Privacy Policy
Effective date: April 4, 2026
Estrelis.ai ("Estrelis," "we," "us," or "our") operates a cloud-based healthcare equipment planning platform at app.estrelis.ai. This Privacy Policy explains how we collect, use, store, and protect information when you use our platform and website.
1. Information We Collect
We collect the following categories of information:
- Account information — your name, email address, and organizational affiliation, provided during the invitation and onboarding process.
- Project data — equipment lists, budgets, room plans, building information, and other healthcare equipment planning data you create or upload.
- Uploaded files — photographs (including 360-degree panoramic images), documents, spreadsheets, and other files you upload to the platform or capture through our mobile app.
- Mobile app data — equipment photographs and 360-degree panoramic images captured using your device camera or connected Insta360 camera, stored temporarily on-device before uploading to the platform.
- Device and sensor data — Bluetooth and local Wi-Fi network information used solely to discover and connect to Insta360 cameras for 360-degree photo capture. This data is processed on-device only and is not transmitted to our servers.
- Usage data — server logs, page views, feature usage, browser type, IP address, and application performance metrics, collected automatically when you interact with the platform or mobile app.
- Contact form submissions — name, email, and message content submitted through our website contact form.
- Website analytics data — pages visited, referral sources, device type, browser, approximate location, session recordings, clicks, and scroll behavior, collected automatically via cookies and tracking scripts on our marketing website.
2. How We Use Your Information
We use the information we collect to:
- Provide, operate, and maintain the Estrelis platform and its features.
- Authenticate your identity and manage access to your organization's projects.
- Communicate with you about your account, including service updates, security alerts, and support responses.
- Improve the platform based on usage patterns and feedback.
- Protect the security and integrity of our systems and your data.
- Comply with legal obligations.
3. Data Storage and Security
Your data is hosted on Microsoft Azure cloud infrastructure located in the United States. All data is encrypted in transit using TLS and encrypted at rest using Azure's built-in encryption. We implement access controls, audit logging, and security monitoring to protect your information.
While we take reasonable measures to protect your data, no method of electronic storage or transmission is completely secure. We cannot guarantee absolute security.
4. Third-Party Services
We use the following third-party services to operate our platform:
- Microsoft Azure — cloud hosting, database, file storage, authentication, email delivery (via Azure Communication Services), and application performance monitoring (via Application Insights).
- Insta360 (Arashi Vision Inc.) — our iOS app integrates the Insta360 Camera SDK to enable 360-degree photo capture using compatible Insta360 cameras. The SDK communicates directly between your device and the camera over Bluetooth and Wi-Fi. No data is sent to Insta360 servers.
- Formspree — processes contact form submissions on our marketing website.
- Google Analytics (Google LLC) — website traffic analysis, pageview tracking, and audience insights on our marketing website.
- Microsoft Clarity (Microsoft Corporation) — session recordings, heatmaps, and user interaction analysis on our marketing website.
We do not sell, rent, or share your personal information with third parties for their marketing purposes. Third-party services receive only the data necessary to perform their function and are bound by their own privacy policies.
5. Mobile Application
Our iPad application ("Estrelis Inventory") provides field teams with equipment inventory and 360-degree room capture capabilities. The app collects and processes the following data:
- Camera and photos — the app uses your device camera to photograph equipment during inventory walks. Photos are uploaded to our Azure cloud storage and associated with the relevant project.
- 360-degree camera (Insta360) — the app connects to compatible Insta360 cameras via Bluetooth Low Energy (BLE) for discovery and Wi-Fi Direct for photo transfer. Captured panoramic images are stitched on-device, then uploaded to our cloud storage. The Insta360 SDK operates entirely on-device; no data is sent to Insta360 servers.
- Bluetooth and local networking — used solely for discovering and connecting to Insta360 cameras. We do not scan for or collect information about other nearby Bluetooth devices.
- On-device storage — captured photos are queued locally in the app's sandboxed storage until uploaded. Successfully uploaded photos are automatically deleted from the device after 24 hours. The local queue may temporarily hold up to 20GB of panoramic images.
The app requires authentication via your organization's identity provider. All data transmitted between the app and our servers is encrypted using TLS.
6. Cookies and Authentication
Our marketing website (www.estrelis.ai) uses analytics cookies from Google Analytics and Microsoft Clarity to understand website usage and improve our content. Our platform (app.estrelis.ai) uses only essential cookies and local storage for authentication, including session tokens managed by Microsoft Authentication Library (MSAL) and JWT tokens for client portal access. We do not use advertising cookies or tracking pixels.
7. Data Retention
We retain your account information and project data for as long as your account is active or as needed to provide services to your organization. If you or your organization requests account deletion, we will remove your personal information within 30 days, except where retention is required by law or for legitimate business purposes (such as resolving disputes or enforcing agreements).
8. Your Rights
You have the right to:
- Access the personal information we hold about you.
- Correct inaccurate or incomplete information.
- Delete your personal information, subject to legal and contractual obligations.
- Export your project data in standard formats.
To exercise any of these rights, contact us at info@estrelis.ai. We will respond to requests within 30 days.
9. Children's Privacy
Estrelis is a business-to-business platform and is not directed at individuals under the age of 18. We do not knowingly collect personal information from children.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we make changes, we will update the effective date at the top of this page. For material changes, we will notify affected users via email or through the platform. Your continued use of Estrelis after changes are posted constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or our data practices, contact us at:
Estrelis.ai
Email: info@estrelis.ai
Website: www.estrelis.ai