Privacy Policy

At Medtiles, we respect your privacy and appreciate the trust you place in us. Please know that we are strongly committed to keeping any information we obtain about you secure. In this Privacy Policy, we explain who we are, how we collect your data, the purposes for which we may use your data, how we process it, with whom we share it, how long we retain it, as well as the ways to contact us and exercise your rights as a data subject. This privacy policy applies to the practices relating to personal data in all our services: i) Medtiles website (https://med.tiles-ai.com); ii) Medtiles mobile application; iii) all communication channels we provide to users, namely email, and other interactions of Medtiles with the users of the website and application. By visiting or otherwise using the Platform, you are accepting the Platform's Terms of Use and consenting to Medtiles' practices of collection, use, and disclosure, and other activities described in this Privacy Policy, and any additional privacy statements that may be posted in a specific part of the Platform. If you do not accept and consent, you should discontinue use of the Platform and uninstall all respective downloads and applications.

What are personal data?

In this privacy policy, "Personal Data" is understood in the exact terms as described in the General Data Protection Regulation (GDPR): "Personal data, information relating to an identified or identifiable natural person ('data subject'); an identifiable natural person is one who can be identified, directly or indirectly, in particular by reference to an identifier such as a name, an identification number, location data, an online identifier or to one or more factors specific to the physical, physiological, genetic, mental, economic, cultural or social identity of that natural person." To use our platforms, certain personal data is requested from you, which we collect and process, such as email, gender, specialty, and photograph.

When do we collect personal data?

  • Personal data that you provide when you create an account or register on the platform. When you create an account, you are asked for personal data, which may include email, gender, specialty, and photograph. After completing the registration process, you can at any time add additional information to your profile, update, or rectify the personal data you have provided to us.

  • Personal data that you provide when you update your Account.

  • Personal data that you provide when you participate in a survey or promotion. Please note that we do not collect data in an automated manner.

Who is the Data Controller of your personal data?

Your personal data is processed by Medtiles, Lda., a legal entity with the number 518216039, headquartered at Tâmega Park Mercúrio Fração AC: Telões, 4600-758 Amarante. Medtiles is the data controller in the sense of the General Data Protection Regulation. For questions related to the processing of your personal data, you should contact us through the following means: Phone: +351 917983448 (Call to the national fixed network. Tariff dependent on the agreement between the client and the operator.) Address: Tâmega Park Mercúrio Fração AC Telões, 4600-758 Amarante Email: info@tiles-ai.com

Legitimacy for the processing of personal data

All personal data collected is essential for the operation of our services, so if you wish to use the services we provide, you will be asked for personal data. The provision of your personal data is essential for us to proceed with your request, i.e., the processing is necessary for the execution of pre-contractual or contractual diligences with Medtiles. Your data will be retained for this purpose as long as the contractual relationship lasts or, in the case of account deletion, for 5 years, except for any legal obligation that may require us to store it for a longer period.

Personal Information We Collect

We collect personal information related to the user ("Personal Information") in the following ways:

Personal Information Provided by the User

We collect Personal Information if the user creates an account to use our Services or communicates with us in the following ways:

  • Account Information: When you create an account with us, we collect information associated with your account, including your name, contact information, and account credentials (collectively, "Account Information").

  • User Content: When you use our Services, we collect Personal Information that is included in the entries, file uploads, or comments you provide to our Services ("Content").

  • Communication Information: If you communicate with us, we collect your name, contact information, and the content of any messages you send ("Communication Information").

  • Social Media Information: We have pages on social media sites such as Instagram and LinkedIn. When you interact with our social media pages, we collect Personal Information that you choose to provide to us, such as your contact details (collectively, "Social Information"). Additionally, the companies that host our social media pages may provide us with aggregated information and analytics about our social media activity.

  • Other Information Provided by the User: We collect other information that you may provide to us, for example, when you participate in our events or surveys, or when you provide information to establish your identity (collectively, "Other Information Provided").

Personal Information We Receive Automatically from Your Use of the Services

When you visit, use, or interact with the Services, we receive the following information about your visit, use, or interaction ("Technical Information"):

  • Log Data: Information that your browser or device automatically sends when you use our Services. Log data includes your Internet Protocol address, browser type and settings, the date and time of your request, and how you interact with our Services.

  • Usage Data: We may automatically collect information about your use of the Services, such as the types of content you view or engage with, the features you use, and the actions you take, as well as your time zone, country, access dates and times, user agent and version, computer or mobile device type, and your connection to the computer.

  • Device Information: Includes the name of the device, operating system, device identifiers, and the browser you are using. The information collected may depend on the type of device you use and its settings.

