Privacy Policy

Last updated on 23 Sep 2025

Purpose of the Policy and Responsible Party

The protection of your personal data and privacy is important to us. In this privacy policy (“Policy”), we inform you of your rights and options when you use the services of 44ai AG, such as using our interfaces (API), visiting our website, contacting us, or using any other services provided by us (collectively, “Services”).

This Policy outlines how we process, store, and evaluate your data when you use our Services.

“We,” “us,” or “our” refer to 44ai AG, headquartered at Industriestrasse 78, 4600 Olten. We are the Data Controller as defined under Article 4 of the Swiss Federal Act on Data Protection (DSG). Our Data Protection Officer is Christoph Meier. For questions, contact info@44ai.ch. For readability, gender-specific forms are avoided; all references apply to everyone.

Personal Data We Process

We only process data that is provided to us.

If you contact us or use our API for structuring medical data, we may process: first and last name, telephone number, email address, date of birth, gender, and recordings of medical consultations and medical documents (PDF or scanned documents) - including diagnoses, ongoing treatment information, and their processed results (structured content).

Data processing complies with the Swiss Federal Data Protection Act (DSG) and, for EU customers, the GDPR. Processing is necessary to provide our services and ensure quality.

Storage duration: We process and store personal data only as long as necessary to achieve the storage purpose. Once fulfilled, personal data is routinely deleted in line with legal and contractual obligations.

Role as processor (API use): For API usage, we process the personal data you provide (especially recordings, documents, diagnoses, ongoing treatments, and structured results) as a data processor under Article 4 DSG and GDPR, based on contractual and legal obligations, and in a way that prevents any direct link to individuals.

No third-party model processing: We guarantee that all processing of your personal medical data through our API is carried out exclusively by our own services. Your data is never processed or analyzed by third parties outside our internal security and privacy policies. Full control enables data security and legal compliance.

Contact inquiries: If you contact us by email, form, or phone, we process name, email address, and phone number to handle your request and fulfill orders. Deletion after two years.

Website visit: When you visit www.44ai.ch, necessary cookies and cookies for statistics and marketing are set. By visiting, you consent to this processing.

Job applications: For applications, we process name, phone number, email address, and other personal data from your documents to review, conduct the hiring process, and, if successful, prepare the contract. If no contract is formed, deletion occurs six months after contact.

Service communications: We process name and email address to provide and update our services and inform you of updates. This data is deleted once no longer necessary for service provision.

Transfer of Data to Third Parties

Personal data (excluding medical data) is shared with third parties only when necessary for communication, contract fulfillment, or billing.

Medical data is processed exclusively by our services and stored on secure, certified servers solely in Switzerland. At a customer’s request, storage can be within the EU as per contract. Medical data is never transmitted to the USA or other third countries, and transmission is secured via SSL encryption.

Data Security

The security of your data is very important to us. We use advanced administrative, technical, personnel, and physical measures to protect against loss, theft, unauthorized access, disclosure, or alteration.

We protect your personal data through technical and organizational measures (password protection, secure encrypted servers in Switzerland or Europe/Switzerland for EU customers, backup security and monitoring, physical disk protection, encrypted transmission, two-factor authentication, etc.) in accordance with Article 8 DSG.

These measures protect against unauthorized, illegal, or accidental access, processing, loss, use, or manipulation, ensuring that unauthorized third parties cannot access your data. Due to high-security standards, data breaches are highly unlikely. In the unlikely event, our TOMs enable early detection and prompt notification to you or the relevant authority.

We also use appropriate technical security measures such as secure hosting. Our services are cloud-agnostic, allowing customized solutions based on customer requests.

Medical data is processed so that no direct link to individuals can be established. Once processing is no longer required, data is deleted per legal and contractual requirements.

Your Rights

You may exercise your data protection rights at any time, including the right to information (about stored personal data, origin, recipients, and purpose), correction of inaccurate data, data portability, objection to processing, restriction of processing, and blocking or deletion of incorrect or unlawfully processed data.

You can contact us anytime regarding these rights at info@44ai.ch (see section 2).

If your right to lawful data processing is unexpectedly violated, contact us immediately (see section 2). You also have the right to file a complaint with the Swiss Data Protection Authority (EDÖB) or another EU data protection authority (for EU customers).

Any Questions?

If you have questions about your personal data, feel free to contact info@44ai.ch or use the contact information in section 2 at any time.

Changes to the Privacy Policy

We may update this Privacy Policy at any time. Changes will be communicated to existing partners in advance. The version published on our website is the current and applicable version.