Legal & Compliance

Privacy Policy

MediChoose is committed to protecting your personal data and ensuring absolute transparency. This document explains our data practices in strict compliance with international privacy standards, including GDPR.

Last updated: August 2025

1.0 Information We Collect

To provide our services effectively, we collect specific categories of personal and medical information. This includes:

  • Full name, email address, and phone number for account creation and communication.
  • Voluntarily submitted health-related information necessary for clinical evaluation.
  • Uploaded documents, imaging, or laboratory results provided by the patient.
  • Treatment objectives, scheduling preferences, and travel requirements.

2.0 How We Use Your Data

Your information is utilized strictly for the operation and improvement of the MediChoose platform. Primary uses include:

  • Facilitating secure connections between you and verified partner clinics.
  • Customizing and improving your user experience on our platform.
  • Providing customer support and responding to medical or technical inquiries.
  • Analyzing platform usage metrics for technical performance optimization.
  • Transmitting essential updates, security alerts, and service-related notifications.

3.0 Data Sharing with Third Parties

We explicitly do not sell, rent, or trade your personal data.

Your data is only shared under the following restricted circumstances:

  • With medical clinics only after you have initiated contact or requested an offer through MediChoose.
  • With our internal compliance team for request validation and handling.
  • With legal or regulatory authorities if mandated by binding law or court order.

4.0 Data Security Protocols

We deploy enterprise-grade security architecture to protect your personal and medical data against unauthorized access, alteration, or destruction.

SSL/TLS Encryption

All data is encrypted in transit.

Access Controls

Role-based, least-privilege access.

Secure Hosting

Hardened cloud infrastructure.

5.0 Your Privacy Rights

Under applicable data protection laws, including the GDPR, you retain complete control over your personal data. You have the right to:

  • Access and export your personal data in a structured format.
  • Request corrections to inaccurate or incomplete information.
  • Request complete deletion of your account and associated medical files.
  • Restrict or object to specific processing activities.
  • Withdraw consent at any time without affecting prior lawful processing.

6.0 Data Retention

Your data will be retained securely only for as long as necessary to fulfill the operational purposes outlined in this policy, or as mandated by statutory legal and medical record retention laws. Upon account deletion, all identifiable data is permanently purged from our active databases.

7.0 Cookies & Tracking

We utilize strictly necessary cookies to ensure basic platform functionality, and analytical cookies to understand user interaction and improve our interfaces. You can manage, review, or disable non-essential cookies via your browser settings at any time.

8.0 Policy Updates

We reserve the right to update this Privacy Policy periodically to reflect technological advancements or legal requirements. Material changes will be communicated via email or prominent platform notifications. Continued use of MediChoose implies acceptance of the revised terms.

9.0 Contact Information

If you have any questions, concerns, or requests regarding this Privacy Policy or your data, please contact our Data Protection Officer (DPO):

MediChoose Legal & Compliance