  • Cookies: We use cookies to operate and manage our Services and improve your experience. A "cookie" is a piece of information sent to your browser by a website you visit. You can configure your browser to accept all cookies, reject all cookies, or notify you whenever a cookie is offered, allowing you to decide each time whether to accept it. However, refusing a cookie may, in some cases, prevent you from using or negatively affect the viewing or functioning of a website or certain areas or functionalities of a website. For more information about cookies, visit All About Cookies.

  • Analytics: We may use a variety of online analytics products that use cookies to help us analyze how users use our Services and improve your experience when using the Services.

Information Medtiles Collects from Partners and Other Sources

We may collect Personal Data that you have provided to our affiliates, business partners, and/or related companies for the purposes defined below.

Medtiles is not responsible and cannot be held liable for the accuracy of the information provided by third parties or for the policies or practices of third parties. Generally, Medtiles collects Personal Data directly from you. If any third parties possess the information that Medtiles needs, we will make all efforts to ensure that the information was collected with your consent.

Specifically, we may collect and use Personal Data that is aggregated and anonymized (the "Analytical Information") from our affiliates, business partners, and/or related companies for various commercial purposes, including but not limited to, allowing us to provide the Platform.

This Analytical Information, being aggregated and anonymized, is no longer considered Personal Data, as it cannot be used, alone or in combination with other information, to identify an individual. We may use this Analytical Information in various ways, namely to help us analyze website traffic, understand user needs and trends, and improve our products and services. We may use this information alone or aggregate it with other information we have obtained from third parties.

How We Use Personal Information

We may use the Personal Information for the following purposes:

  • To provide, administer, maintain, and/or analyze the Services;

  • To improve our Services and conduct research;

  • To communicate with the user, including sending information about our Services and events;

  • To develop new programs and services;

  • To prevent fraud, criminal activities, or misuse of our Services and to protect the security of our IT systems, architecture, and networks;

  • To effect commercial transfers; and

  • To comply with legal obligations and legal processes and to protect our rights, privacy, security, or property, and/or those of our affiliates, the user, or other third parties.

Aggregated or Anonymized Personal Data

In the normal course of our activities, we may aggregate or anonymize personal data so that it can no longer be used to identify the user, and use this information to analyze the effectiveness of our Services, to improve and add functionalities to our Services, to conduct research, and for other similar purposes.

Additionally, we may occasionally analyze the general behavior and characteristics of the users of our Services and share aggregated information, such as general user statistics, with third parties, publish this aggregated information, or make this aggregated information generally available, which will always be done in a pseudonymized manner. We may collect aggregated information through the Services, through cookies, and through other means described in this Privacy Policy.

Throughout this process, we will always adopt irreversible anonymization procedures, except in cases specifically provided by law or arising from legal obligations to which we are subject.

As mentioned above, we may use the Content you provide to improve our Services, for example, to train the models that power ChatGPT. If you wish, you can refuse the use of your Content to train our models by sending an email to info@tiles-ai.com.

Why We Collect Personal Data

We collect Personal Data for purposes related to the management and development of our businesses and operations, including but not limited to:

  • Establishing, managing, and terminating commercial relationships with you.

  • Reviewing the products and services we provide to you or that you provide to us.

  • Communicating and sending selected information related to healthcare, technology, employment, among others, including emails, newsletters, alerts, notifications, including those from our clients and partners, which may include advertising for medications and/or other products, in accordance with Decree-Law 176/2006 and Regulation 44/CD/2008 of Infarmed.

  • Informing you about our products and services beyond those specifically requested by you.

  • Identifying and analyzing trends and patterns related to our activities and operations for market study purposes.

  • Providing you with the Platform.

  • Creating aggregated information or Analytical Information that does not identify you individually.

  • Complying with applicable law or regulatory requirements.

  • Any other reasonable purpose for which you give your consent.

In addition to the above, we may also use and disclose your Personal Data for other purposes, which will be indicated before the time of collection.

How We Will Use Your Personal Data

Medtiles may collect and use Personal Data in the circumstances described above. The Personal Data collected by Medtiles is used solely for the purposes identified at the time of collection, as described in the Privacy Policy, or for other purposes that are indicated to you and for which you give your consent.

We may also use your Personal Data to investigate security breaches or collaborate with government authorities in the context of legal issues or obligations to which we are subject.

Medtiles is committed to complying with European Anti-Spam Legislation. In the case of personal contact information provided in conjunction with any newsletter or other marketing initiatives, you can cancel your consent to receive these communications and unsubscribe from any Medtiles subscriptions at any time by contacting us via our email.

Additionally, any commercial electronic communications sent by Medtiles that you have subscribed to will contain a mechanism to unsubscribe.

