Privacy Policy

Last updated: March 2026

1. Information We Collect

When you create an account, we collect your name, email address, date of birth, and optionally your insurance ID. When you upload medical reports, we process the document to extract health values, lab names, report dates, and other medical information.

2. How We Use Your Information

Your health data is used solely to provide you with the DocDroid service: interpreting reports, tracking health trends, and enabling secure sharing with healthcare providers you authorize. We do not sell, rent, or share your personal health information with third parties for marketing or advertising purposes.

3. Data Security

All health data is encrypted using AES-256 encryption at rest. Data in transit is protected with TLS 1.3. Access to your data is controlled through secure authentication tokens. We implement strict access controls and audit logging to protect your information.

4. Data Residency

You can choose your data region during registration. Your data is stored and processed within the selected region (UAE, EU, US, or SA) in compliance with local data protection regulations, including the UAE Personal Data Protection Law (PDPL).

5. Consent Management

You have full control over who can access your health records. You can grant and revoke access to hospitals and insurance companies at any time through the Access Management section of your dashboard.

6. Your Rights

You have the right to access, correct, or delete your personal data at any time. You can export your health records or request complete account deletion by contacting our support team at john@ai-it.io.

7. AI Processing & Third-Party Data Sharing

DocDroid uses artificial intelligence to process your medical documents, provide health insights, and power the AI Health Assistant chat feature. To provide these services, certain data is shared with a third-party AI service provider:

Third-Party AI Provider: Anthropic (Claude AI)

What data is sent:

  • Your chat messages and questions when using the AI Health Assistant
  • Relevant medical report data including lab results, health values, and report summaries to provide context for AI responses
  • Basic health profile information such as age group and gender for personalized insights
  • Uploaded document content during report processing to extract medical information

What data is NOT sent:

  • Your name or email address
  • Your account credentials or authentication tokens
  • Your insurance ID or payment information

How your data is protected:

  • All data is transmitted over encrypted (TLS) connections
  • Anthropic does not use your data to train their AI models
  • Data is processed in real-time and not persistently stored by the AI provider for training purposes
  • You must explicitly consent to AI data sharing before using the AI Health Assistant

AI-generated interpretations and insights are for informational purposes only and do not constitute medical advice, diagnosis, or treatment recommendations. Always consult a qualified healthcare provider for medical decisions.

8. Contact

For privacy-related inquiries, please contact us at john@ai-it.io or visit our Contact page.