Privacy policy
Last updated August 2026
1. Two kinds of information
This policy covers two separate things, and it matters which is which.
Site information is what you give us here — your name, email address, practice name and anything you type into a form. We are the controller of that information.
Patient information is data a customer practice makes available to us so we can contact its patients and manage its schedule. We process that information only as a business associate, on that practice’s instructions and under a Business Associate Agreement. The practice, not Funnel Dynamics, is the covered entity. If you are a patient with a question about your own records, contact your provider directly.
2. What we collect on this site
Information you submit: name, work email address, practice or organization, practice type, provider count and any message you write.
Basic technical information your browser sends: IP address, user agent, referring page and the pages you view. We use it to keep the site working and to understand which pages are read.
We do not sell information collected on this site, and we do not share it with advertisers.
3. How we use it
To reply to your request, schedule a demo and carry on a sales conversation you started.
To keep the site secure and diagnose problems.
To send you a follow-up about a request you made. We will not add you to a general marketing list without asking.
4. How long we keep it
Site enquiries are retained for as long as the conversation is active and for up to 24 months afterwards, then deleted.
Patient information processed on behalf of a customer is retained under that customer’s agreement, and returned or deleted when the agreement ends.
5. Who else sees it
Service providers who help us run the site and our email — hosting, email delivery and analytics — under contract, and only for those purposes.
A current list of subprocessors that handle patient information is available on request and is provided before contract signature.
We will disclose information if required by law, and will tell the affected customer unless we are legally prohibited from doing so.
6. Security
Encryption in transit and at rest, role-based access controls, audit logging and segregated customer environments. The security page sets out the detail, including our HIPAA posture and current audit status.
7. Your choices
You can ask us what site information we hold about you, ask us to correct it, or ask us to delete it. Write to us at the address below and we will respond within 30 days.
Residents of jurisdictions with additional statutory rights — including California and the EU/UK — may exercise those rights through the same address, and we will not treat you differently for doing so.
For patient information, direct requests to the practice that holds the relationship with you; we will support them in responding.
8. Children
This site is intended for practice operators, not for children, and we do not knowingly collect information from children through it.
9. Changes
If we make a material change to this policy we will update the date above and, where the change affects an active customer, tell them directly.
Contact
Privacy questions, access requests and deletion requests: hello@funneldynamics.com. For how we handle patient data on behalf of practices, see the security and compliance page.