Privacy Policy
How we collect, use, protect, and retain your information when you use our website and newsletters.
The key points, before the legal detail.
- We collect minimal data. Mostly your email when you subscribe to a newsletter, plus basic site analytics.
- We never share with sponsors or sell to anyone. Sponsors only get aggregate metrics — never your email or identity.
- We use trusted third parties like Flodesk for email delivery — each with their own privacy practices.
- You have rights. Access, correction, deletion, opt-out — covered under GDPR and other applicable data protection laws.
- Questions? Email support@medaptly.com. We respond within 48 hours.
01Introduction & Scope
At Medaptly, we are committed to protecting your privacy and personal information. This Privacy Policy explains how we collect, use, and safeguard your information when you visit our website, read our free content, or subscribe to our newsletters.
Medaptly is based in Dubai, United Arab Emirates. Our data handling practices align with the EU General Data Protection Regulation (GDPR), the UK GDPR, the California Consumer Privacy Act (CCPA), and other relevant data protection frameworks where applicable.
By using the website and newsletters (collectively, the “Services”), you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Services.
02Information We Collect
We collect information necessary to provide our educational content. The type of information we collect depends on how you interact with Medaptly:
a) Newsletter subscriptions
- Email address
- Specialty preference (which newsletter(s) you subscribe to)
- Name (if you choose to provide it)
- Email engagement data (open rates, click rates)
b) Communications
- Records of any correspondence when you email us or contact our support channels
We do not knowingly collect sensitive personal data (health records, religious beliefs, biometric data, etc.) and ask that you do not submit such information to us.
03Newsletter & Sponsor Data Practices
Medaptly’s weekly newsletters may, in the future, contain clearly labeled sponsored content. Your privacy is fully protected in relation to newsletter sponsorship:
- Your email address is never shared with sponsors. Sponsors do not receive subscriber lists, email addresses, or any personally identifiable information.
- Sponsors receive only aggregated, anonymized performance metrics (e.g., total open rates, total click rates) — never individual-level data.
- We do not sell, rent, or trade subscriber data to any third party for marketing purposes.
- You may unsubscribe from any newsletter at any time using the link provided in every email.
In short: sponsors pay to be included in the newsletter. They never see who you are, what you clicked, or how to reach you individually.
04How We Use Your Information
We use the personal data we collect for the following purposes:
- To deliver the newsletters you subscribe to, including segmentation by specialty preference
- To respond to your enquiries, support requests, and feedback
- To improve our content, website performance, and overall service quality
- To send transactional and service updates related to subscriptions you’ve opted into
- To analyze aggregate, anonymized usage patterns for product and editorial decisions
- To detect and prevent fraud, abuse, or violations of our Terms of Use
- To comply with applicable legal obligations
We will never use your information to send unsolicited marketing emails for newsletters you have not subscribed to.
05Legal Bases for Processing (GDPR)
For users in the European Economic Area, the United Kingdom, or other jurisdictions where similar frameworks apply, we rely on the following legal bases to process your personal data:
- Consent — for newsletter subscriptions, optional cookies, and marketing communications
- Legitimate interests — for analytics, fraud prevention, security, and operating our Services sustainably
- Legal obligation — where required to comply with applicable law, regulation, or lawful request
You may withdraw consent at any time where consent is the basis for processing — for example, by unsubscribing from a newsletter or contacting us.
06Cookies & Tracking
What are cookies?
Cookies are small text files that are placed on your device when you visit our website. They help us provide you with a better browsing experience and enable certain website functions.
Types of cookies we use
- Essential cookies — required for the website to function properly (security, basic navigation, session management)
- Analytics cookies — help us understand how visitors use our website in aggregate, allowing us to improve user experience
- Preference cookies — remember your settings such as language or specialty preference
- Marketing cookies — only set with your consent, used to measure the effectiveness of any sponsored placements
Managing cookies
You can control cookie settings through your browser preferences. Most browsers allow you to view and delete cookies, block cookies from specific websites, block third-party cookies, or clear all cookies when you close your browser. Disabling certain cookies may affect website functionality and your user experience.
