CDoctorsTeam
HomeFind specialistsMarketplaceHealth tips

Privacy Policy

Last updated: August 2026

1. Introduction and data controller

At CDoctorsTeams we process personal data for legitimate purposes, transparently and in accordance with applicable law in each country where we operate (including, as applicable, the GDPR in the European Union, Law 1581/2012 in Colombia, LGPD in Brazil, HIPAA in the United States, and local data protection laws). This Privacy Policy describes how we collect, use, retain, and protect your information. It also incorporates the Telemedicine Policies applicable to remote services.

Controller: the entity operating the CDoctorsTeams Platform (as stated in the Terms and Conditions). To exercise rights or privacy inquiries: support@cdoctorsteams.com.

2. Data we may collect

  • Identification and contact data (name, email, phone, country).
  • Account and profile data for professionals or users (including supporting documentation where applicable).
  • Health and clinical data when you use Platform services (e.g. shared history, results, consultation notes).
  • Technical and usage data (IP address, device, cookies, access logs).
  • Communication data (messages, video calls or files exchanged through the Platform, depending on features).

3. Purposes and legal bases

We process your data to: provide and improve the Platform; manage registration, appointments, and teleconsultations; verify identities and credentials where necessary; comply with legal obligations; ensure security; communicate with you; and, where consent is required, send relevant service information.

Legal bases may include performance of a contract, compliance with legal obligations, legitimate interests (security, service improvement), and explicit consent for health data or optional communications, depending on jurisdiction.

4. Retention, security, and transfers

We retain data for as long as necessary for the purposes described and in line with legal retention periods. We apply appropriate technical and organizational measures (including encryption where relevant) to protect information against unauthorized access, loss, or alteration.

If data is transferred outside your country, we ensure appropriate safeguards (standard contractual clauses, adequacy decisions, or other mechanisms permitted by law).

5. Data subject rights

Depending on applicable law, you may request access, rectification, erasure, restriction of processing, portability, and objection, and withdraw consent where processing is based on consent. You may lodge a complaint with your local data protection authority.

To exercise these rights, contact support@cdoctorsteams.com with your request and a reasonable means of verifying your identity.

6. Artificial intelligence subprocessors

When optional AI modules are enabled and you have given consent (e.g. recording for a clinical draft), we may send audio or text data to specialized vendors under contract:

  • AssemblyAI — medical speech-to-text (medical-v1 domain) for the AI Scribe module.
  • Anthropic — SOAP draft generation and health-topic chat assistance.

These vendors process data only when applicable subprocessor agreements (BAA/DPA) are in place for your region and the feature is enabled by platform administrators. API keys are never exposed in client apps; processing runs on CDoctorsTeams servers.

7. Cookies and similar technologies

The Platform may use cookies and similar technologies for operation, security, and aggregated usage analysis. You can manage preferences via your browser settings or cookie notices when available.

8. Role of CDoctorsTeams

CDoctorsTeams is a technology platform and professional social network that connects users with health professionals and providers of health-related products and services, where professionals can share health content with the entire community. It does not provide health services, issue diagnoses, prescribe treatments, enable electronic prescribing, or provide electronic signature functionality.

CDoctorsTeams acts as a data controller with respect to account, profile, and Platform usage data, and as a data processor (business associate) with respect to patient data that Professionals manage through Platform tools.

9. Platform security measures

CDoctorsTeams implements the following technical and organizational measures to protect personal data:

