top of page
PRIVACY POLICY
Privacy Policy
Effective Date: June 1, 2023
Last Updated: June 30, 2026
This Privacy Policy describes how Nude Medical Aesthetics, Inc. and its affiliated professional medical corporation, Nude Medical Group, P.C. (together, "Nude Medical," "we," "us," or "our"), collect, use, disclose, and protect information about visitors to www.nudemedical.com and any related web pages, online booking tools, intake forms, and digital communications that link to this Policy (collectively, the "Site"). Please read this Policy carefully so you understand our practices regarding your information and how we treat it.
Nude Medical Aesthetics, Inc. is a management services organization that operates the Nude Medical brand and the Site. Licensed medical and aesthetic services are furnished by Nude Medical Group, P.C. and its licensed professionals. Our principal place of business is located at 1300 First Street, Suite 252, Napa, California 94559.
Important: Website Information vs. Protected Health Information. Medical information that you provide in connection with treatment by Nude Medical Group, P.C. (for example, in your patient chart or during a clinical consultation) is "protected health information" governed by the Health Insurance Portability and Accountability Act (HIPAA) and the California Confidentiality of Medical Information Act (CMIA). Our handling of that information is described in our separate Notice of Privacy Practices, not in this Policy. This Privacy Policy governs information collected through the Site, including information you submit before you become a patient.
1. Scope and Acceptance
This Policy applies to personal information we collect through the Site and through online interactions that reference this Policy. It does not apply to:
-
Protected health information governed by HIPAA and CMIA, which is addressed in our Notice of Privacy Practices;
-
Information collected offline or through channels that do not link to this Policy; or
-
The privacy practices of any third party, including third parties whose websites or services may be linked from the Site.
By accessing or using the Site, you acknowledge that you have read and understood this Policy. If you do not agree with our practices, please do not use the Site.
2. Information We Collect
We collect information that identifies, relates to, describes, references, is reasonably capable of being associated with, or could reasonably be linked, directly or indirectly, with a particular consumer or device ("personal information"). We collect personal information in the following categories, as those categories are defined under the California Consumer Privacy Act, as amended by the California Privacy Rights Act (collectively, the "CCPA").
CCPA CategoryCollected?Examples
A. IdentifiersYesName, postal address, email address, telephone number, IP address, and similar identifiers you provide through forms or that are collected automatically.
B. Customer records (Cal. Civ. Code § 1798.80(e))YesName, contact information, and similar information you submit through inquiry, booking, or intake forms.
C. Protected classification characteristicsYes, in limited casesAge or date of birth, and other characteristics you choose to share when requesting a consultation or service.
D. Commercial informationYesRecords of services inquired about or booked, appointment history submitted through the Site, and product or service interests.
E. Biometric informationNoWe do not collect biometric identifiers through the Site.
F. Internet or network activityYesBrowsing and interaction data, pages viewed, referring URLs, and information collected through cookies and similar technologies.
G. Geolocation dataYes, approximateGeneral location inferred from IP address. We do not collect precise geolocation through the Site without your permission.
H. Audio, visual, or similar informationYes, if you provide itPhotographs or images you choose to upload (for example, with a consultation request) and recordings of calls where lawful and disclosed.
I. Professional or employment informationYes, if you applyInformation submitted if you apply for a position through the Site.
J. Education informationNoWe do not collect education records through the Site.
K. InferencesYesInferences drawn from the above to reflect preferences and interests, for example to tailor content or communications.
2.1 Sensitive Personal Information
The CCPA recognizes a subset of personal information as "sensitive personal information." Through the Site, we may collect the following sensitive personal information when you choose to provide it:
-
Account log-in credentials, if you create an account;
-
Information concerning your health, to the extent you describe a condition, concern, area of interest, or goal when requesting a consultation or service through the Site. Where this information is collected in the course of treatment, it is protected health information governed by HIPAA and CMIA rather than this Policy.
We use and disclose sensitive personal information only for the purposes permitted by the CCPA, such as performing the services you request, ensuring security and integrity, and other purposes that do not require an option to limit under the CCPA. We do not use or disclose sensitive personal information for purposes of inferring characteristics about you.
3. How We Collect Information
We collect personal information from the following sources:
-
Directly from you, when you complete a form, request a consultation or appointment, subscribe to communications, contact us, or otherwise interact with the Site.
-
Automatically, through cookies, pixels, and similar technologies as you navigate the Site, as described in Section 7.
-
From service providers and third parties, such as analytics providers, scheduling and communications platforms, hosting providers, and advertising partners that help us operate the Site and reach prospective patients.
4. How We Use Your Information
We use the personal information we collect for the following business and commercial purposes:
-
To respond to your inquiries and provide the information, consultations, or services you request;
-
To schedule, confirm, reschedule, and follow up on appointments;
-
To operate, maintain, secure, and improve the Site and our services;
-
To send administrative messages, service updates, and, where permitted, marketing and promotional communications about Nude Medical;
-
To personalize content and understand how visitors use the Site;
-
To detect, prevent, and address security incidents, fraud, and unlawful activity;
-
To comply with applicable legal obligations and enforce our terms and agreements; and
-
For any other purpose disclosed to you at the time of collection or to which you consent.
