LeadFlow AI is self-hosted software. When you deploy it, the clinic or agency running it is the data controller, and this policy describes how the software handles data so you can meet your own obligations.
Each clinic's data is isolated from every other clinic in the same deployment (multi-tenant isolation), and that isolation is checked by the project's tests.
It does not sell data, and it does not share patient data between tenants. It sends message content to the language-model provider you configure only to generate replies; choose a provider whose terms fit your requirements.
Enquiry and audit records are kept for as long as the operator configures. As operator you should set a retention period appropriate to your local rules and delete data on request.
Because the deployment is controlled by the clinic, requests to access or delete personal data should go to that clinic. The software provides the operator with the means to find and remove a patient's records.
Keep your API keys and database credentials secret, serve the app over HTTPS, and restrict access to the owner console. The repository's deployment guide covers the baseline setup.