Privacy Policy

Privacy policy of her-and-health.com

This policy explains how personal data is collected, used, protected and, where applicable, transferred when people visit this site, submit a form, contact the practice by email or WhatsApp, request an appointment, or use digital tools associated with Her & Health and the medical practice of Dr. Eunice Zavala Chaparro.

This document may be printed or saved for reference. Its content is intended to remain aligned with data protection principles applicable in Mexico and, where relevant because of the location of the user or technology providers, with international frameworks such as GDPR, CCPA and LGPD.

Owner and data controller

Her & Health and Dr. Eunice Zavala Chaparro operate from Cancun, Quintana Roo, Mexico. Controller contact email: info@herandhhealth.com.mx

Types of data that may be collected

The data collected directly or through third-party services may include name, email address, phone number, reason for consultation, free-text message, scheduling details, browser technical data, approximate IP address, cookies and usage data.

Some data is provided voluntarily when a user requests information, an appointment, a quote or follow-up. Other information may be collected automatically for technical operation, security, basic traffic measurement or continuity of local site tools.

When a specific item of data is necessary to answer a request or enable a feature, failure to provide it may prevent the site or care team from completing the requested service.

Purposes of processing

Data may be used to answer messages, coordinate appointments, prepare quotes, provide logistical follow-up for medical services, improve the website experience, prevent technical abuse, comply with legal obligations and document privacy-related or rights-related requests.

Her & Health does not sell personal data. Personal or health-related information is not used for incompatible purposes without an appropriate legal basis or a reasonable prior notice.

Applicable legal bases

Depending on the case, processing may rely on consent, pre-contractual or contractual measures, compliance with legal obligations, protection of legitimate interests and, where applicable, the provision of health-related services and their administrative follow-up.

If a user is located in a jurisdiction where frameworks such as GDPR or equivalent rules apply, the site seeks to interpret and handle the processing of personal data under those standards whenever relevant to the location of the user, the provider or the processing operation.

Tools, calculators and local storage

Some tools on this site run entirely or partially within the browser and may use localStorage or similar local mechanisms to retain results, preferences or usage history on the same device.

That content is not automatically added to a medical record and is not shared by default with the medical team. If a user wants to use it during a visit, they must show it, download it or send it through an express contact channel.

Cookies, analytics and technology providers

The site may use cookies, measurement tags, analytics services, forms, embedded media, maps, external booking services or social integrations to understand general site usage and enable specific functions.

These providers may process technical or usage data under their own privacy notices. When that occurs, Her & Health seeks to work with commonly used tools and reasonable security measures, without claiming absolute control over third-party privacy practices.

International transfers and cross-border processing

Because certain hosting, analytics, scheduling, messaging or infrastructure providers may operate outside Mexico, some technical or contact data may be processed in other countries.

Where international transfers occur, they are intended to rely on contractual safeguards, adequacy decisions, reasonable security measures or comparable legal mechanisms applicable to the nature of the service and the type of data involved.

Data retention

Personal data is retained only for as long as necessary to fulfill the purpose for which it was collected, address related follow-up requests, maintain reasonable administrative traceability and comply with legal, tax, health or defense obligations when applicable.

Once the data is no longer required, it is deleted, blocked or anonymized in a reasonable manner according to the type of record, the nature of the data and the applicable obligations.

User rights

The data subject may request access, rectification, updating, objection, restriction, portability or deletion of personal data, depending on the applicable legal framework and subject to legal or clinical-administrative exceptions that may apply.

  • Confirmation of whether personal data is being processed.
  • Access to, or correction of, inaccurate, incomplete or outdated information.
  • Deletion requests where the data is no longer necessary or where the law allows erasure.
  • Objection to certain non-essential uses or withdrawal of consent where applicable.
  • Information about transfers, relevant providers and the channels available to submit a formal request.
International users

If a user resides in the European Union, the United Kingdom, California, Brazil or another jurisdiction with specific privacy rules, they may write to exercise their rights under the framework they consider applicable. Requests will be handled in good faith and with the closest reasonable compliance available under the relevant legal scope.

This may include, where appropriate, rights associated with GDPR, CCPA/CPRA or LGPD, always considering the nature of the site, the relationship initiated by the user and any limitations arising from medical, regulatory or contractual obligations.

Contact and exercise of rights

For privacy questions, consent withdrawal, ARCO-style requests, access, correction or deletion of data, you may contact us by email.

Primary channel for privacy and data processing matters: info@herandhhealth.com.mx

Top