico with whom we coordinate your care, subject to appropriate confidentiality agreements
  • Travel and Logistics Partners: Service providers assisting with travel arrangements for your medical trip
  • Technology Providers: Hosting, email, CRM, and communications platforms that help us operate our Site (governed by data processing agreements)
  • Legal and Regulatory Authorities: When required by law, subpoena, or court order
  • Business Transfers: In the event of a merger, acquisition, or asset sale, your information may be transferred with appropriate notice to you

We require all third parties to treat your personal and health information as confidential and to use it only for the specific purpose for which it is shared.

7. Cookies and Tracking Technologies

Our Site uses cookies and similar tracking technologies to enhance your experience and understand how our Site is used.

  • Essential Cookies: Required for the Site to function properly
  • Analytics Cookies: Help us understand visitor behavior (e.g., Google Analytics). These may be disabled without affecting core functionality
  • Marketing Cookies: Used to deliver relevant advertisements. We obtain your consent before placing these cookies

You can control cookies through your browser settings or by using our cookie consent tool on the Site. Disabling certain cookies may affect your experience on the Site.

8. Data Retention

We retain your personal and health information for as long as necessary to fulfill the purposes outlined in this policy, including compliance with legal, accounting, or reporting requirements.

  • Patient medical records and communications are retained for a minimum of 7 years, or longer if required by applicable law
  • Marketing contact information is retained until you withdraw consent or request deletion
  • Website usage data is retained for up to 24 months

When data is no longer needed, it is securely deleted or anonymized.

9. Data Security

We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. These measures include:

  • Encryption of data in transit (SSL/TLS) and at rest
  • Access controls limiting PHI to authorized personnel only
  • Regular security assessments and staff training
  • Secure data storage with reputable, HIPAA-compliant vendors

While we take every reasonable precaution, no transmission of data over the internet is 100% secure. If you have concerns about the security of your information, please contact us immediately at info@r3stemcell.com.

In the event of a data breach that affects your rights or freedoms, we will notify you and relevant authorities as required by applicable law (within 72 hours under GDPR, and as required under HIPAA Breach Notification Rules).

10. Children's Privacy

Our Site and services are not directed to individuals under the age of 18. We do not knowingly collect personal information from children. If you believe a minor has submitted personal information to us, please contact us at info@r3stemcell.com and we will promptly delete such information.

11. Third-Party Links

Our Site may contain links to third-party websites, including partner clinics or health resources. We are not responsible for the privacy practices of those sites. We encourage you to review the privacy policies of any third-party sites you visit.

12. Your Choices and Opt-Out Rights

You have choices about how we use your information:

  • Marketing Emails: You may unsubscribe from marketing communications at any time by clicking “Unsubscribe” in any email or by contacting us directly
  • Cookies: You may disable non-essential cookies through your browser or our cookie tool
  • Data Access/Deletion: Contact us at info@r3medical.com to access, correct, or request deletion of your data
  • Withdrawal of Consent: Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of prior processing

13. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make material changes, we will update the “Last Updated” date at the top of this page and, where required by law, notify you by email or prominent notice on our Site.

Your continued use of the Site after changes are posted constitutes your acceptance of the revised policy.

14. Contact Us

If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

 

R3Medical.com

Email: info@r3medical.com

Website: www.R3Medical.com

 

For GDPR-related inquiries, you may also contact your local data protection authority. For HIPAA-related inquiries, you may file a complaint with the U.S. Department of Health and Human Services Office for Civil Rights at www.hhs.gov/ocr.

Scroll to Top