Data Protection Policy

Key Definitions

Use of Cookies and Similar Technologies

We and our third-party service providers use cookies, web beacons, and similar technologies to:

You may reject cookies through your browser settings, but this may limit access to certain Service features. We may receive reports based on these technologies as De-identified, Individual-level, or Aggregate Information.

How We Use Your Information

Epix AI uses and shares your Personal Information in the following ways, adhering to principles of data minimization and purpose limitation:

To Provide and Improve Our Services

We use your information to:

To Process and Deliver Genetic and Epigenetic Testing Results

To receive our reports, you must create an account, register your kit, and submit a blood sample for analysis by our contracted laboratory. We analyze your genetic and epigenetic Information to generate reports, which may include future updates based on scientific advancements. These reports are not intended for medical diagnosis or treatment. Results are accessible via your secure account.

To Facilitate Research Participation

If you opt-in to research notifications, we will inform you of third-party research opportunities. We will not share Individual-level genetic and epigenetic Information or Self-Reported Information without your explicit, informed consent. Research data is de-identified or aggregated to protect your identity.

To Conduct Partnered Research

Epix AI collaborates with third parties (e.g., non-profits, academic institutions) for health-related studies. These studies use Aggregate and/or De-identified Individual-level genetic and epigenetic and Self-Reported Information as outlined in Consent Documents. We ensure robust anonymization processes to prevent re-identification.

To Develop Proprietary Algorithms

Epix AI may use De-identified or Aggregate Information to develop proprietary algorithms for improving Services or conducting research. These algorithms are the intellectual property of Epix AI and will not be used to re-identify individuals.

To Provide Customer Support

We use Personal Information to resolve issues, answer questions, and investigate problems. In some cases, processing one customer’s information is necessary to resolve another’s issue, but only to the extent required.

To Conduct Surveys and Obtain Testimonials

We may send surveys, polls, or testimonial requests to improve Services. Participation is optional, and you can manage these communications via Account Settings.

To Provide Marketing Communications

By creating an account, you consent to receive product and promotional emails or notifications. You can unsubscribe via email links or Account Settings. Non-promotional messages regarding your account (e.g., service updates) are mandatory.

Third-Party Information Sharing

We engage third-party service providers for:

We ensure third parties comply with applicable data protection laws and use your information only for specified purposes. We do not sell your Personal Information to third parties.

Cross-Border Data Transfers

Your data may be stored and processed in the EU or other jurisdictions with differing data protection laws. We implement safeguards, such as Standard Contractual Clauses (SCCs) and Data Processing Agreements (DPAs), to ensure compliance with GDPR and other regulations for cross-border transfers.

Data Breach Notification

In the event of a data breach that may compromise your Personal Information, we will notify you and relevant authorities within 72 hours, as required by GDPR and other applicable laws. Notifications will include details of the breach, potential impacts, and steps to mitigate risks.

Account Access and Management

Access your Epix AI data via your secure account. Additional identity verification may be required for lost access. You may update or correct your Personal Information through Account Settings.

Sharing Outside of Epix AI Services

You may share Personal Information with others, including third-party services like social networks. Once shared, Epix AI is not responsible for how third parties use your data. Protect the privacy of individuals within multi-profile accounts.

Account Deletion

To delete your Epix AI account and data, submit a request via Account Settings and confirm via email. Deletion is irreversible and occurs within 30 days, except for data retained for legal or research purposes (e.g., data in completed studies or required by law). We will confirm completion of the deletion process.

Data Retention

We retain Personal Information only for as long as necessary to fulfill the purposes outlined in this Policy or as required by law. For example:

Security Measures

Epix AI implements robust technical and organizational measures to protect your Personal Information, including:

Despite these measures, no system is completely secure. We cannot guarantee absolute security but strive to maintain industry-standard protections.

Your Responsibilities

You are responsible for safeguarding your authentication details (e.g., username, password). Epix AI is not liable for data you release or request us to release to third parties.

Children’s Privacy

Epix AI Services are not intended for individuals under 18. Parents or guardians may create accounts and submit samples for their children, provided they obtain verifiable parental consent and assume responsibility for data security and accuracy.

Linked Websites

Epix AI links to third-party websites not governed by this Policy. Review the privacy statements of linked sites before sharing Personal Information.

Direct Marketing

We require explicit consent for electronic marketing communications, as per GDPR and other regulations. You may withdraw consent at any time via Account Settings or unsubscribe links. Marketing may also occur based on legitimate interests, where permitted.

Changes to This Policy

We may update this Policy to reflect changes in our Services, data practices, or legal requirements. Significant changes will be communicated via email or account notifications, and your continued use of Services constitutes acceptance. For material changes affecting Sensitive Information, we will seek your explicit consent.

Last Updated: 11th of February, 2026