We will not collect additional categories of personal information or use the personal information we collected for materially different, unrelated, or incompatible purposes without providing you notice.
5. How We Disclose Your Information
We may disclose personal information for business purposes to the following categories of recipients:
-
Service providers and contractors that perform functions on our behalf, such as website hosting and platform services (Wix), analytics (Google Analytics and Wix Analytics), scheduling, customer communications, payment facilitation, and marketing, and that are contractually limited in how they may use the information.
-
Advertising partners and networks, such as Meta and Google, that receive certain online identifiers and activity data through advertising and retargeting technologies on the Site in order to deliver relevant advertising to you on and off the Site. These disclosures may constitute "sharing" for cross-context behavioral advertising under the CCPA.
-
Affiliated entities, including Nude Medical Group, P.C. and Nude Medical Aesthetics, Inc., for the purposes described in this Policy.
-
Professional advisors, such as attorneys, accountants, and insurers, where reasonably necessary.
-
Legal and safety recipients, such as law enforcement, regulators, or courts, when we believe disclosure is required by law, legal process, or to protect rights, property, or safety.
-
Successors, in connection with a merger, acquisition, financing, reorganization, or sale of assets, in which personal information may be transferred as a business asset.
We do not sell your personal information for money. However, because the Site uses advertising and retargeting technologies, our disclosure of online identifiers and activity data to advertising partners is considered "sharing" for cross-context behavioral advertising under the CCPA. You have the right to opt out of this sharing, as described in Sections 9 and 10.
6. Categories Disclosed in the Preceding Twelve Months
In the twelve months preceding the effective date of this Policy, we may have disclosed the following categories of personal information for a business purpose: identifiers (Category A); customer records (Category B); commercial information (Category D); internet or network activity (Category F); approximate geolocation (Category G); and inferences (Category K). We disclosed these categories to the categories of recipients described in Section 5.
In the same period, we shared the following categories for cross-context behavioral advertising with advertising partners and networks: identifiers (Category A), internet or network activity (Category F), and inferences (Category K). We did not sell personal information for money, and we did not knowingly share the personal information of consumers under 16 years of age.
7. Cookies and Similar Technologies
We and our partners use cookies, web beacons, pixels, tags, and similar technologies ("cookies") to operate the Site, remember your preferences, measure performance, and, where applicable, support advertising. Cookies fall into the following general categories:
-
Strictly necessary cookies, required for the Site to function and that cannot be switched off in our systems.
-
Performance and analytics cookies, which help us understand how visitors interact with the Site so we can improve it.
-
Functional cookies, which remember choices you make to provide enhanced features.
-
Advertising cookies, which may be set by us or our advertising partners to build a profile of your interests and show relevant content on and off the Site.
You can control cookies through your browser settings and through the cookie consent banner provided on the Site via our website platform, Wix. Disabling certain cookies may affect Site functionality. The Site currently uses Wix Analytics and Google Analytics for performance and analytics, and advertising and retargeting technologies, such as the Meta Pixel and Google Ads remarketing, to deliver relevant advertising on and off the Site.
8. Do Not Track and Global Privacy Control
Some browsers transmit "Do Not Track" signals. Because there is no common industry standard for responding to those signals, the Site does not currently respond to them. However, we honor the Global Privacy Control (GPC) and other recognized opt-out preference signals as a valid request to opt out of the sale or sharing of personal information for the browser or device from which the signal is sent, to the extent required by the CCPA.
9. Your California Privacy Rights
If you are a California resident, the CCPA provides you with the rights described below regarding your personal information, subject to certain exceptions. These rights generally do not apply to medical information governed by CMIA or to protected health information governed by HIPAA.
9.1 Right to Know and Access. You have the right to request that we disclose, for the 12 months preceding your request, the categories of personal information we collected about you, the categories of sources, the business or commercial purpose for collecting it, the categories of third parties to whom we disclosed it, and the specific pieces of personal information we collected.
9.2 Right to Delete. You have the right to request that we delete personal information we collected from you, subject to exceptions that permit us to retain information, for example, to complete a transaction, provide a service you requested, comply with a legal obligation, or for internal uses reasonably aligned with your expectations.
9.3 Right to Correct. You have the right to request that we correct inaccurate personal information that we maintain about you, taking into account the nature of the information and the purposes of processing.
9.4 Right to Opt Out of Sale or Sharing. You have the right to opt out of the sale or sharing of your personal information. To exercise this right, see Section 10, "Do Not Sell or Share My Personal Information."
9.5 Right to Limit Use of Sensitive Personal Information. Because we use sensitive personal information only for purposes that are exempt from the right to limit under the CCPA, we are not required to offer a separate "Limit the Use of My Sensitive Personal Information" option. If our practices change, we will update this Policy and provide the option as required.
9.6 Right to Non-Discrimination. We will not discriminate against you for exercising any of your CCPA rights. We will not deny you services, charge different prices, or provide a different level of quality because you exercised your rights, except as permitted by law.
