Privacy Policy

Last updated: December 2025

1. Introduction

Kesho ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our website, services, and AI Hair Scan platform (collectively, the "Service"). By using our Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Personal Information

We collect information that you provide directly to us, including:

  • Name, email address, phone number, and WhatsApp number
  • Age, gender, and other demographic information
  • Scalp and hair photos uploaded for AI analysis
  • Health-related information and responses to our questionnaire
  • Medical history, current medications, and family history
  • Communication preferences and feedback

2.2 Automatically Collected Information

When you use our Service, we automatically collect certain information, including:

  • Device information (device type, operating system, browser type)
  • IP address and location data
  • Usage data (pages visited, time spent, features used)
  • Cookies and similar tracking technologies

3. How We Use Your Information

We use the collected information for the following purposes:

  • Service Delivery: To provide, maintain, and improve our AI Hair Scan service and dermatologist review
  • Medical Analysis: To enable AI analysis of your scalp photos and facilitate dermatologist review
  • Communication: To send you analysis results, treatment plans, and respond to your inquiries
  • Service Improvement: To analyze usage patterns and enhance our Service
  • Legal Compliance: To comply with applicable laws, regulations, and legal processes
  • Security: To protect against fraud, unauthorized access, and other security threats

4. Data Sharing and Disclosure

We respect your privacy and do not sell your personal information. We may share your information only in the following circumstances:

4.1 Medical Professionals

Your photos and health information are shared only with licensed dermatologists who review your case as part of our Service. All dermatologists are bound by medical confidentiality obligations.

4.2 Service Providers

We may share information with trusted third-party service providers who assist us in operating our Service, such as cloud storage providers, analytics services, and communication platforms. These providers are contractually obligated to protect your information.

4.3 Legal Requirements

We may disclose your information if required by law, court order, or government regulation, or to protect our rights, property, or safety, or that of our users or others.

4.4 Business Transfers

In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections.

5. Data Security

We implement industry-standard security measures to protect your personal information, including:

  • Encryption of data in transit (HTTPS/TLS) and at rest
  • Secure storage of photos and medical information
  • Access controls and authentication mechanisms
  • Regular security audits and assessments
  • Employee training on data protection

However, no method of transmission over the Internet or electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your information, we cannot guarantee absolute security.

6. Data Retention

We retain your personal information for as long as necessary to provide our Service and fulfill the purposes outlined in this Privacy Policy, unless a longer retention period is required or permitted by law. Specifically:

  • Photos and Medical Data: Retained for the duration necessary to provide analysis and follow-up support, typically up to 2 years from your last interaction, unless you request earlier deletion
  • Account Information: Retained while your account is active and for a reasonable period thereafter
  • Legal Requirements: Some information may be retained longer if required by law or for legitimate business purposes

You may request deletion of your data at any time by contacting us at connect@kesho.health.

7. Your Rights and Choices

You have the following rights regarding your personal information:

  • Access: Request access to your personal information
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your personal information, subject to legal and contractual obligations
  • Data Portability: Request a copy of your data in a structured, machine-readable format
  • Opt-Out: Unsubscribe from marketing communications (service-related communications may still be sent)
  • Withdraw Consent: Withdraw consent for data processing where consent is the legal basis

To exercise these rights, please contact us at connect@kesho.health. We will respond to your request within 30 days.

8. Children's Privacy

Our Service is not intended for individuals under the age of 18. We do not knowingly collect personal information from children. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately. If we become aware that we have collected personal information from a child without parental consent, we will take steps to delete such information.

9. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country. By using our Service, you consent to the transfer of your information to these countries. We take appropriate safeguards to ensure your information receives adequate protection.

10. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and store certain information. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.

We use cookies for:

  • Essential functionality and security
  • Analytics and performance monitoring
  • Personalization and user preferences

11. Changes to This Privacy Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.

12. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us: