Legal

Acceptable Use Policy

Last updated: April 2026

This Acceptable Use Policy ("AUP") governs your use of Cavitech AI and all related services, APIs, and applications (collectively, the "Platform"). By accessing or using the Platform you agree to comply with this AUP. Cavitech AI reserves the right to update this policy at any time. Continued use of the Platform after changes constitutes acceptance of the revised policy.

01

Permitted Use

The Platform is designed exclusively for licensed dental professionals practising within the scope of their professional registration. You may use Cavitech AI only for the following lawful, clinical purposes:

  • Radiograph analysis — uploading and analysing dental radiographs (periapical, panoramic, bitewing, cephalometric, and CBCT) to receive AI-generated observations, annotations, and pathology indicators.
  • Clinical decision support — using AI-generated findings as a secondary reference to assist, but never replace, your independent professional clinical judgement.
  • Clinical note recording — using the Ambient Scribe feature to transcribe and structure clinical consultations into SOAP notes and other standard clinical documentation formats.
  • Treatment planning — creating, reviewing, and managing phased treatment plans for individual patients, including cost estimates and procedure scheduling.
  • Practice management — managing patient records, appointment scheduling, recall systems, availability, and related administrative functions within the Platform.
  • Clinical reports — generating, reviewing, and exporting clinical reports based on approved findings for inclusion in patient records or referral communications.
02

Prohibited Conduct

You agree that you will not, and will not permit any third party to, engage in any of the following conduct when using the Platform:

  1. Submitting fabricated or falsified data. You must not upload synthetic, manipulated, or intentionally misleading radiographs, patient records, or clinical information to the Platform.
  2. Sharing or transferring credentials. Your account credentials are personal to you. You must not share your login details, session tokens, or API keys with any other person, including colleagues within the same practice.
  3. Engaging in unlicensed teledentistry. You must not use the Platform to provide diagnostic opinions, treatment recommendations, or clinical consultations to patients in jurisdictions where you are not licensed to practise, or in a manner that violates telemedicine or teledentistry regulations applicable to you.
  4. Uploading data without proper consent. You must not upload patient radiographs, clinical records, or any personally identifiable health information without first obtaining the necessary informed consent from the patient or their legal guardian, as required by applicable data protection and healthcare legislation.
  5. Scraping, harvesting, or automated extraction. You must not use bots, crawlers, scrapers, or any automated means to access, extract, copy, or index content, data, or outputs from the Platform.
  6. Reverse engineering or decompilation. You must not reverse-engineer, decompile, disassemble, or otherwise attempt to derive the source code, algorithms, models, or underlying architecture of the Platform or any of its AI components.
  7. Violating applicable laws. You must not use the Platform in any manner that violates any applicable local, national, or international law or regulation, including but not limited to POPIA, GDPR, HIPAA, and professional conduct rules set by dental regulatory bodies.
  8. Interfering with Platform operations. You must not attempt to disrupt, degrade, or interfere with the integrity, performance, or availability of the Platform, including through denial-of-service attacks, injection of malicious code, or deliberate overloading of system resources.
  9. Sole reliance on AI output for clinical decisions. You must not use AI-generated findings, annotations, or recommendations as the sole basis for any clinical diagnosis, treatment decision, or patient management plan. All AI outputs require independent professional verification.
  10. Misrepresenting AI output as a professional diagnosis. You must not present AI-generated findings or reports to patients, insurers, regulatory bodies, or third parties as a confirmed clinical diagnosis. All outputs must be clearly identified as AI-assisted decision support reviewed and approved by a licensed dental professional.
03

Data Upload Responsibilities

When uploading data to the Platform, you accept full responsibility for ensuring compliance with the following requirements:

  • Patient consent. You must have obtained valid, informed consent from each patient (or their legal guardian) before uploading their radiographs, clinical images, or any personally identifiable health information to the Platform. Consent must cover the use of AI-assisted analysis and cloud-based processing of their data.
  • Own patients only. You may only upload data relating to patients who are under your direct care or the care of your registered practice. Uploading data for patients who are not your own, without explicit written authorisation from the treating clinician, is prohibited.
  • No malicious content. You must not upload files that contain viruses, malware, trojans, ransomware, or any other harmful code. All uploaded files must be genuine clinical images or documents in supported formats.
  • Data protection compliance. You are responsible for ensuring that all data uploads comply with the data protection legislation applicable to your jurisdiction, including but not limited to POPIA (South Africa), GDPR (European Union), and HIPAA (United States). This includes implementing appropriate technical and organisational safeguards before transmitting patient data.
  • Consent records. You must maintain accurate, accessible records of all patient consents obtained for data uploaded to the Platform. Cavitech AI may request evidence of consent at any time, and failure to produce such evidence may result in suspension or termination of your account.
04

Enforcement

Cavitech AI reserves the right to investigate any suspected violation of this Acceptable Use Policy and to take appropriate action. Enforcement measures may include, but are not limited to, any combination of the following:

  • Investigation. Cavitech AI may investigate any reported or suspected breach of this AUP, including reviewing account activity, uploaded content, and usage patterns.
  • Formal warning. Issuing a written warning to the account holder identifying the violation and requiring immediate corrective action.
  • Account suspension. Temporarily suspending access to the Platform pending investigation or resolution of the reported violation.
  • Account termination. Permanently terminating your account and revoking all access to the Platform for serious or repeated violations.
  • Reporting to authorities. Referring the matter to relevant law enforcement agencies, data protection authorities, or professional regulatory bodies where the violation involves unlawful conduct, patient data breaches, or professional misconduct.
  • Content removal. Removing or restricting access to any content, data, or outputs that violate this AUP or that were generated in connection with prohibited conduct.
  • Reasonable notice. Where practicable and permitted by law, Cavitech AI will provide reasonable notice before taking enforcement action, allowing you the opportunity to address the issue. However, Cavitech AI reserves the right to take immediate action without prior notice where the violation poses an imminent risk to patient safety, data security, or Platform integrity.
Report a violation

If you become aware of any conduct that violates this Acceptable Use Policy, or if you have questions about what constitutes permitted use, please contact us at abuse@cavitech-ai.com.

Cavitech AI