  • Encryption in transit: communications protected with TLS (HTTPS); HSTS enabled with preload (2 years); automatic HTTP → HTTPS upgrade in production.
  • Encryption at rest: AES-256 server-level encryption infrastructure; medical files in encrypted storage.
  • Role-based access control (RBAC): 6 role levels with specific permissions; providers have no access to clinical data.
  • Least-privilege clinical access: professionals can only access patient data from their care team, shared appointments, or through audited emergency access (with justification and time limit).
  • Audit and traceability: all health data access is logged (actor, patient, action, resource, date, IP anonymized via SHA-256 hash). Logs retained for 7 years.
  • Session protection: single active session per user; new device verification via email OTP; automatic lockout after 5 failed attempts (15 minutes).
  • Secure passwords: bcrypt cryptographic hashing; never stored in plain text; credential table protected with deny-access database policies.
  • HTTP security headers: CSP (Content-Security-Policy), X-Frame-Options DENY, X-Content-Type-Options nosniff, strict Referrer-Policy, Permissions-Policy for camera/microphone.
  • Abuse protection: rate limiting on all API routes; MIME validation on uploads; content sanitization (DOMPurify); file size limits by type.
  • Secure payments: Stripe integration; card numbers never stored on our servers; webhook signature verification.
  • Granular consent: explicit consent at registration, before teleconsultation, video recording, AI transcription, and medical history sharing.
  • Complete deletion: users may request permanent and irreversible deletion of their account and all associated data (profile, history, messages, appointments, files, recordings, AI data).
  • Row-Level Security (RLS): database policies restricting record access based on authenticated user identity.

10. International transfers

Data is hosted on Supabase infrastructure (Amazon Web Services). When data is transferred outside the data subject's country, CDoctorsTeams ensures appropriate safeguards:

  • Standard Contractual Clauses (SCCs) with infrastructure providers and subprocessors.
  • Informed consent of the data subject when permitted by law as a transfer basis.
  • Adequacy decisions recognized by the local authority, where applicable.
  • Transfer impact assessments where required by regulation (LGPD, GDPR).

11. Privacy officer (DPO)

CDoctorsTeams designates a privacy contact point to handle data subject requests and requirements from data protection authorities. Contact: support@cdoctorsteams.com. In accordance with the LGPD (Brazil), Law 21,719 (Chile), and other regulations requiring it, this contact fulfills the role of Encarregado de Dados / Data Protection Officer.

12. Security incident notification

In the event of a security breach that may affect personal data, CDoctorsTeams commits to:

  • Containing the incident within the first 4 hours.
  • Assessing the scope and risk to data subjects within a reasonable timeframe.
  • Notifying the competent data protection authority and affected data subjects within legal deadlines: 72 hours (LGPD Brazil, GDPR), reasonable period (Chile Law 21,719, Colombia, Peru), 60 days (HIPAA USA), without undue delay (Dominican Republic, Argentina).
  • Documenting corrective measures and updating security controls.

13. Data subject rights by jurisdiction

Depending on applicable law in your country, you may exercise the following rights:

  • Brazil (LGPD Art. 18): access, correction, anonymization, portability, deletion, consent withdrawal, information about third-party sharing.
  • Chile (Law 21,719): access, rectification, cancellation, objection, portability.
  • Mexico (LFPDPPP): ARCO rights (Access, Rectification, Cancellation, Opposition) and consent withdrawal.
  • Peru (Law 29,733): access, rectification, cancellation, opposition, information about processing.
  • Colombia (Law 1581): access, update, rectification, deletion, consent withdrawal.
  • Argentina (Law 25,326): access, rectification, deletion, confidentiality.
  • Dominican Republic (Law 172-13): access, rectification, deletion, opposition.
  • United States (HIPAA Privacy Rule): access, amendment, accounting of disclosures, restriction of use, confidential communications.
  • Canada (PIPEDA): access, correction, consent withdrawal, complaint to OPC or provincial commissioner.
  • Spain / EU (GDPR): access, rectification, erasure, restriction, portability, objection.

To exercise any of these rights, contact support@cdoctorsteams.com with your request, country of residence, and a reasonable means of verifying your identity.

14. Data retention

CDoctorsTeams retains data according to the following criteria:

  • Account and profile data: while the account is active and up to 30 days after deletion for recovery purposes.
  • Clinical data (history, consultation notes, MedRec): 5 years after last activity. This is the minimum legal requirement applicable to intermediary platforms (F.S. 456.057 Florida, NOM-004 Mexico). Professionals with longer retention obligations in their jurisdiction (Brazil 20 years, Colombia 15, Argentina 10, Chile 15) must maintain their own copies.
  • AI transcripts (AI Scribe): 90 days after saving the SOAP draft. These are support tools, not primary medical records.
  • AI chat conversations: 1 year.
  • Consultation video recordings: 30 days post-consultation. The Professional may download the recording during this period.
  • Audit logs: 6 years (HIPAA minimum). Upon account deletion, the actor is anonymized but the record is retained for compliance purposes.