9.7 How to Exercise Your Rights. You or your authorized agent may submit a request to know, delete, correct, or opt out by:
-
Email: hello@nudemedical.com
-
Mail: Nude Medical Aesthetics, Inc., Attn: Privacy, 1300 First Street, Suite 252, Napa, California 94559
-
Telephone: (707) 602-3809
To protect your information, we will take steps to verify your identity before responding, which may include matching information you provide with information in our records. For requests to delete or correct, we may require additional verification. We will respond to verifiable requests consistent with the timeframes required by the CCPA, generally within 45 days, with one extension where reasonably necessary.
You may designate an authorized agent to make a request on your behalf. We may require the agent to provide proof of authorization and may require you to verify your own identity directly with us or to confirm that you provided the agent permission to submit the request.
9.8 Notice of Financial Incentives. We do not offer financial incentives, or price or service differences, in exchange for the collection, sale, sharing, or retention of personal information.
10. Do Not Sell or Share My Personal Information
We do not sell personal information in exchange for money. However, because the Site uses advertising and retargeting technologies, our disclosure of online identifiers and activity data to advertising partners constitutes "sharing" of personal information for cross-context behavioral advertising under the CCPA. You have the right to opt out. You can exercise this right by:
-
Using the "Do Not Sell or Share My Personal Information" link in the Site footer;
-
Enabling the Global Privacy Control in a supported browser or extension, as described in Section 8; or
-
Contacting us using the methods in Section 9.7.
We will process opt-out requests within the timeframe required by law and will not require you to create an account to submit one.
11. California "Shine the Light" Disclosure
California Civil Code Section 1798.83 permits California residents to request certain information regarding our disclosure of personal information to third parties for those third parties' own direct marketing purposes. We do not disclose personal information to third parties for their own direct marketing purposes. To make a request regarding this disclosure, contact us using the methods in Section 9.7.
12. Medical Information, CMIA, and HIPAA
Nude Medical Group, P.C. is a health care provider. Medical information that we create, receive, maintain, or transmit in the course of providing care is governed by HIPAA and the California Confidentiality of Medical Information Act, not by this Policy. The way we may use and disclose that information, and your rights regarding it, are described in our Notice of Privacy Practices, which is available upon request and at our office.
Information you submit through the Site before establishing a treatment relationship, such as a general consultation request, is governed by this Policy. Once you become a patient, information relating to your care is handled under our Notice of Privacy Practices. Please do not include detailed medical history or other sensitive health information in general Site forms or unencrypted email.
13. Text Messaging and Marketing Communications
If you provide your mobile number and consent to receive text messages, we and our communications providers may send you appointment, service, and, where you opt in, marketing messages. Message and data rates may apply. Message frequency varies. You can opt out of text messages at any time by replying STOP, and you can get help by replying HELP. Opting out of marketing messages does not stop transactional messages necessary to provide a service you requested.
You may unsubscribe from marketing emails at any time by using the unsubscribe link in the message or by contacting us. We will continue to send non-promotional messages related to your requests and our services.
Consent to receive marketing text messages is not a condition of purchasing any goods or services.
14. Data Retention
We retain personal information for as long as reasonably necessary to fulfill the purposes described in this Policy, including to provide the services you request, maintain business records, resolve disputes, and comply with our legal obligations. When personal information is no longer needed, we take reasonable steps to delete or de-identify it. Retention periods for medical records are governed by applicable health care record-retention laws and our Notice of Privacy Practices.
15. Data Security
We maintain reasonable administrative, technical, and physical safeguards designed to protect personal information against unauthorized access, use, alteration, and destruction. However, no method of transmission over the internet or method of electronic storage is completely secure, and we cannot guarantee absolute security. You are responsible for keeping any account credentials confidential.
16. Third-Party Links and Services
The Site may contain links to third-party websites, platforms, and services that we do not control, including social media, scheduling, payment, and review platforms. This Policy does not apply to those third parties, and we are not responsible for their privacy practices. We encourage you to review the privacy policies of any third party before providing information to it.
17. Children's Privacy
The Site is intended for adults and is not directed to children under 13, and we do not knowingly collect personal information from children under 13 through the Site. We do not knowingly sell or share the personal information of consumers under 16 without affirmative authorization as required by the CCPA. If you believe a child has provided us personal information through the Site, please contact us so we can take appropriate action.
18. Visitors Outside California
The Site is operated from the United States and is intended for users located in the United States. If you access the Site from outside the United States, you understand that your information may be processed in the United States, where data protection laws may differ from those in your jurisdiction.
19. Changes to This Policy
We may update this Policy from time to time. When we do, we will revise the "Last Updated" date above and, where appropriate, provide additional notice. Your continued use of the Site after the effective date of an updated Policy constitutes your acknowledgment of the updated terms. We encourage you to review this Policy periodically.
20. How to Contact Us
If you have questions about this Policy or our privacy practices, or if you wish to exercise your rights, please contact us:
Nude Medical Aesthetics, Inc.
Attention: Privacy Officer
1300 First Street, Suite 252, Napa, California 94559
Email: hello@nudemedical.com
Telephone: (707) 602-3809
Website: www.nudemedical.com
bottom of page
