Microbot Medical Group Privacy Statement

Microbot Medical Group Privacy Statement

Last Updated: December 2, 2025

Your privacy and trust are important to us. This Privacy Statement (“Statement”) provides important information about how Microbot Medical, Inc. and their affiliates (collectively, “Microbot”, “we,” or “us”) handle Personal Information that we collect through our websites and online services, as well as through our sales and marketing activities (collectively, our “Services”).

As used herein, the terms “Personal Information” or “Personal Data” shall mean all information relating to an identified or identifiable natural person, which may include such information as an individual’s name, birthdate and residential address, email address or telephone number, credit card information and other personal identifiers.

Microbot is committed to complying with privacy legislation applicable to Microbot’s activities throughout the world (collectively, “Applicable Laws”). This policy has been drafted to meet the requirements of these Applicable Laws and is intended to provide you information about Microbot’s practices in managing your Personal Information and protecting it from unauthorized use or disclosure.

Please read this Statement carefully and contact our Data Protection Officer (dpo@microbotmedical.com) if you have any questions about our privacy practices or your personal information choices. 

It is important that you check back often for updates to this Statement. A current version of this Statement is always accessible on our website.

  1. What Information about You is Collected by Microbot?

Microbot may request and/or collect certain Personal Information from you whenever you interact with us, make use of a Service, when you enter Personal Information on our website or provide us with Personal Information through any other means. This information may include, but is not limited to, information related to customer satisfaction surveys, customer purchasing habits, warranty information and/or other purchasing information or other information volunteered by you. Microbot may also collect other technical information such as your IP address, MAC address, internet service provider, computer operating platform, web browser, geolocation and other similar information. We also collect Personal Data such as name, surname, address, e-mail and phone number of the relevant contact person of your company.

Microbot limits the collection of personal information to that which is necessary for the purposes identified by it at or prior to the time at which such information is collected. You are under no obligation to provide any Personal Information to Microbot. However, if you don’t provide such information, some features of Microbot’s websites may not be available to you. Further, if certain information is not provided, Microbot may not be able to offer services to you.

Categories of Information Collected

Please review the following chart relating to the categories of personal information we have collected in the past twelve (12) months:

Category

Examples

Collected


A. Identifiers


Contact details, such as real name, alias, postal address, telephone or mobile contact number, unique personal identifier, online identifier, internet Protocol address, email address, and account name

 

YES


B. Personal information categories


Name, contact information, education, employment, employment history, and financial information

 

YES


C.Protected classification characteristics


Gender and date of birth

 

NO


D.Commercial information


Transaction information, purchase history, financial details, and payment information


NO


E.Biometric information


Fingerprints and voiceprints


NO


F. Internet or other similar network activity

Browsing history, search history, online behavior, interest data, and interactions with our and other websites, applications, systems, and advertisements


YES


G. Geolocation data


Device location


YES


H. Audio, electronic, visual, thermal, olfactory, or similar information


Images and audio, video or call recordings created in connection with our business activities


NO


I. Professional or employment-related information

Business contact details in order to provide you our Services at a business level or job title, work history, and professional qualifications if you apply for a job with us


NO


J.Education Information


Student records and directory information


NO


K. Inferences drawn from other personal information

Inferences drawn from any of the collected personal information listed above to create a profile or summary about, for example, an individual’s preferences and characteristics


YES

 

  1. Name and Contact Details of Data Controller Handling Personal Information

Microbot Medical, Inc. 

175 Derby Street, #27,

Hingham, MA 02043

microbotmedical.com

DPO@microbotmedical.com

  1. How Does Microbot Handle Your Personal Data?
  1. Microbot Medical collects, obtains, uses, discloses, provides and retains Personal Information in an appropriate manner.
  2. Microbot Medical makes best efforts to ensure that any Personal Data it uses is accurate, precise, and up-to-date.
  3. Microbot Medical takes necessary and appropriate measures to manage and safeguard Personal Data including protecting Personal Data against unauthorized access and disclosure, loss, leak, misuse, or damage.
  4. Microbot Medical complies with its obligations under the Applicable Laws by keeping Personal Data up to date; by storing and destroying it securely; by not collecting or retaining excessive amounts of data; by protecting Personal Data from loss, misuse, unauthorized access and disclosure and by ensuring that appropriate technical measures are in place to protect Personal Data. Microbot Medical does not retain Personal Data for longer than is necessary to fulfill the identified purposes. In determining data retention periods, Microbot Medical takes into consideration local laws, contractual obligations, and the expectations and requirements of our customers.
  5. Microbot Medical complies with laws, regulations, and the guidelines for them as well as internal rules on Personal Information.
  6. When contracting the handling of Personal Data to a third party, Microbot Medical only entrusts to a contractor who meets Microbot’s requirements based on Microbot’s internal rules. Microbot Medical manages such contractors in an appropriate manner.
  7. Microbot Medical remains up to date towards any change of the Applicable Laws.
  1. What is the Purpose and Legal Basis of Processing Personal Information? 

