Project Line

Data Deletion Instructions

Effective date: May 16, 2026

1. Your right to delete

Under GDPR (EU), CCPA (California), the Israeli Privacy Protection Law, HIPAA (USA), and similar laws, you have the right to have your personal data deleted from Intelligent Clinic Management Platform.

2. How to delete your data inside the app

If you are a doctor / clinic owner:

  1. Open Intelligent Clinic Management Platform (desktop or mobile).
  2. Go to Settings → Reset clinic to permanently erase the whole clinic profile, patients, appointments, invoices and connections from our servers. You will be asked to confirm by SMS code.
  3. To remove only your linked Cloud / Email / WhatsApp account (without deleting the clinic): Settings → Cloud & Email → click Disconnect on the connection. Then revoke the application in your provider's account at myaccount.google.com/permissions (for Google) or account.live.com/consent/manage (for Microsoft).
  4. To remove just your WhatsApp Business connection: Settings → My WhatsApp Number → Disconnect.

If you are a patient of a clinic that uses Intelligent Clinic Management Platform:

Contact your clinic directly and ask them to delete your record. The clinic is the data controller for patient data; we (the SaaS operator) process patient data on their behalf and cannot delete it without their request.

3. How to request deletion by email

If you cannot use the in-app option, send an email to support@projectlineil.com with the subject line “Data deletion request” and include:

We respond within 30 calendar days (GDPR Article 12(3)). The deletion is permanent and cannot be undone.

4. What gets deleted

We retain audit log entries for at least 7 years even after deletion. The legal basis depends on where the clinic is established: for clinics in the EU and the UK — the accountability and security obligations of the GDPR / UK GDPR (Art. 5(2) and Art. 32) together with national medical record-keeping rules; for clinics in Israel — the Privacy Protection Law 5741-1981 and the Privacy Protection (Data Security) Regulations 5777-2017 (mandatory security logging and its retention); for clinics in the United States — HIPAA §164.316(b)(2)(i) (6 years). We apply the longest applicable period to every clinic. These entries contain only the metadata required by law (action, timestamp, signature) and never raw patient data.

5. Third parties

If you also want your data deleted at our sub-processors (Microsoft Azure, OpenAI, Twilio, Meta WhatsApp Cloud API), say so in your deletion request and we will pass it on to them. Their own deletion policies still apply.

6. Contact

Data protection contact: support@projectlineil.com — Project Line, Israel.