Legal

Privacy Policy

Effective Date: May 1, 2026  ·  Last Updated: May 1, 2026

1. Who We Are

Mediqrate ("we," "us," or "our") is a health and wellness application that helps you track medications, nutrition, and health reports. We are operated by Yogesh Pawar (operating as Mediqrate), located at Rossland Ave, Nepean, ON K2G 2K8, Canada.

Contact for privacy matters: privacy@mediqrate.com — Response time: Within 30 days

2. The Most Important Thing: Your Health Data Stays on Your Device

Lab reports and medical analysis results are stored exclusively on your device. They are never uploaded to our servers, never shared with third parties, and never used for advertising. When you delete the app, this data is permanently deleted with it.

This is a deliberate design choice, not a limitation. We believe your most sensitive health information should never leave your physical possession.

3. What Information We Collect

3.1 Information You Provide

CategoryExamplesWhere Stored
Account informationName, email addressSupabase (encrypted, Canada region)
Health profileAge, gender, health conditions, goalsSupabase (encrypted)
Medication dataMedicine names, dosages, schedulesSupabase (encrypted)
Meal logsFood names, portion sizes, nutrition valuesSupabase (encrypted)
Health metricsWeight, blood pressure, blood glucose, stepsSupabase (encrypted)
Community postsText posts, comments, likesSupabase (encrypted)
Health assessmentLifestyle, activity level, dietary preferencesSupabase (encrypted)

3.2 Information Stored Only on Your Device

CategoryExamplesNotes
Lab report analysesBlood test results, imaging reportsEncrypted on-device, never uploaded
Report metadataReport type and scan date onlyOnly metadata in cloud, no medical content

3.3 Information Collected Automatically

CategoryExamplesPurpose
Device identifiersInstallation ID (anonymous)Track free-tier usage limits without requiring an account
Usage patternsFeature usage counts per monthEnforce AI scan limits fairly
App performance dataCrash reports (if you consent)Fix bugs and improve stability

3.4 Information We Do NOT Collect

4. How We Use Your Information

PurposeLegal Basis (Canada/PIPEDA)Legal Basis (India/DPDPA)Legal Basis (EU/GDPR)
Provide core app featuresConsent + ContractConsentPerformance of contract
Send medication remindersConsentConsentConsent
Power AI health analysisConsentConsentConsent
Process subscription paymentsContractContractPerformance of contract
Improve app featuresLegitimate interestLegitimate interestLegitimate interest
Comply with legal obligationsLegal obligationLegal obligationLegal obligation

We do not use your health data for advertising, sell it to any third party, or use it to make automated decisions that significantly affect you without your knowledge.

5. AI Features and Your Health Data

5.1 How Vita (AI Chat) Works

When you use Vita, your health data (today's meals, medicines, wellness score, health conditions from your profile) is sent to Google's Gemini AI model to generate personalized responses. Google processes it only to generate your response and does not use this data to train their AI models under our agreement.

5.2 Medicine and Food Scanning

When you scan a medicine label or food item, the image is sent to Google Gemini for analysis. The image is processed and immediately discarded — we do not store your camera images on our servers.

5.3 Lab Report Scanning

Lab report images are analyzed by Google Gemini, but the full analysis result is saved only on your device. We store only non-identifying metadata in the cloud: the type of report and the date of the scan. No medical values, diagnoses, or findings leave your device.

6. Third-Party Services We Use

ServicePurposeData Shared
Supabase (Canada)Database and authenticationAccount data, health metrics, meals, medicines
Google Gemini AIAI analysis for scans and chatImages during scan, health summary for chat
RevenueCatSubscription managementPurchase history, subscription status
Apple App StoreiOS payment processingPayment details (Apple handles directly)
Google PlayAndroid payment processingPayment details (Google handles directly)
Expo (EAS)App delivery and updatesApp version, device type

We do not use Google Analytics, Facebook, or any advertising networks.

7. Data Retention

Data TypeRetention Period
Account informationUntil you delete your account
Health metrics and mealsUntil you delete your account or delete individual entries
Medication recordsUntil you delete your account or delete individual medicines
AI chat history90 days, then automatically deleted
Payment transaction records7 years (required by tax law in Canada)
Lab report analysesStored on your device only — deleted when you delete the app
Usage logs (for AI limits)60 days
Deleted account dataPermanently deleted within 30 days of account deletion request

8. Your Rights

8.1 Rights for Canadian Users (PIPEDA)

8.2 Rights for Indian Users (DPDPA 2023)

8.3 Rights for EU/UK Users (GDPR)

8.4 How to Exercise Your Rights

Within the app: Profile tab → Privacy & Data → Export My Data or Delete All My Data

By email: privacy@mediqrate.com — We will respond within 30 days.

9. Data Security

We protect your data using:

Despite these measures, no method of electronic storage or transmission is 100% secure. We encourage you to use a strong, unique password for your account.

10. Children's Privacy

Mediqrate is not directed at children under the age of 13 (or under 16 in the EU). We do not knowingly collect personal information from children. If you believe your child has provided us with personal information, contact us at privacy@mediqrate.com and we will delete it promptly.

11. Data Transfers

Your data is stored on Supabase servers in Canada (ca-central-1 region). When you use AI features, your data is briefly processed by Google Gemini servers, which may be located in the United States. This transfer occurs under Google's standard contractual clauses which comply with GDPR and PIPEDA requirements.

For Indian users: data may be transferred outside India to Canada and the United States for the purposes described above. By using Mediqrate and accepting these terms, you consent to this transfer.

12. Push Notifications

We send push notifications for:

You can turn off any or all notifications in your device's Settings app at any time.

13. Changes to This Policy

We will notify you of significant changes by sending a push notification, showing an in-app notice when you next open the app, and updating the "Last Updated" date at the top of this page. Continued use of Mediqrate after changes constitutes acceptance of the updated policy.

14. Contact Us

For privacy questions or to exercise your rights:
Email: privacy@mediqrate.com — Response time: Within 30 days

For general support:
Email: support@mediqrate.com

Mailing address:
Yogesh Pawar (operating as Mediqrate)
Rossland Ave, Nepean, ON K2G 2K8, Canada


This Privacy Policy was last reviewed on May 1, 2026.