We collect, use, disclose, transfer, and store Personal Information when needed to provide our Services and for our operational and business purposes as described in this Statement.

Microbot Medical ensures that, in the process of providing its products and services, it will obtain only Personal Data necessary to carry out its business through the Microbot Medical business entities for the purposes of use (as identified and described below). Such Personal Information will not be used or disclosed for purposes other than those for which it was collected, except with the consent of the individual concerned or as required or permitted by Applicable Law.

Microbot Medical may process your Personal Information for the following purposes and legal basis:

Where you have provided CONSENT

We will rely on your consent to send you the following where we invite you to opt-in on the Website:

  • electronic marketing communications about our products and services, events, promotions and competitions; and
  • personal information collected from non-strictly necessary cookies used on the Website (see our Cookies Notice for more information).

You may withdraw your consent at any time. Please see the Your Rights section below for further details.

Where it is required to complete or, at your request, take steps to enter into, a CONTRACT

The use of your personal information may be necessary to perform a contract that you have with us or perform steps you request to enter into a contract. For example, when you buy a product from us, we need to use your personal information to process your order, to send you the product, for billing purposes and to respond to any requests you may have. We also need to use your personal information to notify you about changes to our services.

Where there is a LEGAL REQUIREMENT

We will use your personal information to comply with our legal obligations, including where the law requires us:

  • to respond or assist the public authorities or the police and other criminal investigation bodies;
  • to comply with any court order, law, or legal process, including to respond to any government or regulatory request;
  • to identify you when you contact us or to authenticate you when logging into your account;
  • to verify the accuracy of data we hold about you; and
  • to comply with a request from you in connection with the exercise of your rights (for example where you have asked us not to contact you for marketing purposes, we will keep a record of this on our suppression list in order to be able to comply with your request).

Where it is in your VITAL INTERESTS  

We may use your personal information to contact you if there are any urgent safety or product recall notices to communicate to you or where we otherwise reasonably believe that the processing of your personal information will prevent or reduce any potential harm to you. It is in your vital interests for us to use your personal information in this way.

Where there is a LEGITIMATE INTEREST

We may use and process your personal information where it is necessary for us to pursue the following legitimate interests (whether ours, in connection with our business, or that of a third party), for some of the following purposes:

Processing necessary for us to promote our business, brands and products and measure the reach and effectiveness of our campaigns

  • to communicate marketing information to you by phone or by post;
  • for analysis and insight conducted to inform our marketing strategies, and to enhance your visitor experience; and
  • to tailor and personalise our marketing communications based on your activities and interests.
  • to identify and record when you have received, opened or engaged with the Website or electronic communications (please see our Cookies Notice for more information);
  • to use mathematical and statistical methods to create information and offers customised for you based on your information, including by making predictions about your behaviour. This may include predicting your preferences, suitable product recommendations, or your likelihood of making another purchase;
  • to contact you with targeted advertising delivered online through social media and other platforms operated by other companies, unless you object. You may receive advertising based on information about you that we have provided to the platform or allowed the social media platform to collect using cookies on our Website. You may also receive advertising because, at our request, the platform has identified you as falling within a group whose attributes we have selected as Segments (defined above) or a group that has similar attributes to the individuals whose details it has received from us (or a combination of the two). To find out more, please refer to the information provided in the help pages of the platforms on which you receive advertising from us. Please also see the section below for further information regarding Social Media Platforms specifically;

Processing necessary for us to support Website visitors and customers with their enquiries

  • to respond to correspondence you send to us and fulfil the requests you make to us relating to our products and services;

Processing necessary for us to respond to changing market conditions and the needs of our guests and visitors

  • to analyze, evaluate and improve our products and services so that your visit and use of the Website and social media pages are more useful and enjoyable (we will generally use data amalgamated from many people so that it does not identify you personally);
  • to carry out (or instruct a third party to carry out on our behalf) market research and analysis (including contacting you with customer surveys) so that we can better understand you and your needs as a customer;
  • for product development and statistical research purposes;
  • to ensure that the Website’s content is presented as effectively as possible for you;

Processing necessary for us to operate the administrative and technical aspects of our business efficiently and effectively

