Privacy Policy
Dr. Frank’s Weight Loss Clinic (“Dr. Frank’s”, “we”, “us”, or “our”)
Last updated: May 2026
⚠️ DRAFT — Pending legal review before go-live
1. Introduction
We recognize that you may be concerned about our use and disclosure of your personal information. Your privacy is very important to us. By using this website (drfranks.com), you are accepting the practices described in this policy.
2. Information We Collect
Website data (collected by Dr. Frank’s)
- Non-personal: domain name, IP address, browser type, operating system, pages visited, referring URL
- Personal (opt-in): name, email address, phone number — collected via contact forms and newsletter sign-up only
Clinical and health data (collected by Hydreight Technologies)
We want to make clear: Dr. Frank’s does not collect personal health information or Protected Health Information (PHI) from website visitors. Clinical data — including your health history, medical intake forms, consultation records, prescription information, and treatment data — is collected and processed directly by Hydreight Technologies Inc. (“Hydreight”), our licensed telehealth platform partner, under their own HIPAA-compliant privacy practices.
Please review Hydreight’s privacy policy at hydreight.com for full details on how your clinical data is collected, stored, and protected.
3. How We Use Your Information
We use collected website data only for:
- Providing and improving our website and services
- Responding to inquiries and providing customer support
- Sending educational or promotional content when you have opted in
- Fulfilling legal and regulatory obligations
We do not sell, rent, or trade your personal information to third parties for marketing purposes.
4. HIPAA and Health Information
Clinical telehealth services available through this website are provided by Hydreight Technologies Inc. and its affiliated licensed physicians and nurse practitioners. Hydreight is a HIPAA Business Associate and maintains administrative, physical, and technical safeguards to protect PHI in accordance with the HIPAA Privacy Rule, Security Rule, and Breach Notification Rule. Dr. Frank’s is not a covered entity under HIPAA with respect to website data collection.
5. Your Rights
Depending on your state of residence, you may have rights to:
- Access and receive a copy of your personal information
- Request correction of inaccurate information
- Request deletion of your personal information
- Opt out of marketing communications at any time
For California residents: additional rights apply under the California Consumer Privacy Act (CCPA) and California Privacy Rights Act (CPRA).
To exercise any of these rights, contact us at: privacy@drfranks.com
For rights related to your clinical health data, contact Hydreight directly via their privacy policy page.
6. SMS Communications
Mobile opt-in and information obtained for SMS consent purposes are not shared with any third parties or affiliates for marketing purposes.
7. Cookies
We may use cookies and similar technologies to improve your experience on our website. You may disable cookies in your browser settings; however, some features may not function properly.
8. Contact Us
If you have questions about this Privacy Policy, contact us at:
- Email: privacy@drfranks.com
- Website: drfranks.com
⚠️ This policy is a working draft pending final legal review. All clinical data handling is governed by Hydreight Technologies’ HIPAA-compliant privacy infrastructure.