Privacy Policy

Effective Date: September 10, 2026 · Version 2026-09-10.2

1. Introduction

MedicalGPT ("we," "our," "us") provides an AI-assisted health companion available on the web and as a mobile app ("Service"). See Section 12 for the legal entity operating the Service. Because the Service is built around your health information, this policy is deliberately specific about what we collect, why, and who it's shared with — not just a generic outline. By creating an account or using the Service you agree to the practices described here.

2. Information We Collect

We collect the following categories of information:

Account & identity data

  • Email address, username, and password (stored as a salted hash, never in plain text)
  • Authentication data if you sign in via Google or a one-time emailed "magic link"
  • Basic profile details you provide (name, date of birth, sex, height/weight)

Health & medical information you provide

  • Symptoms, severity, duration, and body location you log for your urgency awareness check
  • Existing conditions, medications, dosages, and schedules you record
  • Health timeline entries, lab reports, and documents you upload (including any the app OCR-scans or summarizes)
  • Family member health records you add to a shared family vault
  • "Second opinion" requests and the case details you submit with them
  • Wearable device data you choose to sync (e.g. steps, heart rate, sleep), where supported
  • Calorie/diet log entries and workout plan data
  • Voice recordings you submit for transcription (e.g. voice notes for symptom logging), and the resulting transcript
  • Your conversations with the AI assistant/chat, including any files you attach to a conversation

Technical & usage data

  • Device type, operating system, app version, and crash/error diagnostics
  • General usage patterns (which features you use) to help us fix bugs and prioritize improvements
  • IP address and approximate location derived from it, for security and fraud prevention

Payment data

  • Subscription/plan status and billing history. Card numbers are never collected or stored by us — see Section 8.

3. How We Use Your Information

  • To generate the AI-powered health insights, urgency awareness check results, and chat responses you request
  • To let you track, and share within your family vault, ongoing health information over time
  • To send you account, security, and (where you request them) magic-link sign-in emails
  • To process payments and manage your subscription/credits
  • To detect, investigate, and prevent fraud, abuse, and security incidents
  • To fix bugs, monitor uptime, and improve the Service

We do not use your health data to train third-party general-purpose AI models, and we do not sell your personal or health information to anyone, for any purpose.

We rely on your consent to process the health information you choose to share (given at sign-up, and required before any AI feature that uses it), on contractual necessity to run the account and subscription features you sign up for, and on our legitimate interest in keeping the Service secure to detect and prevent fraud and abuse.

4. Who We Share Data With

We do not sell your data. We share the minimum data necessary with the following categories of service providers, solely so they can perform the function we use them for:

  • AI providers — to generate chat responses and urgency awareness check results, relevant parts of your request (e.g. symptoms, conversation text) are sent to Fireworks AI, the AI model provider that powers that feature. We do not use your health conversations to train AI models without your explicit separate consent.
  • Cloud hosting & storage — application data and any files/images/documents you upload are stored on our cloud infrastructure (including AWS S3 for file storage).
  • Payments — Stripe processes all payments; we never see or store your full card number (Section 8).
  • Email delivery — transactional emails (verification, magic links, receipts) are sent through a third-party email provider.
  • Authentication — Google sign-in is brokered through Supabase; we receive only the account details needed to create your MedicalGPT account.
  • Crash & error monitoring — technical crash reports (not your health data) are sent to our error-monitoring provider so we can fix bugs.

We may also disclose information if required by law, to protect the rights and safety of our users, or in connection with a merger, acquisition, or sale of assets (subject to this policy continuing to apply to your data).

Our infrastructure is US-based, so data from users elsewhere is transferred to and processed in the US. Our providers (AWS, Stripe, Supabase, and Resend) each participate in the EU-U.S. Data Privacy Framework, and our AI provider's data processing terms incorporate Standard Contractual Clauses — both are recognized safeguards for transferring personal data out of the EU/UK.

5. Sensitive Health Information

We treat everything in Section 2's "Health & medical information" category as sensitive. Where our infrastructure supports it, particularly sensitive fields are stored encrypted at rest, access to them is restricted to what each part of the Service needs to function, and administrative access is logged. Note that the Service is a wellness/health information tool, not a substitute for professional medical diagnosis, treatment, or emergency care — see the Terms & Conditions and in-app disclaimers.

We are not a HIPAA-covered entity or business associate — MedicalGPT is a direct-to-consumer service and does not process protected health information on behalf of a hospital, clinic, insurer, or other HIPAA-covered entity. As a service that lets you manage your own health-related information, we follow the safeguards described in this policy and, where applicable, the notification practices described in the FTC's Health Breach Notification Rule, including notifying affected users without unreasonable delay if a breach of unsecured personal health information occurs.

6. Security Measures

We use industry-standard safeguards including encryption in transit (HTTPS/TLS) for all traffic, encryption at rest for sensitive stored fields, hashed (not reversible) password storage, access controls on our infrastructure, and monitoring for suspicious activity. No system is 100% secure, and we encourage you to use a strong, unique password and enable two-factor authentication where offered.

7. Your Rights & Choices

  • Access & correction — you can view and update most of your information directly in the app.
  • Deletion — you can request full deletion of your account and associated data by contacting us (Section 12). We will delete your data except where we're legally required to retain it (e.g. billing records).
  • Data export — you can request a copy of your data by contacting us.
  • Marketing emails — non-essential emails include an unsubscribe option; account/security emails cannot be turned off while your account is active.
  • Permissions (mobile) — microphone access is only used when you actively record a voice note, and can be revoked anytime in your device settings (this will disable voice-note features).
  • Restriction and objection (EU/UK) — you can ask us to pause processing your data, or object to processing based on our legitimate interests, by contacting us (Section 12).

Urgency awareness check results are generated automatically from what you enter; they are not used to make any decision about you, but if you'd like a human to look at a specific result with you, contact us (Section 12). We do not sell or share your personal information for cross-context advertising, and California residents can ask us to limit the use of sensitive personal information (such as health data) beyond what's needed to run the Service — again, by contacting us. Exercising any of these rights will not result in different treatment or pricing.

8. Payments

Subscription payments are processed by Stripe. We store your subscription status, plan, and billing history, but we never receive or store your full card number, CVV, or bank details — those go directly to Stripe under its own privacy policy and security standards.

9. Data Retention

We retain your account and health data for as long as your account is active, so the Service can keep showing you your own history (e.g. medication schedules, symptom trends over time). If you delete your account, we delete your personal and health data within a reasonable period, except for records we're legally required to keep (such as billing/tax records) or data needed to resolve disputes or enforce our agreements.

10. Children's Privacy

The Service is not directed to, and is not intended for use by, children under 13 (or the minimum age required in your country). We do not knowingly collect personal information from children. If you believe a child has provided us information, contact us (Section 12) and we will delete it. We rely on users to accurately confirm their age at registration. If we discover a user is under 13, we will immediately delete their account and all associated health data.

11. Changes to This Policy

We may update this Privacy Policy as the Service changes. Material changes will be reflected by an updated Effective Date at the top of this page, and where required by law we'll provide additional notice (e.g. by email).

12. Contact Information

For privacy questions, access/deletion requests, or anything else in this policy, contact us at hello@askmedicalgpt.com — this is also our designated privacy contact for Canadian users under PIPEDA.

TangentX LLC
30 N Gould St Ste N, Sheridan, WY 82801
(650) 300-0125

By using MedicalGPT, you agree to this Privacy Policy.