  • to notify you about changes to our services;
  • to administer the Website and our social media pages and for internal operations, including troubleshooting, testing, statistical purposes;
  • for the prevention of fraud and other criminal activities;
  • to verify the accuracy of data that we hold about you and create a better understanding of you as an account holder or visitor;
  • for network and information security in order for us to take steps to protect your information against loss or damage, theft or unauthorised access;
  • to correspond or communicate with you in relation to administrative, legal and business matters;
  • for the purposes of corporate restructure or reorganisation or sale of our business or assets;
  • to inform you of updates to our terms and conditions and policies;
  • for our internal purposes, such as quality control, Website performance, system administration and to evaluate use of the Website, so that we can provide you with enhanced services;
  • to assess and improve our service to customers through recordings of any calls with our contact centres; and
  • for other general administration including managing your queries (including through social media), complaints, or claims, and to send service messages to you.
  1. Marketing

We may collect your preferences to receive marketing information directly from us by email or SMS in the following ways:

  • if you fill out the form to receive more information and opt in to receive other communications from us; or
  • if you register for an account, we will ask you if you would like to opt in to receive marketing information directly from us.

You have the right to opt-out of our use of your personal information to provide marketing to you in any of the ways mentioned above at any time. Please see Your Rights below for further details on how you can do this.

  1. Cookies

We store so-called “cookies” in order to offer you a comprehensive range of functions and to make the use of our websites more convenient. Cookies are small files that are stored on your computer with the help of your internet browser. These cookies cannot identify you as a person. For more information regarding our cookies, please review our cookie policy.

If you do not wish the use of cookies, you can prevent the storage of cookies on your computer by making the appropriate settings in your internet browser. Please note that this may limit the functionality and range of functions of our offer. 

  1. Processing of Sensitive Personal Data

We do not process any sensitive Personal Data (e.g., health, financial or religious data) from you unless we have previously received your written consent, or as otherwise permitted or required by Applicable Law.

  1. Sharing Your Personal Data

Your Personal Data will be shared, or will likely be shared, within the following entities:

We may share your information with any of the following trusted third parties:

  • any of our group companies, where this is necessary, and in accordance with laws on data transfers;
  • tax, audit, or other authorities, when we believe that the law or other regulation requires us to share this data (for example, because of a request by a tax authority or in connection with any anticipated litigation);
  • third-party providers who assist with delivering our products to you;
  • lawyers who provide us with legal and regulatory advice;
  • Third-party data service providers who help us to understand our audience by providing additional information so that we can send the more relevant and targeted communications to you and other users;
  • external consultants who provide industry insights, market research and technical support;
  • auditors and accountants who prepare and examine financial records, assess financial operations and assist in becoming more efficient;
  • IT technical support functions, IT consultants and third-party analytics service providers who carry out testing, research, and development work on our business technology systems;
  • Third-party outsourced IT providers where we have an appropriate data processing agreement (or similar protections) in place;
  • social media platforms such as Facebook, Instagram, LinkedIn and YouTube;
  • if a group company merges with or is acquired by another business or company in the future, we may share your personal information with the new owners of the business or company, as well as with any administrators or insolvency practitioners, where they are involved (and provide you with notice of this disclosure); and
  • if we have to share your information to comply with legal or regulatory requirements. This may involve exchanging information with other companies and organisations for the purposes of fraud protection and credit risk reduction.
  1. Do We Collect Information From Minors?

We do not knowingly solicit data from or market to children under 18 years of age. By using the Website, you represent that you are at least 18. If we learn that personal information from users less than 18 years of age has been collected, we will deactivate the account and take reasonable measures to promptly delete such data from our records. If you become aware of any data we may have collected from children under age 18, please contact us at DPO@microbotmedical.com .

  1. Your Rights

In accordance with applicable law, you may have a number of rights in relation to your information under data protection law. In relation to certain rights, we may ask you for information to confirm your identity and, where applicable, to help us to search for your personal information. Except in rare cases, we will respond to you within one month from either: (i) the date that we have confirmed your identity; or (ii) where we do not need to do this because we already have this information, from the date we received your request.

We will process all such requests in accordance with local laws.  To assert one of rights below, please send an email to DPO@microbotmedical.com  indicating that you wish to make a request. 

Right of access

You may ask us for a copy of the information we hold about you at any time, and request us to modify, update or delete such information. If we provide you with access to the information we hold about you, we will not charge you for this unless permitted by law. If you request further copies of this information from us, we may charge you a reasonable administrative cost.  Where we are legally permitted to do so, we may refuse your request.  If we refuse your request, we will always tell you the reasons for doing so.

