Privacy Policy

Last updated: February 25, 2026

NoelX LLC (“NoelX,” “we,” “us,” or “our”) operates the NoelX Patient Communication Platform. This Privacy Policy describes how we collect, use, and protect information in connection with our SMS-based patient communication services provided to medical spas and aesthetic practices.

Information We Collect

We collect the following categories of information, which are provided to us by our medical spa clients during the normal course of their patient intake process:

  • Contact information: Mobile phone numbers and first names of patients.
  • Treatment history categories: General treatment categories relevant to follow-up communications (e.g., “Botox,” “laser treatment”). We do not collect specific medical records, diagnoses, or detailed clinical information.
  • Appointment dates: Dates of past and upcoming appointments used for scheduling reminders and follow-ups.
  • Opt-in and consent records: Documentation that the patient has consented to receive SMS communications.

This information is collected by the medical spa during the patient intake process and uploaded to the NoelX platform by the medical spa. NoelX does not collect information directly from patients.

How We Use Information

We use the information described above solely to provide our SMS-based patient communication services on behalf of our medical spa clients. Specifically, we use this information to:

  • Send appointment reminders to patients on behalf of their medical spa.
  • Send treatment follow-up messages to support patient care and recovery.
  • Send reactivation outreach to patients who have not visited their medical spa in a defined period.
  • Process opt-out requests and maintain compliance with messaging regulations.

Information Sharing

We do not sell, rent, or share personal information, including mobile phone numbers, with third parties for their marketing or promotional purposes.

We may share information with service providers who help us deliver our messaging services (e.g., telecommunications providers) solely for the purpose of message delivery. These service providers are contractually prohibited from using the information for any purpose other than delivering messages on our behalf.

Opt-In Data

Text messaging originator opt-in data and consent information will not be shared with any third parties.

Data Security

We maintain HIPAA-aligned security practices to protect patient information. Our security measures include:

  • Encryption of all data at rest and in transit.
  • Role-based access controls to limit data access to authorized personnel only.
  • Regular security audits and vulnerability assessments.
  • Secure data centers with physical and logical access protections.
  • Employee training on data privacy and security best practices.

Data Retention

Patient data is retained only while the medical spa is an active NoelX client. Upon termination of a medical spa’s account, all associated patient data is permanently deleted within 30 days.

Patients who opt out of messaging by replying STOP have their phone numbers added to our suppression list to ensure compliance. The suppression list entry is retained to prevent future messages from being sent to opted-out numbers.

Your Rights

You have the right to:

  • Opt out of SMS messages at any time by replying STOP to any message you receive.
  • Request information about the data we hold about you by contacting us at support@noelx.co.
  • Request deletion of your personal data by emailing support@noelx.co. We will process deletion requests within 30 days.

Changes to This Policy

We may update this Privacy Policy from time to time. Any changes will be posted on this page with an updated “Last updated” date. We encourage you to review this page periodically. Your continued use of our services after any changes constitutes acceptance of the updated policy.

Contact Us

If you have questions about this Privacy Policy, please contact us:

NoelX LLC

Email: support@noelx.co

Website: https://noelx.co