CDoctorsTeams applies the data minimization principle: data is retained only for the minimum legally required period. When a user requests account deletion, all associated personal data is permanently deleted, except for audit logs which are anonymized as described.

CDoctorsTeams Telemedicine Policies

The following terms apply to consultations via video call, chat, or other digital means on the Platform.

1. Introduction

Telemedicine on CDoctorsTeams means the delivery of healthcare services at a distance using communication technologies (video calls, chat, file exchange) through the Platform. These policies govern the use of telemedicine by Users (patients) and Healthcare Professionals, with the aim of ensuring quality, safety, and regulatory compliance.

2. Scope of Telemedicine

Permitted services

  • Medical guidance and follow-up consultations.
  • Interpretation of test results (if authorized by the Professional).
  • Publishing health content and education for the community.
  • Advice on healthy habits and prevention.

Limitations

  • Telemedicine does not replace in-person medical care in emergencies, urgent situations, or when a physical examination is required.
  • It is not intended to diagnose or treat serious conditions without complementary in-person evaluation.

Warning: In an emergency, Users must contact local medical services (e.g. 911 in the U.S., 133 in Chile, 192 in Brazil) and must not rely solely on the Platform.

3. Informed consent

Before each teleconsultation, the Professional must obtain the User’s informed consent, explaining:

  • The purpose and nature of the consultation.
  • The benefits and risks of telemedicine (e.g. technical or diagnostic limitations).
  • Available alternatives (in-person care).

Consent will be recorded electronically on the Platform via an acceptance checkbox or digital signature, and the User may withdraw consent at any time.

4. Requirements for Professionals

  • Credentials: Professionals must be duly licensed in the jurisdiction where they provide services and upload their credentials on the Platform for verification.
  • Languages: Services will be offered in Spanish, English, and Portuguese (subject to Professional availability).
  • Conduct: Professionals must comply with the ethical codes of their profession and applicable local laws.
  • Technical setup: It is the Professional’s responsibility to have a stable connection and suitable devices for the teleconsultation.

5. Requirements for Users

  • Information: Users must provide truthful, relevant information (medical history, symptoms) to enable appropriate care.
  • Environment: Teleconsultations must take place in a private, secure setting to protect confidentiality.
  • Technology: Users must have a compatible device and stable internet connection.

6. Teleconsultation process

  • Scheduling: Appointments are booked through the Platform, selecting the mode (video call or chat).
  • Duration: Standard duration will be set by the Professional (e.g. 30 minutes), unless otherwise agreed.
  • Recording: Teleconsultations may be recorded (with prior User consent) and clinical data will be stored in secure Electronic Medical Records (EMR).
  • Prescriptions: CDoctorsTeams does NOT enable electronic prescribing or electronic signatures. Professionals who need to issue prescriptions must do so outside the Platform, in accordance with applicable local regulations.

7. Telemedicine cancellation policy

The cancellation rules set out in the Terms and Conditions apply:

  • 12+ hours before: 90% refund to the User, 10% to the Professional.
  • 11–6 hours before: 75% refund to the User, 25% to the Professional.
  • 5–2 hours before: 50% refund to the User, 50% to the Professional.
  • Less than 2 hours: No refund; 100% to the Professional.

Cancellations must be made exclusively through the Platform.

8. Privacy and data security

  • Confidentiality: All information exchanged during teleconsultations is protected in accordance with CDoctorsTeams’ Privacy Policy and applicable laws (e.g. HIPAA, LGPD).
  • Storage: EMRs are stored on secure servers with end-to-end encryption.
  • Access: Only the assigned Professional and the User have access to consultation data, except as required by law.

9. Limitations and responsibilities

CDoctorsTeams

  • Acts solely as a technology intermediary and does not provide direct medical services.
  • Does not guarantee uninterrupted availability of the Platform or the quality of teleconsultations.

Professionals

  • Are responsible for the quality, suitability, and legality of services provided.
  • Must inform the User if a teleconsultation is not appropriate for their case.