If you would like to request access to your information, it would assist us with dealing with your request if you could use the subject heading ‘Data Subject Access Request’, or quote this over the phone, when contacting us. Please note that this is not mandatory, and we will still deal with any requests without this reference.

Right to rectification of incorrect data

You have the right to request from us the immediate rectification of the Personal Data concerning you, if such data is incorrect or incomplete.

Right to erasure 

You have the right to request that we erase your personal information in certain circumstances. Normally, this right exists where:

  • the data is no longer necessary;
  • you have withdrawn your consent to us using your data, and there is no other valid reason for us to continue;
  • the data has been processed unlawfully;
  • it is necessary for the data to be erased in order for us to comply with our obligations under law; or
  • you object to the processing of your data and we are unable to demonstrate overriding legitimate grounds for our continued processing.

We would only be entitled to refuse to comply with your request for erasure in limited circumstances and we will always tell you our reason for doing so.

When complying with a valid request for the erasure of data we will take all reasonably practicable steps to delete the relevant data.

Right to object

This right may enable you to object to us processing your personal information where we do so for one of the following reasons:

  • where we rely on our legitimate interests to do process your information;
  • to enable us to perform a task in the public interest or exercise official authority; or
  • to send you direct marketing materials and where your right to withdraw consent does not apply.

Except for the purposes for which we are sure we can continue to process your personal information, we will temporarily stop processing your personal information in line with your objection until we have investigated the matter. If we agree that your objection is justified in accordance with your rights under data protection laws, we will permanently stop using your personal information for those purposes. Otherwise, we will provide you with our justification as to why we need to continue using your personal information.

Right to restriction of processing 

You may have the right to request that we restrict our processing of your personal information in certain circumstances, for example if you dispute the accuracy of the personal information that we hold about you, you object to our processing of your personal information for our legitimate interests or you require us to keep it in connection with legal proceedings. If we have shared your personal information with third parties, we will notify them about the restricted processing unless this is impossible or involves disproportionate effort. We will, of course, notify you before lifting any restriction on processing your personal information.

We may only process your information whilst its processing is restricted if we have your consent or are legally permitted to do so, for example for storage purposes, to protect the rights of another individual or company or in connection with legal proceedings.

Right to data portability

If you wish, you may have the right to transfer your personal information between service providers where we rely on your consent or the performance of your contract as the lawful basis to use that information. To allow you to do so, we will provide you with your data in a commonly used machine-readable format so that you can transfer the data. Alternatively, we may directly transfer the data for you if technically possible.

Right to Rectification

You have the right to request that we rectify any inaccurate or incomplete personal information that we hold about you. If we have shared this personal information with third parties, we will notify them about the rectification unless this is impossible or involves disproportionate effort. You may also request details of the third parties to whom we have disclosed the inaccurate or incomplete personal information. Where we think that it is reasonable for us not to comply with your request, we will explain our reasons for this decision.

Right to Confirm

You may have the right to confirm whether or not we process your personal information.

Right to Withdraw Consent

Where we have obtained your consent to process your personal information for certain activities (for example, for marketing), you may withdraw this consent at any time and we will cease to use your personal information for that purpose unless we consider that there is an alternative legal basis to justify our continued processing of your data for this purpose, in which case we will inform you of this condition. If you withdraw your consent, our use of your personal information before you withdraw is still lawful.

To withdraw your consent to marketing communications, please use the unsubscribe tool in the relevant communication. Alternatively, you can contact us using the contact details in this notice.

Right to lodge a complaint

If you would like to make a complaint or if you have any questions about how we use or keep your personal information, you may contact us using the contact details in this notice.

You may have the right to lodge a complaint with the relevant supervisory authority for your jurisdiction (e.g., your attorney general’s office), if you believe our processing of your personal information violates applicable law.

Non-Discrimination

You have the right not to receive discriminatory treatment by us for the exercise of you rights conferred by state privacy laws.

Authorized Agent

Only you, or someone legally authorized to act on your behalf, may make a verifiable consumer request related to your personal information.  You may also make a verifiable consumer request on behalf of your minor child. To designate an authorized agent, please contact us on the details provided below.

Opt-Out of Profiling

You may have the right to opt-out of profiling in furtherance of decisions that produce legal or similarly significant effects, including automated decisions.

Targeted Advertising Opt-Out

You may have the right to opt-out of personal data processing for targeted advertising purposes.

Right to Appeal

You may have the right to appeal when we determine we will not act on a request made by you. To appeal any decision made by us, please contact DPO@microbotmedical.com

Opt-Out of Sale

The Company does not currently sell the personal information of its consumers.  However, if the Company does sell any personal information, you may also have a right to opt-out of certain personal information sales. 

