MediVault Privacy Policy
Effective August 30, 2026
MediVault handles sensitive health information. This policy describes the current release candidate and does not claim ABHA integration, certification, or a production cloud service that has not been independently verified.
Information you provide
- Account information such as mobile number and authentication/session information when a working backend is configured.
- Health information you enter or import, including medications, medical documents, consultation notes, and profile information.
- Camera images or selected files when you scan or import a document.
- Consultation audio when a doctor deliberately uses the AI Scribe recording feature.
How information is used
Information is used to provide record organization, medication tools, document scanning, consultation-note features, authentication, security, and user-requested support. Health information is not sold or used for advertising.
Device permissions
MediVault requests camera access for document scanning and microphone access for the doctor-facing recording feature. It does not request broad legacy external-storage access in the current Android release. Android cloud backup is disabled and screenshots are blocked by the app for additional privacy.
Network and service providers
The production app is designed to use a verified HTTPS MediVault API. If no verified production API or SMS provider is configured, authentication fails closed rather than accepting a demo OTP. Features that contact a backend or AI processor can transmit the information needed to perform the user-requested operation. Production provider, retention, residency, and deletion claims must be confirmed before public release.
Optional supporter purchase
If available, the app offers an optional one-time lifetime supporter purchase. No health-record feature is locked behind it. Google Play and RevenueCat process product, purchase, entitlement, and device/account identifiers needed to complete and restore the purchase. MediVault does not receive your full payment-card or bank details. The app displays only the localized price returned by the store.
Retention, deletion, and your choices
You may remove records from the app. A public release will not be submitted until production account deletion, backend deletion, consent handling, and retention behavior have been independently verified and accurately documented. Until then, the release candidate is for controlled testing only.
Children and medical advice
MediVault is a record-management tool, not a substitute for a clinician, diagnosis, or emergency service. A public child-directed release is not claimed by this policy; Play target-audience and health declarations must match the final tested product.
Contact
Privacy and deletion requests: ppandya@synergyb.com
Synergy Business Solutions Inc
75 Executive Dr, Suite 347
Aurora, IL 60504
630-708-0271