1. Introduction

LC Medical PLLC, doing business as Dr. Lanna Aesthetics ("we," "us," "our," or the "Practice"), is a medical aesthetics practice based at 140 W 58th St, Suite A, New York, NY 10019. We respect your privacy and are committed to protecting the personal and health information you share with us through this website (doctorlanna.com), in our practice, and through our digital tools.

This Privacy Policy explains what information we collect, how we use it, the third parties we share it with, and your rights regarding that information. By using doctorlanna.com or visiting our practice, you agree to the practices described in this policy.

2. Information We Collect

2.1 Information You Provide Directly

2.2 Information Collected Automatically

2.3 Information from Third Parties

3. How We Use Your Information

We use the information we collect to:

4. HIPAA and Protected Health Information

Dr. Lanna Aesthetics (LC Medical PLLC) is a HIPAA-covered entity. Your protected health information ("PHI") is governed by the federal Health Insurance Portability and Accountability Act (HIPAA) and the regulations issued under it, as well as any applicable state privacy laws.

A separate Notice of Privacy Practices is provided to all patients and is available upon request. The Notice of Privacy Practices describes in detail how we may use and disclose your PHI, your rights with respect to your PHI, and our legal duties.

You should not send PHI through the website contact form, by general email, or via SMS — these channels are not encrypted for medical communications. Use the Symplast patient portal, call our office at 929-565-7539, or speak with us in person for any communication involving your PHI.

5. How We Share Your Information

We share your information only as necessary to operate the practice, deliver care, and comply with the law. Categories of recipients include:

We do not sell your personal information.

6. Third-Party Booking — Symplast

Existing patients book appointments through Symplast, a HIPAA-compliant third-party patient management and scheduling platform. When you use Symplast, your information is also subject to Symplast's privacy policy and security practices. We have a Business Associate Agreement (BAA) with Symplast that governs how PHI is protected. New patients are routed through our new-client booking provider, which is also subject to its own privacy policy and applicable BAA where required.

7. Cookies and Tracking Technologies

doctorlanna.com uses cookies and similar technologies to operate the website, remember your preferences, analyze usage, and (where you have consented) deliver targeted advertising. Categories include:

You may control cookies through your browser settings or, where available, through our cookie consent banner. Disabling some cookies may affect website functionality.

8. Marketing Communications

With your opt-in consent, we may send you marketing emails, our newsletter, SMS reminders, and information about Cosmetic Insider events, specials, and new services. You may unsubscribe at any time using the unsubscribe link in any email, by replying STOP to SMS messages, or by contacting our office. Transactional communications (appointment reminders, treatment follow-ups, billing notices) are not subject to marketing opt-out and will continue as long as you are a patient.

9. Children's Privacy

Our website and services are not directed to children under 18. We do not knowingly collect personal information from children. Aesthetic procedures at Dr. Lanna Aesthetics are limited to adults; certain treatments require additional age and medical eligibility. If you believe we have inadvertently collected information from a minor, please contact us so we can delete it.

10. Data Security

We implement reasonable administrative, technical, and physical safeguards to protect your information, including:

No method of transmission or storage is perfectly secure. While we work to protect your information, we cannot guarantee absolute security.

11. Data Retention

We retain your information for as long as necessary to provide your care, comply with our legal obligations (including medical record retention requirements under New York law and HIPAA), resolve disputes, and enforce our agreements. Retention periods vary by category of information and applicable law.

12. Your Rights

Subject to applicable law (including HIPAA, New York state privacy law, and — where applicable — laws such as the California Consumer Privacy Act and the EU GDPR), you may have the following rights with respect to your information:

To exercise these rights, contact us using the information in Section 14. We will respond within the timeframes required by applicable law.

13. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. The "Last Updated" date at the top of this page indicates when the policy was last revised. We encourage you to review this policy periodically. For material changes, we will notify you through a notice on our website or — where required — by direct communication.

14. Contact Us

For questions about this Privacy Policy, to exercise your privacy rights, or to receive a copy of our Notice of Privacy Practices, contact us:

For privacy and HIPAA inquiries specifically, please indicate "Privacy Inquiry" when calling so we can route you to our HIPAA Privacy Officer.

15. Governing Law

This Privacy Policy is governed by the laws of the State of New York and applicable U.S. federal law, without regard to conflict-of-laws principles. By using doctorlanna.com, you consent to the jurisdiction and venue of the state and federal courts located in New York County, New York, for any dispute arising out of or relating to this policy.