Verification

Upon receiving your request, we will need to verify your identity to determine you are the same person with whom we have the information in our system. These verification efforts require us to ask you to provide information so that we can match it with the information you have previously provided us. For instance, depending on the type of request you submit, we may ask you to provide certain information so that we can match the information you provide with the information we already have on file, or we may contact you through a communication method (e.g., phone or email) that you have previously provided to us. We may also use other verification methods as the circumstances dictate.

 We will only use personal information provided in your request to verify your identity or authority to make the request. To the extent possible, we will avoid requesting additional information from you for the purposes of verification. However, if we cannot verify your identity from the information already maintained by us, we may request that you provide additional information for the purposes of verifying your identity and for security or fraud-prevention purposes. We will delete such additionally provided information as soon as we finish verifying you.

 To exercise these rights, you can contact us by email DPO@microbotmedical.com ,or by referring to the contact details at the bottom of this document. If you have a complaint about how we handle your data, we would like to hear from you

  1. Cross-border Personal Data Transfer and Storage of Your Personal Data 

Microbot Medical is a global organization. Your information will likely be collected in your country and subsequently transferred to or stored in another country, including countries that may have privacy protections less stringent than your jurisdiction.  We take steps to ensure that the information we collect is processed according to this Statement and the requirements of applicable law wherever the data is located.

Microbot Medical has networks, databases, servers, systems, support, and help desks located in the United States. We collaborate with third parties such as cloud hosting services, suppliers, and technology support located around the world to serve the needs of our business, workforce, and customers. We take appropriate steps to ensure that Personal Information is processed, secured, and transferred according to applicable law. In some cases, we may need to disclose or transfer your Personal Information within Microbot Medical or to third parties in areas outside of your home country. The areas in which these recipients are located will vary from time to time, but may include the United States, Israel, and other countries where Microbot Medical has a presence or uses contractors. 

When we transfer Personal Information from the European Economic Area or Canada to other countries in which applicable laws do not offer the same level of data privacy protection as in your home country, we take measures to provide an appropriate level of data privacy protection. For example, we use approved contractual clauses, multiparty data transfer agreements, intragroup agreements, and other measures designed to ensure that the recipients of your Personal Information protect it. If you would like to know more about our data transfer practices, please contact us  DPO@microbotmedical.com .

  1. How Long Do We Keep Your Personal Information?

We will retain your personal information for as long as you have a relationship with us and for a period of time after your relationship with us has ended.

When determining how long this retention period will last once the purpose of processing the personal information has been satisfied, we take into account the length of time personal information is required to:

  • Continue to develop, tailor, upgrade, and improve our services;
  • Maintain business records for analysis and/or audit purposes;
  • Comply with record retention requirements under the law;
  • Defend or bring any existing or potential legal claims; or
  • Address any complaints you may have.

When personal information is no longer required due to the expiration of the personal information holding period, or the purpose for which the personal information has been obtained has been achieved, we will destroy the personal information in accordance with our retention policy.

  1. Security and Safety Measures

Microbot Medical takes data security seriously, and we use appropriate technologies and procedures to protect Personal Information. Our information security policies and procedures are closely aligned with widely accepted international standards and are reviewed regularly and updated as necessary to meet our business needs, changes in technology, and regulatory requirements.

Unfortunately, the transmission of information via the internet is not completely secure. Although we will apply our normal procedures and comply with legal requirements to protect your information, we cannot guarantee the security of your information transmitted to the Website and any transmission is at your own risk.

  1. Links to Other Websites

Microbot’s websites may contain links to other websites. These third-party websites have their own privacy policies, including cookies, and we encourage you to review them. They will govern the use of Personal Information that you submit, or which is collected by cookies whilst visiting these websites. This Statement does not apply to third party websites and any Personal Data you provide to third party websites is at your own risk.

  1. Consent / Acknowledgment

By using or supplying Personal Information through a Microbot Medical website, you signify your agreement and/or your acknowledgment to the terms and conditions of this Statement. If you do not agree to these terms and conditions, please do not disclose any Personal Information through a Microbot Medical website.

  1. Changes

We may make changes to this Statement at any time by posting a copy of the modified notice on the Website or, where appropriate, by sending you an email with that notice.  Any changes will take effect 7 days after the date of our email or the date on which we post the modified terms on the Website, whichever is the earlier.

  1. Contact Information

For more information regarding this policy, please contact:

Data Protection Officer

Microbot Medical, Inc. 

175 Derby Street, #27,

Hingham, MA 02043

microbotmedical.com

Or email: DPO@microbotmedical.com )