Users

  • Assume responsibility for following the Professional’s recommendations and seeking in-person care when indicated.

10. Technical requirements

  • Platform: Compatible with mobile devices and computers (iOS, Android, Windows, macOS).
  • Connection: A minimum internet speed of 5 Mbps is recommended for video calls.
  • Support: The Support Center (support@cdoctorsteams.com, WhatsApp +18133385011) will assist with technical issues.

11. Local regulatory compliance

Professionals and Users must comply with telemedicine laws and regulations applicable in their country or region, including, but not limited to, professional licensing, data protection, and service restrictions. CDoctorsTeams will adjust its operations to comply with specific regulations (e.g. HIPAA in the U.S., GDPR in Spain, LGPD in Brazil), notifying Users of any additional requirements.

Below is a summary of relevant regulations in jurisdictions where the Platform may operate (United States, Chile, Brazil, Peru, Ecuador, Mexico, Bolivia, Spain, and Canada), with a focus on how CDoctorsTeams may adapt its Policies.

12. United States (base: Florida)

Key regulations

  • HIPAA (Health Insurance Portability and Accountability Act): Regulates the privacy and security of medical data (PHI — Protected Health Information).
  • Florida Telehealth Law (F.S. 456.47): Permits telemedicine by professionals licensed in Florida or registered for patients in the state.
  • 21 CFR Part 11: Regulates electronic records and digital signatures on health platforms. Note: CDoctorsTeams does not implement electronic signatures or electronic prescribing.

Requirements

  • Professionals must be licensed in Florida or in the patient’s state (where applicable).
  • Written or electronic informed consent before the teleconsultation.
  • Use of secure platforms with encryption (e.g. AES-256) to protect data.
  • Restrictions on prescribing controlled substances (Schedule II) without a prior in-person visit. Note: CDoctorsTeams does not enable electronic prescribing; professionals must issue prescriptions outside the Platform.

Data protection (HIPAA)

  • HIPAA Privacy Rule: regulates the use and disclosure of Protected Health Information (PHI); grants rights of access, amendment, accounting of disclosures, restriction of use, and confidential communications.
  • HIPAA Security Rule: requires administrative, physical, and technical safeguards (access control, audit, integrity, transmission security, authentication).
  • HIPAA Breach Notification Rule: notification to HHS OCR and affected individuals within 60 days of discovery.
  • Business Associate Agreements (BAA): mandatory with every subprocessor accessing PHI.
  • CDoctorsTeams operates as a "business associate" when professionals manage PHI through the Platform; not as a "covered entity" (does not provide health services).

Implications for CDoctorsTeams

  • Verify state licenses of Professionals.
  • Implement encryption systems and audits aligned with HIPAA.
  • Include a digital consent form on the Platform.
  • Sign BAAs with subprocessors accessing PHI (Supabase, Agora, AssemblyAI, Anthropic).
  • Maintain disclosure log and PHI access audit.

13. Chile

Key regulations

  • Law 20.584: Regulates patients’ rights and duties, including remote care.
  • Exempt Resolution No. 744 (MINSAL): Establishes standards for telemedicine.
  • Law 21,719 on Personal Data Protection (effective December 2026) — new law replacing Law 19,628. Creates the Personal Data Protection Agency, introduces portability, mandatory DPO, breach notification, explicit consent for sensitive data.

Requirements

  • Professionals must be registered in the National Registry of Individual Health Providers (Superintendencia de Salud).
  • Explicit, documented informed consent.
  • Medical data must be stored on secure servers and meet interoperability standards (e.g. HL7).
  • Law 21,719: explicit informed consent for sensitive data (health); rights of access, rectification, cancellation, objection, and portability.
  • Obligation to notify security breaches to the Agency and data subjects.
  • Designation of Data Protection Officer where applicable.

Implications for CDoctorsTeams

  • Validate Professionals’ registration in Chile.
  • Ensure secure data storage and allow patients access to their medical history.
  • Implement data portability mechanism per Law 21,719.
  • Warn that telemedicine does not replace emergency care.