If you decide to invite a colleague to use the Platform through our Invite Colleagues functionality, we will collect your name, phone number, and email address, as well as the name, phone number, and email address of the recipient. We will automatically send your colleague an email and SMS simultaneously to invite them to use the Platform. We do not use the names or email addresses submitted under these circumstances for any other purpose without your consent or the consent of the recipient. To ensure compliance with the obligations under European anti-spam legislation, you must ensure that you only submit email addresses of individuals with whom you have a personal or family relationship and who wish to receive your message.

We reserve the right to send you transactional or informational emails, such as customer service emails related to products you have indicated you use or changes to the site or policies.

How Your Personal Data is Disclosed

In addition to the purposes described above, we may disclose Personal Data for purposes related to:

  • Management and development of Medtiles' activities and operations.

  • Management of your Account.

  • Provision of the Platform.

  • Establishment and maintenance of a responsible commercial relationship with you.

  • Creation of aggregated information or Analytical Information that does not identify you individually.

  • Communication with you on topics related to your Account, the Platform, and other matters related to Medtiles.

  • Information about our products and services beyond those specifically requested by you.

  • Identification and analysis of trends and patterns related to our activities and operations for market study purposes.

  • Interaction with you on social networks.

  • Other purposes indicated at the time of collection of Personal Data, or as permitted or required by law or any legal obligation to which we are subject.

Personal Data is disclosed to third parties for the purposes described above, including but not limited to:

  • A third party, in the event of a change of ownership, in whole or in part, of Medtiles through any form of merger, purchase, sale, lease, or integration or other commercial agreement, provided that the parties are bound by appropriate agreements or obligations that require them to use or disclose your Personal Data in accordance with the provisions of use and disclosure of this Privacy Policy, unless you indicate otherwise.

  • Third-party service providers, affiliates, and associated companies, including an organization or individual to whom Medtiles outsources functions on its behalf or with whom it contracts (Subcontractor for the purposes of the GDPR).

  • Any third party, when you give your consent for such disclosure or when the disclosure is required or permitted by law.

Medtiles may use and disclose certain Personal Data to third-party service providers and affiliates in the context of performing certain technological or administrative functions, such as data management.

Before proceeding with this disclosure, Medtiles will take appropriate measures to ensure that third-party service providers protect Personal Data and use it only for the authorized purposes established in this Privacy Policy or in accordance with applicable laws.

What are my rights as a data subject?

At any time, you can request us to:

  • Access the information we have about you;

  • Rectify the information if it is incorrect or incomplete;

  • Object to the processing of your personal data;

  • Delete or limit the processing of your personal data.

Please note that in certain cases (for example, due to legal requirements) your request may not be immediately satisfied.

In any case, you will be informed of the measures taken in this regard, within a maximum period of one month from the moment the request is made.

You also have the right to file a complaint with the National Data Protection Commission.

Consent for the processing of personal data?

The source of legitimacy for Medtiles to collect and process your personal data is the execution of a contractual relationship.

Nevertheless, whenever we consider collecting additional personal data for purposes other than the exclusive execution of the contractual relationship, be aware that we will focus on using or disclosing these personal data only when we have your consent to do so or as provided in this Privacy Policy.

If Medtiles is required by applicable laws to obtain your explicit consent for the collection, use, or disclosure of your Sensitive Personal Data (i.e., personal data that reveals your social or ethnic origin, political opinions, religious or philosophical beliefs, or trade union membership, as well as the processing of data relating to health, among others), this consent will be requested at the appropriate time, in a positive, concrete, informed, and explicit manner. Additionally, if we plan to use or disclose your Personal Data for a purpose not previously indicated (either in this Privacy Policy or separately), we will inform you of that purpose before the use or disclosure in question and request your consent (if necessary).

We may collect, use, or disclose your Personal Data without your consent when permitted or required by applicable law or regulatory requirements.

You can change or cancel your consent at any time, without prejudice to legal or contractual restrictions and upon written request, preferably sent by email to the address info@tiles-ai.com.

How do we protect Personal Data?

Medtiles will protect Personal Data using methods that are appropriate to the level of sensitivity of the information. Specifically, Medtiles takes the following measures to protect any Personal Data it collects:

  • Protection of the confidentiality of all Personal Data when dealing internally or externally with other organizations.

  • And protection of all Personal Data with appropriate and effective security, including physical, administrative, and technological security measures, against risks such as loss or theft, unauthorized access, disclosure, copying, use, or destruction, regardless of the format in which the Personal Data is held.

How do we store Personal Data?

