Privacy Policy

Updated: June 25, 2025

1. Introduction

This Privacy Policy describes how MARIA AI, a service offered by TABOX PR LLC, collects, uses, and discloses personal and sensitive information, ensuring compliance with relevant privacy and health data laws.

2. Data We Collect

Personal Identifiers: Full name, email, phone number.

Technical Data: IP address, device/browser, cookies, click and behavior tracking (GA4/Meta Pixel/TikTok Pixel).

Usage Data: Interaction logs with AI assistant across platforms like WhatsApp, IG, FB, TikTok, YouTube and Website.

PHI (if applicable): Health-related data submitted via forms only on Plus and Professional plans.

3. How We Use the Data

Operational: Booking demos, support, AI-driven engagement.

Optimization: Improve user experience, AI performance, and platform reliability.

Marketing: Communication, offers, and retargeting (only with explicit consent).

Compliance & Security: Fraud prevention, legal obligations.

Health-related processing: PHI is processed only under HIPAA-compliant infrastructure for Plus/Professional plans.

4. Plans & Compliance

Starter Plan: Non-HIPAA. Users must not submit PHI.

Plus & Professional Plans: HIPAA-compliant with BAAs, encryption, audit logs, restricted access, and secure vendor integrations.

5. Data Sharing

We do not sell personal data. Shared only with:

Service Providers: GoHighLevel, WhatsApp API, Stripe, Make, OpenAI, N8N, Keragon, Typeform, Meta, Google, TikTok—under BAAs for PHI processing.

Legal & transactional requirements: Courts, law enforcement, mergers.

Analytics & marketing partners: Only if consented.

6. Data Retention

Personal data retained for as long as needed for platform operation or compliance.

PHI only stored for the duration of the HIPAA plan. Then securely deleted or anonymized.

7. Your Rights

You have rights to access, correct, delete, restrict usage, or port data. You may withdraw consent at any time.

8. International Transfers

Data may be transferred to servers in the U.S. and Puerto Rico. For PHI, these transfers comply with HIPAA safeguards and are covered under BAAs.

9. Security Measures

HIPAA infrastructure: AES-256 encryption at rest and in transit, strict access controls, audit logs, intrusion detection systems.

BAAs in place with all PHI-handling vendors.

10. Cookies & Tracking

We deploy cookies for essential, performance, functional, and marketing purposes. PHI and analytics are separated; tracking only activated once consent is granted. See our Cookie Policy.

11. Legal Bases

Consent (for marketing/tracking).

Contractual necessity (service delivery).

Legitimate interests (security, optimization).

Legal obligations (HIPAA, TCPA).

12. Changes to This Policy

Material updates will be notified via email or banner alert before going into effect.

13. Contact

Email: [email protected]

Privacy Policy

Updated: June 25, 2025

1. Introduction

This Privacy Policy describes how MARIA AI, a service offered by TABOX PR LLC, collects, uses, and discloses personal and sensitive information, ensuring compliance with relevant privacy and health data laws.

2. Data We Collect

Personal Identifiers: Full name, email, phone number.

Technical Data: IP address, device/browser, cookies, click and behavior tracking (GA4/Meta Pixel/TikTok Pixel).

Usage Data: Interaction logs with AI assistant across platforms like WhatsApp, IG, FB, TikTok, YouTube and Website.

PHI (if applicable): Health-related data submitted via forms only on Plus and Professional plans.

3. How We Use the Data

Operational: Booking demos, support, AI-driven engagement.

Optimization: Improve user experience, AI performance, and platform reliability.

Marketing: Communication, offers, and retargeting (only with explicit consent).

Compliance & Security: Fraud prevention, legal obligations.

Health-related processing: PHI is processed only under HIPAA-compliant infrastructure for Plus/Professional plans.

4. Plans & Compliance

Starter Plan: Non-HIPAA. Users must not submit PHI.

Plus & Professional Plans: HIPAA-compliant with BAAs, encryption, audit logs, restricted access, and secure vendor integrations.

5. Data Sharing

We do not sell personal data. Shared only with:

Service Providers: GoHighLevel, OpenAI, WhatsApp API, Stripe, Make, N8N, Keragon, Typeform, Meta, Google, TikTok—under BAAs for PHI processing.

Legal & transactional requirements: Courts, law enforcement, mergers.

Analytics & marketing partners: Only if consented.

6. Data Retention

Personal data retained for as long as needed for platform operation or compliance.

PHI only stored for the duration of the HIPAA plan. Then securely deleted or anonymized.

7. Your Rights

You have rights to access, correct, delete, restrict usage, or port data. You may withdraw consent at any time.

8. International Transfers

Data may be transferred to servers in the U.S. and Puerto Rico. For PHI, these transfers comply with HIPAA safeguards and are covered under BAAs.

9. Security Measures

HIPAA infrastructure: AES-256 encryption at rest and in transit, strict access controls, audit logs, intrusion detection systems.

BAAs in place with all PHI-handling vendors.

10. Cookies & Tracking

We deploy cookies for essential, performance, functional, and marketing purposes. PHI and analytics are separated; tracking only activated once consent is granted. See our Cookie Policy.

11. Legal Bases

Consent (for marketing/tracking).

Contractual necessity (service delivery).

Legitimate interests (security, optimization).

Legal obligations (HIPAA, TCPA).

12. Changes to This Policy

Material updates will be notified via email or banner alert before going into effect.

13. Contact

Email: [email protected]

MARIA AI | Copyrights© 2025 | Terms & Conditions | Cookies Policy | Privacy Policy