Privacy Policy
Updated: June 25, 2025
1. Introduction
This Privacy Policy describes how MARIA AI, a service offered by TABOX PR LLC, collects, uses, and discloses personal and sensitive information, ensuring compliance with relevant privacy and health data laws.
2. Data We Collect
Personal Identifiers: Full name, email, phone number.
Technical Data: IP address, device/browser, cookies, click and behavior tracking (GA4/Meta Pixel/TikTok Pixel).
Usage Data: Interaction logs with AI assistant across platforms like WhatsApp, IG, FB, TikTok, YouTube and Website.
PHI (if applicable): Health-related data submitted via forms only on Plus and Professional plans.
3. How We Use the Data
Operational: Booking demos, support, AI-driven engagement.
Optimization: Improve user experience, AI performance, and platform reliability.
Marketing: Communication, offers, and retargeting (only with explicit consent).
Compliance & Security: Fraud prevention, legal obligations.
Health-related processing: PHI is processed only under HIPAA-compliant infrastructure for Plus/Professional plans.
4. Plans & Compliance
Starter Plan: Non-HIPAA. Users must not submit PHI.
Plus & Professional Plans: HIPAA-compliant with BAAs, encryption, audit logs, restricted access, and secure vendor integrations.
5. Data Sharing
We do not sell personal data. Shared only with:
Service Providers: GoHighLevel, WhatsApp API, Stripe, Make, OpenAI, N8N, Keragon, Typeform, Meta, Google, TikTok—under BAAs for PHI processing.
Legal & transactional requirements: Courts, law enforcement, mergers.
Analytics & marketing partners: Only if consented.
6. Data Retention
Personal data retained for as long as needed for platform operation or compliance.
PHI only stored for the duration of the HIPAA plan. Then securely deleted or anonymized.
7. Your Rights
You have rights to access, correct, delete, restrict usage, or port data. You may withdraw consent at any time.
8. International Transfers
Data may be transferred to servers in the U.S. and Puerto Rico. For PHI, these transfers comply with HIPAA safeguards and are covered under BAAs.
9. Security Measures
HIPAA infrastructure: AES-256 encryption at rest and in transit, strict access controls, audit logs, intrusion detection systems.
BAAs in place with all PHI-handling vendors.
10. Cookies & Tracking
We deploy cookies for essential, performance, functional, and marketing purposes. PHI and analytics are separated; tracking only activated once consent is granted. See our Cookie Policy.
11. Legal Bases
Consent (for marketing/tracking).
Contractual necessity (service delivery).
Legitimate interests (security, optimization).
Legal obligations (HIPAA, TCPA).
12. Changes to This Policy
Material updates will be notified via email or banner alert before going into effect.
13. Contact
Email: [email protected]
Privacy Policy
Updated: June 25, 2025
1. Introduction
This Privacy Policy describes how MARIA AI, a service offered by TABOX PR LLC, collects, uses, and discloses personal and sensitive information, ensuring compliance with relevant privacy and health data laws.
2. Data We Collect
Personal Identifiers: Full name, email, phone number.
Technical Data: IP address, device/browser, cookies, click and behavior tracking (GA4/Meta Pixel/TikTok Pixel).
Usage Data: Interaction logs with AI assistant across platforms like WhatsApp, IG, FB, TikTok, YouTube and Website.
PHI (if applicable): Health-related data submitted via forms only on Plus and Professional plans.
3. How We Use the Data
Operational: Booking demos, support, AI-driven engagement.
Optimization: Improve user experience, AI performance, and platform reliability.
Marketing: Communication, offers, and retargeting (only with explicit consent).
Compliance & Security: Fraud prevention, legal obligations.
Health-related processing: PHI is processed only under HIPAA-compliant infrastructure for Plus/Professional plans.
4. Plans & Compliance
Starter Plan: Non-HIPAA. Users must not submit PHI.
Plus & Professional Plans: HIPAA-compliant with BAAs, encryption, audit logs, restricted access, and secure vendor integrations.
5. Data Sharing
We do not sell personal data. Shared only with:
Service Providers: GoHighLevel, OpenAI, WhatsApp API, Stripe, Make, N8N, Keragon, Typeform, Meta, Google, TikTok—under BAAs for PHI processing.
Legal & transactional requirements: Courts, law enforcement, mergers.
Analytics & marketing partners: Only if consented.
6. Data Retention
Personal data retained for as long as needed for platform operation or compliance.
PHI only stored for the duration of the HIPAA plan. Then securely deleted or anonymized.
7. Your Rights
You have rights to access, correct, delete, restrict usage, or port data. You may withdraw consent at any time.
8. International Transfers
Data may be transferred to servers in the U.S. and Puerto Rico. For PHI, these transfers comply with HIPAA safeguards and are covered under BAAs.
9. Security Measures
HIPAA infrastructure: AES-256 encryption at rest and in transit, strict access controls, audit logs, intrusion detection systems.
BAAs in place with all PHI-handling vendors.
10. Cookies & Tracking
We deploy cookies for essential, performance, functional, and marketing purposes. PHI and analytics are separated; tracking only activated once consent is granted. See our Cookie Policy.
11. Legal Bases
Consent (for marketing/tracking).
Contractual necessity (service delivery).
Legitimate interests (security, optimization).
Legal obligations (HIPAA, TCPA).
12. Changes to This Policy
Material updates will be notified via email or banner alert before going into effect.
13. Contact
Email: [email protected]
MARIA AI | Copyrights© 2025 | Terms & Conditions | Cookies Policy | Privacy Policy