Legal

Privacy Policy

Last updated: March 2026

Cresta Health ("we," "us," or "our") is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your data when you visit crestahealth.com or interact with our services.

1. Information We Collect

We collect information you provide directly to us, including:

We also automatically collect certain information when you visit our site, including IP address, browser type, pages viewed, and time spent on pages — via cookies and analytics tools (Google Analytics, Facebook Pixel).

2. How We Use Your Information

We use the information we collect to:

3. Payment Information & Stripe

All payment information is collected and processed by Stripe, Inc., our third-party payment processor. We use Stripe's SetupIntent functionality to save your payment method for future use — this is a card authorization, not an immediate charge. Your card will only be charged when Cresta Health officially launches, and only after we notify you in advance. We do not store your full card number, CVV, or expiration date on our servers.

4. Cookies & Tracking Technologies

We use the following tracking tools to understand how visitors interact with our site and to measure the effectiveness of our advertising:

You can disable cookies in your browser settings at any time, though some site features may not function as intended.

5. Sharing Your Information

We do not sell, rent, or trade your personal information. We may share your information with:

6. Data Retention

We retain your personal information for as long as necessary to provide our services and fulfill the purposes outlined in this policy. If you cancel your reservation, we will delete your card authorization with Stripe promptly and retain only the minimum data required for legal and accounting purposes.

7. Your Rights

Depending on your jurisdiction, you may have the right to access, correct, or delete your personal data, withdraw consent, and object to certain processing. To exercise any of these rights, contact us at hello@crestahealth.com.

8. Data Security

We implement industry-standard security measures to protect your information. All data transmission is encrypted via SSL/TLS. Payment data is handled exclusively by Stripe, which is PCI-DSS Level 1 certified — the highest level of payment security certification.

9. Children's Privacy

Our services are not directed to individuals under the age of 18. We do not knowingly collect personal information from minors. If you believe we have inadvertently collected such data, please contact us immediately.

10. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will revise the "Last updated" date at the top. We encourage you to review this page periodically.

11. Contact Us

If you have questions or concerns about this Privacy Policy, please contact us at:

Cresta Health
Panama City, Panamá
hello@crestahealth.com