PRIVACY POLICY

Effective Date: February 11, 2026

Introduction

Unicorns & Robots Inc. ("we", "us", "our", "UMPH") respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, store, and safeguard your information when you use the UMPH mobile app, website, and related services (collectively, the "Services").

By accessing or using the Services, you agree to the terms of this Privacy Policy. If you do not agree, please do not use our Services.

Who This Policy Applies To

This Privacy Policy applies to:

  • Individuals who use UMPH as a user, client or patient ("User")
  • Individuals whose data is collected through UMPH for appointments or consultations
  • Individuals whose data is processed through UMPH's Services

What Information We Collect

We collect information that helps us operate the Services safely and effectively.

A. Information You Provide

  • Account Data: name, email address, phone number, date of birth, gender, profile photo
  • Health & Skin Data: skin analysis results, questionnaire responses, medical conditions, allergies, treatment history
  • Appointment & Clinic Information: appointment dates, clinic selected, practitioner notes
  • Payment & Billing Information: transaction details, billing address (we do not store full payment card numbers)
  • Feedback & Communications: messages, support requests, reviews

B. Automatically Collected Data

  • Device and connection information (e.g., IP address, device ID)
  • Usage patterns within the Services (e.g., pages visited, features used)
  • Location information, if you permit it

C. Derived and AI-Generated Information

  • AI-generated insights from your skin data
  • Risk scores or recommendations from automated processing

How We Use Your Information

We use your data for the following purposes:

A. To Provide and Operate the Services

  • Manage your account and preferences
  • Schedule and confirm appointments
  • Share relevant health data with the clinic you choose
  • Provide skin insights and treatment suggestions

B. To Communicate With You

  • Appointment reminders
  • Service updates
  • Support responses

C. To Improve and Personalise

  • Improve app performance
  • Personalise recommendations
  • Understand feature usage

D. For Security and Legal Compliance

  • Fraud detection
  • Prevent abuse and enforce our Terms
  • Comply with applicable law

How and When We Share Your Information

We do not sell your personal data to third parties.

A. With Clinics / Practitioners

When you book an appointment or consent, we share necessary clinical data with the specific clinic or practitioner you select to enable:

  • Consultation
  • Treatment planning
  • Follow-ups

This includes skin analysis reports, medical responses, and appointment history.

B. With Service Providers

We share your data with trusted service providers who support:

  • Hosting
  • Analytics
  • Communications
  • Secure payment processing

These providers act only as processors and must protect your data.

C. With Legal Authorities (If Required)

We may disclose data to comply with legal obligations or to protect UMPH's rights.

Legal Basis for Processing

We rely on appropriate legal grounds depending on your location, which may include:

  • Contract performance – providing Services
  • Consent – e.g., medical data sharing
  • Legitimate interests – security, fraud prevention
  • Legal compliance – meeting regulatory obligations

How We Protect Your Data

We implement reasonable technical and organisational safeguards, including:

  • Encryption in transit and at rest
  • Secure servers
  • Access controls
  • Monitoring and threat detection

However, no method of transmission over the internet is 100% secure. While we strive to protect your information, we cannot guarantee absolute security.

Your Rights and Choices

Depending on your jurisdiction, you may have the right to:

  • Access your personal data
  • Correct inaccurate information
  • Delete or restrict processing
  • Opt out of marketing communications
  • Withdraw previously given consents

To exercise these rights, contact us at team@umph.ai

Data Retention

We retain personal data only as long as necessary for:

  • Providing the services you requested
  • Legal compliance
  • Resolving disputes and enforcing agreements

After this, we securely delete or anonymise it.

Children's Privacy

Our Services are intended for people over 18. We do not knowingly collect personal data from minors under 18. If we learn data from a minor was collected, we will delete it promptly.

International Data Transfers

Your information may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place to protect your data in accordance with this privacy policy and applicable laws.

Cookie & Tracking Notice

We use cookies and similar technologies to:

  • Remember your settings
  • Measure usage
  • Personalise content

You can control cookie preferences through your device or browser.

International Data Transfers

Your data may be processed or stored outside your country. We implement legal safeguards (e.g., adequate protections) where required.

Third-Party Links

Our Services may link to third-party sites or services. We are not responsible for their privacy practices. Review their privacy policies separately.

Changes to This Policy

We may update this Privacy Policy to reflect changes in our data practices or legal requirements. Significant changes will be communicated via in-app notice or email.

Consent Confirmation

By using UMPH, you acknowledge that you have read and understood this Privacy Policy and consent to the processing practices described herein.

Contact Information

If you have questions, concerns, or requests about this Privacy Policy or your data, you can contact:

Email: team@umph.ai