1. Who is responsible for your information
The hospital, clinic, or healthcare organization through which you use MediMojo generally determines why and how your information is used. That organization is your first point of contact for privacy requests. MediMojo provides the software used to support those services.
2. Information we handle
Depending on how you use the service, information may include:
- identity and contact information, including your name, email address, date of birth, and Google account identifier;
- patient registration details, optional patient photographs, identity evidence, and organization-specific registration responses;
- appointment, facility, doctor, clinical, medicine, investigation, vaccination, and vital information;
- payment requests, transaction status, invoices, and related billing information;
- account context, access roles, audit history, and technical records needed to secure and operate the service.
3. How information is used
Information is used to authenticate users, register patients, coordinate appointments and care, support clinical and pharmacy workflows, process and reconcile payments, administer healthcare organizations, protect the service, investigate errors, and maintain accountable records.
4. When information is shared
Information is available to authorized people within the relevant healthcare organization according to their role and context. It may also be handled by service providers that support identity, infrastructure, storage, payment processing, email delivery, and service reliability. We do not sell personal or health information.
5. Security and access
The service uses verified Google identity, role-based permissions, organization and facility boundaries, private file storage, and operational auditing. No system can guarantee absolute security, and users must protect their Google account and report suspected unauthorized access promptly.
6. Retention
Healthcare and operational records may need to remain available for care continuity, audit, legal, and regulatory obligations. Records are retained according to the healthcare organization’s policies and applicable requirements. Account tokens can be revoked without removing the underlying care history.
7. Your choices and requests
To request access, correction, or another privacy right, contact the hospital or clinic through which you use MediMojo. The available rights and response process depend on your relationship with that organization and applicable law.
8. Changes to this policy
This policy may be updated when the service or applicable requirements change. The latest version will appear on this page with its updated date.