Your consent
By using our website, you consent to our use of cookies as described in this policy. You can withdraw your consent at any time by adjusting your browser settings or, where applicable, through our cookie consent banner.
07Email Marketing & Newsletters
Our newsletters are sent via a third-party email service provider (currently Flodesk). When you subscribe to one or more of our specialty newsletters, your email address, name (if provided), and specialty preferences are stored by Flodesk on our behalf.
Every newsletter includes a one-click unsubscribe link. You can also update your preferences or unsubscribe by emailing support@medaptly.com.
Flodesk processes data under its own privacy policy, available at flodesk.com/privacy-policy.
08Third-Party Services
We use trusted third-party service providers to operate the Services. These currently include:
- Email delivery — Flodesk, for newsletter delivery and audience management
- Web hosting — our hosting provider, which stores website data and may log standard server data
- Analytics — tools used to understand aggregate site usage
- Security & spam protection — services that help protect against abuse and ensure availability
Each of these providers has its own privacy practices. We select providers that offer reasonable data protection standards and only share what is necessary to deliver the relevant service. These service providers have access only to the information necessary to perform their functions and are contractually obligated to protect your data.
We are not responsible for the privacy policies of websites to which we link. If you provide any information to such third parties, different rules regarding the collection and use of your personal information may apply.
09Data Sharing & Disclosure
We do not sell your personal data. We share personal data only in the limited circumstances described below:
- With service providers who help us operate the Services, under contractual data protection obligations (see Section 08)
- With legal authorities, when required to comply with a valid legal request, court order, or applicable regulation
- To protect rights and safety, where we reasonably believe disclosure is necessary to protect the rights, property, or safety of Medaptly, our users, or others
- In connection with a business transfer, if Medaptly is involved in a merger, acquisition, or asset sale, in which case data may transfer to the successor entity under the same protections described in this policy
10Data Retention
We retain your personal information only for as long as necessary to:
- Provide you with our educational services
- Comply with legal and regulatory requirements
- Resolve disputes and enforce our agreements
- Maintain business records for legitimate purposes
If you unsubscribe from a newsletter, your email address is removed from that mailing list, with a brief retention on a suppression list so we don’t accidentally re-email you. If you request full account deletion, we will remove your personal data within 30 days, except where retention is required by law.
11Your Rights
Subject to applicable law, you have the following rights regarding your personal data:
- Access — request a copy of the personal data we hold about you
- Correction — request correction of inaccurate or incomplete data
- Deletion — request deletion of your personal data (subject to legal retention requirements)
- Restriction — request that we restrict processing of your data in certain circumstances
- Portability — request a machine-readable copy of data you provided to us
- Objection — object to processing based on legitimate interests, including for direct marketing
- Withdraw consent — where processing is based on consent, withdraw it at any time
- Unsubscribe — from any or all newsletters at any time via the link in every email
To exercise any of these rights, email support@medaptly.com. We aim to respond within 30 days, in line with GDPR and applicable data protection law timelines.
12Security & Children’s Privacy
Medaptly takes appropriate steps to protect your personal data through hardware and software safeguards. We implement multiple security measures including:
- Secure Socket Layer (SSL) encryption technology
- Regular security audits and updates
- Access controls and authentication systems
- Data backup and recovery procedures
However, we cannot guarantee the security of any information that is disclosed online. Users share information at their own risk.
Children’s privacy. Our services are intended for medical professionals, residents, fellows, and medical students — not for children. We do not knowingly collect personal information from individuals under the age of 18. If we become aware that we have collected personal information from a child under 18, we will take steps to delete such information.
13Updates to This Policy
This Privacy Policy may be updated to reflect changes in our services, legal requirements, or business model. Material changes will be communicated through:
- Email notifications to newsletter subscribers
- Prominent notices on our website
Continued use of Medaptly after modifications constitutes acceptance of the updated policy.
Privacy Questions or Requests?
We’re happy to help with data access, corrections, deletions, or any privacy-related concerns.
support@medaptly.comWe will respond to privacy-related inquiries within 30 days of receipt.