Legal
Privacy Policy
Last updated: April 17, 2026
MedMemo (“App”, “we”, “us”, or “our”) respects your privacy and is committed to protecting your personal information. This Privacy Policy explains what we collect, how we use it, and the choices you have when you use MedMemo.
1.Information We Collect
Health and medication data you enter:
- Medications, dosages, schedules and the plans you organize them into
- Health diary entries: well-being, sleep, weight, blood pressure, temperature, heart rate, oxygen saturation, blood glucose, pain entries (location, type and level) and any notes you write
- App preferences — unit system, language, week start, notification settings
This data is stored in your account on Google Firestore (a Google Cloud service) so it can sync across your devices. It is protected by your account credentials and transmitted over encrypted connections.
Account information:
- Your name and email address when you sign in with Apple or Google
- A unique account identifier used to link your data to you
- Push notification tokens, when you enable medication reminders
Subscription information:
- Your Premium subscription status, managed by Apple through the RevenueCat SDK. We receive anonymised status information but do not have access to your payment details.
Diagnostic information:
- If the app crashes or encounters an error, diagnostic data is sent to Sentry so we can fix it. We make reasonable efforts to scrub personal information from these reports.
2.How We Use Your Information
We use the information described above to:
- Provide and maintain the app's core features — plans, the medication feed and the health diary
- Sync your data across devices where you are signed in
- Send medication reminders and related notifications you have enabled
- Manage your subscription status
- Diagnose and fix bugs and crashes
3.Sensitive Health Information
MedMemo is designed for personal health tracking. The information you enter — medications, symptoms, vitals, mood and pain — is sensitive by nature. We treat it as such: We do not sell this data. We do not use it to build advertising profiles. We do not share it with insurers, employers or data brokers. We access it only when required to operate the service, investigate abuse or comply with law, and only to the minimum extent needed.
4.Data Storage and Security
Your data is stored on Google Cloud infrastructure (Firestore and Firebase Authentication) under accounts controlled by MedMemo. Data in transit is encrypted using TLS. Data at rest is encrypted by Google Cloud by default. We follow industry-standard practices to protect your information, but no method of electronic transmission or storage is 100% secure. Please use a strong device passcode and keep your Apple ID or Google account secure.
5.Third-Party Services
MedMemo uses the following third-party services:
- Firebase (Google) — Authentication, Firestore database, and Cloud Messaging for push notifications
- Sign in with Apple and Google Sign-In — To create and authenticate your account
- RevenueCat — Subscription management through the Apple App Store
- Sentry — Anonymised crash and error reporting
- PostHog — Anonymised usage analytics on this website (pages visited, buttons clicked). Not used inside the app.
Each provider operates under its own privacy policy. We only share the minimum data each needs to perform its function.
6.Data Sharing
We do not sell, rent or trade your personal information. We share information only:
- With the third-party services listed above, strictly to operate MedMemo
- If required by law, subpoena or court order, and only to the extent legally required
- In connection with a merger, acquisition or sale of assets — in which case you will be notified
7.Your Rights
You have control over your data. From within the app you can:
- Edit or delete any individual medication, plan or diary entry
- Request deletion of your account and all associated data by contacting us
- Disable notifications in Settings or in your device system settings
- Manage your subscription through your Apple ID subscription settings
If you are in the European Economic Area, the United Kingdom, or another jurisdiction with similar laws, you may also have rights to access, correct, port or object to the processing of your data. To exercise these, contact us at the email below.
8.Data Retention
We keep your data for as long as your account is active. If you request deletion, we will delete your medication, plan and health diary data from our active systems within 30 days. Backups are rotated on a standard schedule and any residual copies are removed in the normal course of that rotation.
9.Children's Privacy
MedMemo is not intended for children under 16. We do not knowingly collect personal information from children under 16. If you believe a child has provided us with personal information, please contact us and we will delete it.
10.International Data Transfers
Our third-party providers, including Google Firebase, may process your data on servers located outside your country of residence. By using MedMemo you consent to this transfer. We rely on our providers' standard contractual clauses and certifications to ensure adequate protection.
11.Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the "Last updated" date at the top of this page and, for material changes, notify you through the app. You are encouraged to review this page periodically.
12.Contact Us
If you have any questions about this Privacy Policy, please contact us at support@medmemo.app.