privacy policy.
KRTZ is a digital marketing company serving medical and aesthetic practices. this policy explains what information we collect, how we use it, who we share it with, and what rights you have. we keep it plain — no buried clauses.
1. who we are
KRTZ ("we," "us," "our") provides digital marketing services including paid advertising, AI-powered lead follow-up, website design, and review management. this privacy policy applies to our own website (krtz.io) and the information we collect from prospective and current clients.
if you are a client of ours, your patients' data collected through campaigns we run on your behalf is governed separately by your service agreement and your own privacy obligations as a healthcare-adjacent business.
2. information we collect
information you give us directly. when you submit our intake form, we collect:
- your name, phone number, and email address
- your practice name, website, and type of business
- your current marketing channels and monthly revenue range
- a brief description of your business goals
- your preferred call date and time
we collect this to evaluate whether we're a good fit and to prepare for your call. we do not sell this information.
information collected automatically. when you visit our website, we may collect:
- browser type, device type, and operating system
- pages visited and time spent on each
- referring URL (how you found us)
- IP address (used for general location, not precise tracking)
this is collected via cookies and analytics tools described in section 4.
3. how we use your information
- to contact you about your inquiry and schedule a call
- to deliver and manage services if we work together
- to send relevant updates or follow-up communications (you can opt out at any time)
- to improve our website and intake process
- to retarget website visitors through paid advertising platforms (see section 4)
we do not use your information for automated decision-making or profiling that has legal or similarly significant effects on you.
4. third-party platforms we use
running an effective marketing operation requires third-party tools. here is an honest list of what we use and why:
advertising platforms
- Meta (Facebook & Instagram Ads) — we use Meta's advertising platform to run paid campaigns and may use the Meta Pixel on our site to measure performance and retarget visitors. Meta's data practices are governed by Meta's Privacy Policy.
- Google Analytics — we use Google Analytics to understand site traffic. Google may set cookies on your browser. you can opt out via Google's opt-out tool. Google's practices are covered by Google's Privacy Policy.
CRM & communication tools
- GoHighLevel — our primary CRM for managing leads, automations, and client communications. contact data submitted through our forms may be stored in GoHighLevel.
booking & practice management integrations
as part of our AI follow-up service, we integrate with your booking software. platforms we connect to on behalf of clients include:
- Jane App
- Vagaro
- Mindbody
- Boulevard
- Clinicsense
- GoHighLevel
- and other platforms on request
these integrations are performed under your authorization as a client. we access only what is necessary to deliver the agreed service. we do not store your patients' personal health information beyond what is required for appointment booking, and we do not use it for any purpose other than the service you hired us for.
5. cookies
our website uses cookies for two purposes:
- essential cookies — required for basic site functionality. these cannot be disabled.
- analytics & advertising cookies — set by Google Analytics and the Meta Pixel to measure traffic and ad performance. you can block these through your browser settings or by using an ad blocker. doing so will not affect your ability to use our site.
we do not use tracking cookies for purposes beyond what is described above.
6. data retention
inquiry information (from our contact form) is retained for up to 24 months, or until you ask us to remove it. active client data is retained for the duration of the engagement plus 12 months. after that period, data is deleted or anonymized.
data held by third-party platforms (Meta, Google, GoHighLevel) is subject to their own retention policies.
7. data sharing & sale
we do not sell your personal information. we do not share it with third parties for their own marketing purposes.
we share data with third-party service providers only to the extent necessary to deliver our services (e.g., GoHighLevel for CRM, Meta for ad delivery). all such providers are required to handle data in accordance with applicable privacy laws.
we may disclose information if required by law, court order, or to protect our legal rights.
8. your rights
depending on where you're located, you may have rights including:
- the right to know what personal information we hold about you
- the right to correct inaccurate information
- the right to request deletion of your information
- the right to opt out of marketing communications at any time
- California residents — under the CCPA, you have the right to know, delete, and opt out of the sale of personal information. we do not sell personal information.
to exercise any of these rights, email jpkurtz@krtzmedia.com. we will respond within 30 days.
9. children's privacy
our services are intended for business owners and are not directed at individuals under 18. we do not knowingly collect personal information from minors. if you believe we have done so, contact us and we will delete it promptly.
10. changes to this policy
we may update this policy as our services evolve or as laws change. material changes will be noted with an updated date at the top of this page. continued use of our site after changes constitutes acceptance of the updated policy.
11. contact
privacy questions, data requests, or concerns:
- email: jpkurtz@krtzmedia.com
- subject line: "privacy request"
we take these seriously and will respond within 30 days.