Medtiles collects and stores your information on secure servers in the European Union. If you are one of our foreign visitors, your data may be collected and stored on secure external servers that comply with the laws and policies of your country.

How to correct incorrect Personal Data?

It is important that any Personal Data about you held by Medtiles is correct and up-to-date. We therefore need you to keep us informed of any changes to your Personal Data. You can rectify any inaccuracies by accessing and modifying the information provided in your Account, or by sending an email to info@tiles-ai.com.

How long does Medtiles retain personal data?

Medtiles stores personal data in accordance with its legal or commercial practices. If you choose to delete your account, your personal data will be deleted, unless there is a legal obligation that requires us to retain it. When personal data is no longer necessary for the fulfillment of legal obligations, it is securely destroyed or anonymized. Without prejudice, Medtiles may retain anonymized data for analytical and/or statistical purposes.

How to access your personal data?

Any data you provide to Medtiles can be accessed and modified from your Account. If you remove data from your profile, it will no longer appear to you or to other people using the Platform. Backup copies of these data will continue to be associated with your Account on our archive servers until they are deleted according to our data retention schedule. You can also request access to the personal data we hold about you. If you wish to review, verify, or correct your personal data, you should send us a written request to the email address info@tiles-ai.com. When making an access request, we may need specific information to confirm your identity and your right of access, and also to search for and provide you with the personal data we hold about you. As a data subject, you can exercise the right to the portability of your data. This means you can send us a written request to transmit your personal data to a third party. It is possible that Medtiles may not be able to provide you with access to your personal data in situations where this refusal is permitted or required by applicable legislation or regulatory requirements. Medtiles will inform you of the reasons why, in accordance with any legal or regulatory restrictions, access was refused.

Information provided by the user

When using our services, you can upload documents, images, and notes, and exchange messages with other users or groups of users. All information provided by the user must comply with the legislation, and the user is solely responsible for the uploaded content. Any identifying information must be removed from any file that is uploaded. Uploading identification data of any third parties is not permitted. Any and all uploaded content is the sole and entire responsibility of the user who uploaded it, and the user may be held civilly and criminally liable for uploading unauthorized content or content that may constitute illegal and/or criminal practices. If Medtiles considers that the user has violated any legal provision or this privacy policy, it may block and/or delete the user, preventing the use of the application and/or the services provided.

Your obligations as a user

As a user, you have certain obligations towards other users with whom you communicate. Some of these obligations are imposed by applicable law and regulations, while others have become common and are part of good practices. You must, at all times, respect the terms and conditions of the Privacy Policy in force and the Terms of Use agreement. This includes respecting all intellectual property rights that may belong to third parties (such as images and videos). You may not upload or otherwise disclose any information that may be considered injurious, defamatory, violent, offensive, racist, sexist, or xenophobic, or that may otherwise violate the purpose and spirit of our services and the community of users thereof. You may not provide information to Medtiles and/or other users that you believe may be injurious or harmful to your personal, professional, or social status. If we become aware that a user is harassing, defrauding, or spamming other members, that user will be removed or suspended from the network. Any violation of these guidelines may lead to the restriction, suspension, or cancellation of your Account by Medtiles, as we take these principles seriously and consider them to be the foundation of our users' adherence to the Platform.

How to Deactivate Your Account?

At any time, you can deactivate your Account by sending us an email to info@tiles-ai.com. By doing so, the data that can identify you will be removed from the Account. Medtiles may continue to use non-identified data.

How to Contact Us?

For more information about Medtiles' Privacy Policy, to change or cancel your consent, or to file a complaint or suggestion regarding this Privacy Policy, you can contact: Address: Medtiles, Lda. Tâmega Park Mercúrio Fração AC Telões, 4600-758 Phone number: +351 917983448 Email address: info@tiles-ai.com

Portuguese Data Protection Supervisory Authority:

National Data Protection Commission Address: Rua de São Bento n.º 148-3º 1200-821 Lisboa, Portugal Phone number: +351 213928400 Email address: geral@cnpd.pt Website: https://www.cnpd.pt/

Review of this Privacy Policy

Medtiles may change this Privacy Policy over time. The use of the information we collect now is subject to the Privacy Policy in effect at the time the information in question is used. If we make changes to how we use Personal Data, we will notify you in writing through (1) email (always to the address you provided); or (2) posting on the website; or (3) the Mobile Application. Users are bound by any changes to this Privacy Policy when using the Platform after being informed of these changes.

Do You Have Any Questions?

If you have any questions regarding the processing of your personal data, or if you wish to exercise any of your rights, please contact us:

  • By phone: +351 917983448 (Call to the national fixed network. Tariff dependent on the agreement between the customer and the operator.)

  • By email: info@tiles-ai.com