Privacy Policy
Skilled. Attentive. Compassionate.
Website Privacy Policy (U.S. Dental Practices)
Last Updated: November 14, 2025
Applies to: Mequon Dental Arts (“we,” “us,” or “our”) and our website at https://mequondentalarts.com and any linked pages we own (collectively, the “Site”).
Important HIPAA note: This Website Privacy Policy describes how we handle personal information collected through the Site (e.g., forms, online scheduling, payments, cookies). It is not the HIPAA-required Notice of Privacy Practices (NPP) governing our use of protected health information (PHI) in clinical care. For our NPP, please visit: Notice of Privacy Practices.
-
1) Information We Collect
We may collect the following categories of information:
Identifiers & contact details (name, email, phone, address) when you submit forms or request appointments.
Health or appointment context voluntarily shared through forms/messages (e.g., reason for visit). If PHI is provided, we treat it under HIPAA once received by our systems or HIPAA-compliant vendors.
Internet/technical data (IP address, browser, device, pages viewed, time on site) via cookies and pixels.
Payment/financing info when paying online or using third-party financing; these processors store and handle your data per their own policies.
Testimonials/reviews you submit or allow us to publish.
Approximate geolocation derived from IP or browser permissions.
Children’s data: The Site is not intended for children under 13, and we do not knowingly collect information from them without parental consent. -
2) How We Use Information
Provide services: respond to inquiries, schedule appointments, send reminders, support payment processes, and manage your experience.
Operate & improve the Site: analytics, security, debugging, and personalization.
Communications: send transactional notices and, where permitted, marketing communications. See “Your Choices & Rights.”
Legal & safety purposes: prevent fraud, comply with legal obligations, and protect rights or safety. -
3) Cookies, Analytics & Advertising
We use cookies and similar technologies to operate the Site and understand visitor activity. HIPAA reminder: We avoid sending PHI to analytics or advertising platforms. Your browser may support Global Privacy Control (GPC); when required, we treat GPC as a valid opt-out for “sale”/“sharing” under state privacy laws. You may disable cookies in your browser, but some features may not function as intended. -
4) reCAPTCHA & Bot Protection
Our Site may use Google reCAPTCHA to prevent spam and abuse. Google may collect device and usage information under its own Privacy Policy and Terms.
“This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.” -
5) Vendors, Business Associates & Disclosures
We share information with:
• Service providers (hosting, email/SMS, forms, scheduling, payments, analytics, security).
• HIPAA Business Associates who process PHI under BAAs and required safeguards.
• Third-party financing or service platforms you choose to use.
• Legal authorities when required by law.
• Entities involved in business transfers (mergers/acquisitions) as allowed.
We do not sell PHI. For “sale”/“sharing” of non-PHI under state laws, see “State-Specific Disclosures & Rights.” -
6) Data Security
We maintain administrative, physical, and technical safeguards to protect information, including measures aligned with HIPAA’s Security Rule for PHI. This includes encryption in transit, access controls, and ongoing risk management. -
7) Retention
We retain data as needed to provide services, comply with legal/recordkeeping obligations, resolve disputes, and enforce agreements. Clinical record retention follows healthcare regulations; web and analytics data follow operational schedules. -
8) Your Choices & Rights
Email marketing: You may unsubscribe using the link in any marketing email.
Text messages: For marketing SMS, we obtain prior express written consent; reply STOP to opt out.
Cookies/analytics: Manage cookies through your browser or our cookie banner, where available. We honor GPC where required.
State privacy rights: Residents of states with privacy laws (CA, VA, CO, CT, UT, TX, DE) may have rights to access, correct, delete, and opt out of certain processing. To exercise these rights, contact us at frontdesk@mequondentalarts.com or use our website form. Verification may be required. -
9) Children’s Privacy
The Site is not intended for children under 13. If you believe a child has submitted personal information, please contact us so we can delete it in accordance with COPPA. -
10) Breach Notification (PHI)
If a breach of unsecured PHI occurs, we will notify affected individuals and authorities as required by HIPAA and state laws. -
11) Third-Party Links & Embedded Services
The Site may contain links to external websites or embedded tools (maps, reviews, financing, videos). These third parties may collect data under their own privacy policies. -
12) Do Not Use the Site for Emergencies
Online forms and messages are not monitored continuously. For dental emergencies, call 911 or visit the nearest emergency facility. -
13) Changes to This Policy
We may revise this Policy periodically. The “Last Updated” date reflects the effective version. Significant changes will be highlighted and/or communicated when required. -
14) Contact Us
Mequon Dental Arts
Address: 10033 N Port Washington Road, Suite 150, Mequon, WI 53092
Email: frontdesk@mequondentalarts.com
Phone: (262) 241-5558
Website: https://mequondentalarts.com
State-Specific Disclosures & Rights
The following disclosures apply to residents of states with comprehensive privacy laws. If any portion conflicts with your state’s law, the state-specific section governs.
- California (CCPA/CPRA): We provide a Notice at Collection describing categories of personal information, retention, purposes, and whether data is “sold”/“shared.” We honor GPC as an opt-out signal for sale/sharing. Rights include access, correction, deletion, and opting out of sale/sharing/targeted advertising.
- Virginia (VCDPA): Our notice includes required details on categories, purposes, rights, and third-party disclosures. We offer an appeal process for denied privacy requests.
- Colorado (CPA): You may opt out of targeted advertising, sale, or profiling where defined. Additional rules apply to sensitive data.
- Connecticut (CTDPA): You may opt out of targeted advertising, sale, and certain profiling uses.
- Utah (UCPA): We provide required disclosures on categories, purposes, and rights under state law.
- Texas (TDPSA): Residents may access, correct, delete, and opt out of sale/targeted ads/profiling. Required disclosures are included in this Policy.
- Delaware (DPDPA): Residents may access, correct, delete, port data, and opt out of sale/targeted advertising/profiling.
Deployment Notes
- Publish this Privacy Policy as a standalone page and link it in the footer.
- Maintain a separate HIPAA Notice of Privacy Practices.
- Use a cookie banner supporting opt-outs and honoring GPC where required.
- Ensure email/SMS marketing includes proper unsubscribe/STOP functionality.
- Audit analytics/ads tools to prevent sending PHI to third parties.
- Include required reCAPTCHA disclosure near any protected form.