14. Brazil

Key regulations

  • CFM Resolution No. 2,227/2018 (as amended by Resolution 2,314/2022): Regulates telemedicine in Brazil.
  • LGPD (Lei Geral de Proteção de Dados — Law 13,709/2018): Equivalent to GDPR for personal data.

Requirements

  • The first consultation must be in person, except in remote areas or emergencies (flexibility increased post-COVID).
  • Professionals must be registered with the Regional Council of Medicine (CRM).
  • The platform must ensure confidentiality and allow consultation recording (with consent).
  • Informed consent is mandatory before each teleconsultation.

Implications for CDoctorsTeams

  • Require CRM registration and warn about the need for an initial in-person consultation in some cases.
  • Implement a recording option with explicit consent.
  • Comply with LGPD (encryption, data breach notification).

15. Peru

Key regulations

  • Law No. 30421 (Telesalud Framework Law): Regulates telesalud in the country.
  • Supreme Decree No. 015-2019-SA: Establishes technical and operational requirements.
  • Law No. 29733 (Personal Data Protection): Similar to GDPR.

Requirements

  • Professionals must be registered with the Colegio Médico del Perú.
  • Prior informed consent and clinical data recorded in interoperable systems.
  • Technology infrastructure must ensure continuity and security (ISO 27001 recommended).

Implications for CDoctorsTeams

  • Verify registration with the Colegio Médico.
  • Ensure interoperability with Peruvian health systems.
  • Protect data in accordance with Law 29733.

15A. Colombia

Key regulations

  • Law 1581 of 2012 (General Personal Data Protection Law): Classifies health data as sensitive; requires prior, express, and informed consent.
  • Decree 1377 of 2013: Regulation of Law 1581; regulates authorizations, security, and database management.
  • Resolution 1888 of 2025 (MinSalud): Adopts the Digital Health Care Summary (RDA) and electronic medical record interoperability.
  • Law 2015 of 2020 and IHCE interoperability: Framework for interoperable Electronic Medical Records.
  • Resolution 2654 of 2019: Establishes telehealth and telemedicine guidelines.

Requirements

  • Professionals must be registered in the National Registry of Health Human Talent (ReTHUS).
  • Prior, express, and informed authorization from patient for processing health data (Art. 6, Law 1581).
  • Implement encryption in transit and at rest (minimum AES-256), role-based access control, and audit logs.
  • Database registration with the Superintendency of Industry and Commerce (SIC) if applicable (RNBD).
  • Data processing agreements with technology providers.
  • SIC actively oversees compliance with substantial penalties.

Implications for CDoctorsTeams

  • Verify ReTHUS registration for Colombian Professionals.
  • Ensure prior and express documented consent for health data.
  • Evaluate RNBD registration with SIC.
  • Comply with Law 1581 technical measures (encryption, audit, access control).

15B. Argentina

Key regulations

  • Law 25,326 on Personal Data Protection: Classifies health data as sensitive; requires registration in the registry.
  • Law 26,529 on Patient Rights: Regulates informed consent, medical records, and confidentiality.
  • Law 27,553 on Electronic/Digital Prescriptions and Teleassistance: Formalizes electronic prescriptions and teleassistance platforms with compliance with Laws 25,326 and 26,529. Note: CDoctorsTeams does not enable electronic prescribing; this law is referenced for informational purposes.
  • Decree 98/2023: Regulation of Law 27,553; establishes technical requirements for security, traceability, encryption, and access control.

Requirements

  • Professionals must be authorized by the Ministry of Health and registered with the corresponding professional association.
  • Health data may only be processed by healthcare facilities and health professionals, respecting professional secrecy (Art. 8, Law 25,326).
  • Registration of databases with the registry maintained by the supervisory authority.
  • Teleassistance platforms must comply with security standards, availability, encrypted transmissions, data backup, and traceability (Decree 98/2023).
  • Guarantee rights of access, rectification, deletion, and confidentiality for data subjects.
  • Documented informed consent for teleconsultations.

Implications for CDoctorsTeams

  • Verify registration and authorization of Argentine Professionals.
  • Comply with Decree 98/2023 technical requirements for teleassistance platforms.
  • Evaluate database registration with the supervisory authority.
  • Respect professional secrecy in health data access.

