Privacy Policy
Last updated: 04 September 2026
MediCopilot handles sensitive clinical information. This policy explains what is stored, who can access it, and what we never collect.
1. Who this policy covers
MediCopilot is used by physicians. The physician is the controller of the patient information they enter, and MediCopilot processes that information on their behalf in order to provide the service.
2. Information we store
- Physician account: name, email address, password hash, and optionally specialty, licence number, phone and clinic name.
- Patient records: the identifying and demographic information the physician chooses to enter — patient code, name, date of birth, age, sex, phone, city, occupation and notes.
- Encounter data: the original audio recording, the raw Arabic transcript, the physician-edited transcript, the AI translation, the approved translation, the structured history, the clinical summary, differential diagnoses, recommended investigations, examination recommendations, documented examination findings, medications, drug interaction information, investigation results and management plans.
- Subscription data: plan, status, period dates and the payment reference supplied by the bank.
3. What we never store
MediCopilot does not receive, transmit or store credit-card numbers, CVV codes or any other card data. Card payments are completed entirely on the payment provider's own secure page. Only the payment reference issued by the bank is recorded on your subscription.
4. Access and physician-level isolation
Every patient, encounter, recording and clinical record is owned by the physician who created it. Ownership is verified on the server for every request — not only in the interface. A physician can never read, edit or delete another physician's data.
Patient data is never exposed through public URLs. Audio recordings and files are served only through authenticated, ownership-checked access.
5. Processing by third parties
To provide speech-to-text, translation and clinical decision support, encounter content is sent to the service's AI processing providers. Content is sent for the purpose of producing the requested output for your encounter. Payments are processed by the bank or payment provider you use; MediCopilot receives only the resulting reference.
6. Retention and deletion
Data is retained while your account exists. Deleting an encounter permanently removes its recording, transcripts, translation, documentation and clinical records. Deleting a patient removes that patient together with all of their encounters. These deletions cannot be undone.
7. Your responsibilities as a physician
You are responsible for obtaining any consent required in your jurisdiction before recording a consultation, for entering only the patient information you are permitted to process, and for keeping your account credentials secure.
8. Contact
For any question about this policy or about the data held in your account, contact the MediCopilot account owner through the support channel provided to you.