Home

Privacy Policy & Data Ownership Statement

Effective Date:

What We Make & How Your Data Flows

Axis Operating Systems LLC builds products and services for small businesses. Each has a different privacy model:

None of these offerings are a substitute for medical, legal, financial, or compliance advice, and they are not designed or appropriate for handling emergencies (such as 911 or equivalent services). You remain the controller of your underlying business data and are responsible for how you use these tools in your own environment.

Axis EHR: Local-Only by Design

While a secure login unlocks the PWA interface, all records remain stored locally on your device.

HIPAA Alignment (EHR)

Because ePHI never leaves your device, Axis EHR can reduce exposure to third-party processors and aligns with HIPAA's least-disclosure intent. You remain the sole custodian of ePHI in the local EHR model. However, this architecture by itself does not guarantee HIPAA compliance or any other regulatory compliance. You are responsible for implementing appropriate safeguards and for meeting all legal and professional requirements in your practice.

Axis Voice & SMS AI: Safety-First Integrations

Our receptionist automations connect to Google Sheets, Google Calendar, and Gmail you already own. We securely add Twilio for phone and SMS. You can optionally enable voice/LLM providers. We use OAuth and least-privilege scopes; you may revoke access at any time in your own accounts.

Core You Own

Processors We Configure for You

Safety Defaults (Receptionist)

Messaging Compliance & Consent

Data & Number Ownership (Receptionist)

Axis Managed Automations (Hosted n8n)

For some customers, Axis may host automation workflows (for example, using n8n or similar tools) on infrastructure that we control. These workflows connect to your systems and process data on your behalf. In this context, Axis acts as a service provider / data processor; you remain the data controller.

What Data May Flow Through Hosted Automations

What We Ask You Not to Send

Storage, Retention, and Security

Axis AI Automation Audit: Workflow Consulting, Not a Data Warehouse

The AI Automation Audit is a consulting service. We map your workflows, identify high-friction tasks, and recommend or help configure automations using tools and accounts that you own. The audit does not provide medical, legal, or billing advice and is not a compliance certification.

What We May See During an Audit

What We Ask You Not to Share

How Audit Sessions Are Hosted & Logged

Prototypes & Automations Built During the Audit

What We Collect (Account Level)

We keep only what is required to run your account—not your EHR content or your call/SMS content when it is hosted in your providers.

Third-Party Services & Data Location

Axis products rely on third-party providers (for example, hosting, logging, authentication, Google Workspace, Twilio, and optional AI vendors). These providers may process data in the United States and other jurisdictions. Their terms and privacy policies govern their use of data within their platforms. We do not control their availability, practices, or data retention, and we are not responsible for outages, policy changes, or failures of those third-party services.

Meta Platforms (Facebook & Instagram) Data

When you connect Facebook or Instagram accounts, pages, or ad tools to our services, we may access data provided by Meta Platforms (for example, leads, form responses, campaign or ad performance, and basic account information) only to deliver the services you requested. This may include syncing leads into your CRM or scheduling system, triggering follow-up messages you approve, and generating simple performance reports for your own business use.

Your Controls

Children's Privacy

Our services are not directed to children under 13. We do not knowingly collect information directly from children under 13. If you believe a child has provided us information, contact us and we will delete it where required by law. If you use Axis products in an environment that involves minors, you are responsible for obtaining any consents and complying with applicable child privacy laws as the data controller.

Changes to This Policy

We may update this page and the effective date. Continued use after an update constitutes acceptance of the revised terms. If you do not agree with changes, you should stop using Axis products and services.

Contact & Questions

Questions about privacy or data responsibility? Email support@axisoperatingsystems.com.

How Your EHR Data Stays 100% Local

  • IndexedDB + Dexie: fast, durable storage inside your browser; not the cloud.
  • PWA: runs on Mac/PC/tablet/phone with zero server dependency.
  • You control backups: use device tools; delete by clearing local storage or uninstalling.

Voice & SMS AI — Safety Summary

  • Own your numbers and logs (Twilio in your account recommended).
  • No training on your data by Axis; recording/transcripts OFF by default.
  • Strict scopes via OAuth; revoke access at any time.
  • Consent & compliance baked in (START/STOP/HELP, A2P verification).
  • Optional vendors only when you approve; retention configured by you.