15C. Dominican Republic

Key regulations

  • Law 172-13 on Personal Data Protection: Comprehensive framework; requires technical, organizational, and security measures.
  • Ministry of Public Health / DIGEMAPS: Oversees requirements for digital health platforms.

Requirements

  • Free, express, and conscious consent from the data subject, documented in writing or equivalent means (Art. 4, Law 172-13).
  • Prior notification to data subject about: processing purposes, potential recipients, existence of the database, controller identity, and rights of access/correction/deletion.
  • Technical, organizational, and security measures to protect data against alteration, loss, or unauthorized access.
  • Professional secrecy duty for controllers and all persons participating in data processing.
  • Exception for health data: allowed without consent for public health reasons, emergencies, or epidemiological research, provided the subject’s identity is preserved through dissociation mechanisms.
  • Document processing cycles and maintain internal privacy manuals.

Implications for CDoctorsTeams

  • Verify Professional registration with the Ministry of Public Health.
  • Implement prior notification and documented express consent.
  • Maintain technical measures per Law 172-13 (encryption, audit, access control).
  • Document data processing procedures.

16. Ecuador

Key regulations

  • Organic Health Law (Art. 33): Permits telemedicine under supervision of the Ministry of Public Health (MSP).
  • Organic Law on Personal Data Protection (2021): Regulates sensitive data.

Requirements

  • Professionals must be registered with the MSP.
  • Informed consent and strict protection of medical data.
  • Use exclusively for consultation, follow-up, or education — not emergencies.

Implications for CDoctorsTeams

  • Validate MSP registration of Professionals.
  • Implement data security measures aligned with the 2021 Law.
  • Limit teleconsultations to non-urgent cases.

17. Mexico

Key regulations

  • NOM-024-SSA3-2012: Regulates electronic medical records and interoperability.
  • NOM-004-SSA3-2012: Clinical record.
  • General Health Law Reform (DOF 01/15/2026): Formalizes digital health, telehealth, telemedicine, mobile health, and electronic records with full legal validity.
  • Federal Law on Protection of Personal Data Held by Private Parties (LFPDPPP): Protects sensitive data; establishes ARCO rights.

Requirements

  • Professionals must hold a valid professional license registered with the Ministry of Health.
  • Digital informed consent ensuring understanding and voluntariness (Art. 71 Septies LGS 2026).
  • Secure and reliable systems guaranteeing confidentiality, integrity, and availability (Art. 71 Septies LGS 2026).
  • Adequate documentation and recording of care provided through digital platforms.
  • Compliance with NOM-024 and NOM-004 for electronic records.
  • Data protection per LFPDPPP: ARCO rights, consent for sensitive data, privacy notice.

Implications for CDoctorsTeams

  • Verify professional licenses.
  • Implement digital consent per LGS 2026 reform.
  • Ensure NOM-024/NOM-004 compliance for electronic records.
  • Protect data per LFPDPPP with appropriate privacy notice.

18. Bolivia

Key regulations

  • Law No. 164 (General Health Law): Does not specifically regulate telemedicine but permits innovative health services.
  • Law No. 1178 (Personal Data Protection, in progress): Full implementation pending.

Requirements

  • Professionals must be registered with the Ministry of Health.
  • Informed consent is mandatory.
  • Lack of specific regulation requires alignment with international standards (e.g. WHO).

Implications for CDoctorsTeams

  • Validate registration with the Ministry of Health.
  • Adopt international standards (ISO 27001, HL7) until local regulation is in place.

19. Spain

Key regulations

  • General Data Protection Regulation (GDPR — EU 2016/679): Strict data protection.
  • Law 41/2002 (Patient Autonomy): Regulates informed consent and patient rights.
  • Royal Decree 81/2014: Technical standards for telemedicine.

Requirements

  • Professionals must be registered with the corresponding College of Physicians.
  • Detailed, explicit informed consent.
  • The platform must comply with GDPR (encryption, right to erasure, mandatory DPO).

Implications for CDoctorsTeams

  • Verify Professionals’ college registration.
  • Appoint a Data Protection Officer (DPO).
  • Guarantee GDPR rights (access, rectification, erasure).

20. Canada

Key regulations

  • PIPEDA (Personal Information Protection and Electronic Documents Act): Federal personal data protection law; applies to the private sector.
  • Provincial health laws: PHIPA (Ontario — Personal Health Information Protection Act), HIA (Alberta — Health Information Act), FIPPA (British Columbia).
  • CMA Telemedicine Guidelines: Ethical guidelines of the Canadian Medical Association.
  • Provinces may have stricter laws than PIPEDA for health data.

Requirements

  • Professionals must be licensed in the patient’s province.
  • Meaningful consent: the data subject must understand what data is collected, for what purpose, and to whom it is disclosed.
  • Accountability principle: the organization is responsible for data in its custody, including data transferred to third parties.
  • Robust security measures proportionate to data sensitivity (encryption, audits, access control).
  • Right of access, correction, consent withdrawal, and complaint to OPC (Office of the Privacy Commissioner) or provincial commissioner.
  • Restrictions on prescribing controlled substances. CDoctorsTeams does not enable electronic prescribing.

Implications for CDoctorsTeams

  • Validate provincial licenses of Professionals.
  • Implement meaningful consent per PIPEDA.
  • Comply with provincial laws based on patient location (PHIPA Ontario, HIA Alberta, FIPPA BC).
  • CDoctorsTeams does not enable electronic prescribing; professionals must issue prescriptions through official channels in their jurisdiction.
  • Ensure accountability over data transferred to subprocessors.

21. Adaptation of CDoctorsTeams telemedicine policies

To comply with these regulations, CDoctorsTeams integrates the following operational commitments into the Platform:

1. Professional verification

  • Require valid registration or license in the Professional’s jurisdiction and the patient’s (as applicable by country).
  • Maintain a Platform process to upload and validate credentials.

2. Informed consent

  • Mandatory digital form before each teleconsultation, adaptable to languages and legal requirements of each country (e.g. detailed for Spain, simplified for Bolivia).

3. Data protection

  • AES-256 encryption at rest and TLS in transit.
  • Privacy Policy adapted to GDPR, HIPAA, LGPD, LFPDPPP, PIPEDA, Law 1581 (Colombia), Law 25,326 (Argentina), Law 172-13 (D.R.), Law 29,733 (Peru), Law 21,719 (Chile).
  • Rights of access, rectification, deletion, portability, and objection per jurisdiction.
  • Security breach notification within legal deadlines.
  • Audit and traceability of all health data access.
  • Complete data deletion upon data subject request.

4. Service limitations

  • Clear warnings that telemedicine is not suitable for emergencies or complex diagnoses, adjusted to each regulation.

5. Electronic prescriptions and electronic signatures

  • CDoctorsTeams does NOT enable electronic prescribing and does NOT provide electronic signature functionality in any jurisdiction.
  • Professionals who need to issue prescriptions or sign documents electronically must do so outside the Platform, using systems authorized by the health authorities in their country.
  • This limitation protects both users and the Platform from regulatory liabilities associated with prescription and digital certification of clinical documents.

6. Flexible jurisdiction

  • The User’s local laws prevail over Florida law in case of conflict, except where mandatory law provides otherwise.

22. Dispute resolution

Disputes related to teleconsultations will be resolved in accordance with the “Dispute Resolution” section of the Terms and Conditions (arbitration in Florida, except where mandatory local law applies).

23. Changes

These policies may be updated; Users will be notified at least 15 days in advance. Continued use of telemedicine constitutes acceptance of the changes.

By using CDoctorsTeams, you declare that you have read this Privacy Policy and the telemedicine policies that follow. For inquiries: support@cdoctorsteams.com.

logo

CDoctorsTeams

CDoctorsTeams connects healthcare professionals with teams, tools, and services — securely and efficiently.

Company

  • About CDoctorsTeams
  • FAQ
  • Why choose us?

Legal

  • Privacy policy
  • Terms & conditions

Contact

  • support@cdoctorsteams.com
  • WhatsApp +18133385011

© 2026 CDoctorsTeams. All rights reserved.