We use cookies
Hi, this website uses essential cookies to ensure its proper operation and tracking cookies to understand how you interact with it. The latter will be set only upon approval.
Hi, this website uses essential cookies to ensure its proper operation and tracking cookies to understand how you interact with it. The latter will be set only upon approval.
Version updated November 9, 2023
Medicaprofis committed to ensuring a high level of protection of your personal data(hereinafter, “Personal Data”) and to comply with the provisions of the "Informatique et Libertés" Law of July 6, 1978, as well as those of the Regulation of April 27, 2016, relating to the protection of individuals with regard to the processing of personal data and the free movement of such data. (General Data Protection Regulation or GDPR)(hereinafter the« Regulations relating to the protection of personal data »)..
This privacy policy provides information on the characteristics of the Personal Data processing implemented by MEDICAPROF through its platform and mobile application. (the «Services» ) and your rights.
) and your rights.
The MEDICAPROF Services are published by the company BRHYTECH. support@medicaprof.com. To ensure the best protection of your personal data, we have designated a data protection officer whom you can contact at the following address: support@medicaprof.com
We only collect the Personal Data strictly necessary for the needs of our activities. Under no circumstances do we sell your Personal Data to third parties. Some data is mandatory, others are optional, as indicated to you at the time of collection of the Personal Data. If you do not wish to provide this data, it is possible that all or part of the Services may not function.
Depending on the Processing carried out within the framework of the use of the Services, MEDICAPROF may act as Data Controller or Subcontractor on behalf of doctors, pharmacists, analysis laboratories and medical imaging centers (hereinafter the "Health Professionals").
The use of our Services requires the creation of a user account. We collect your Personal Data in order to create a personalized space protecting all the data you entrust to us and to allow you to access all the functionalities offered by MEDICAPROF.
We base this collection on the execution of the contract established by our General Conditions of Use - GCU that you accepted during your registration to the Services.
| Data category | Purposes | Sources | Recipients | Retention period |
|---|---|---|---|---|
| Identification data: Gender, Last name, first name, date of birth… Contact details: Postal address, email address, telephone number Account data: Password, date and time of account creation and deletion, Technical identifier of the devices (IP + identifier) | Creation, management and deletion of the User Account Securing the Services | You. | MEDICAPROF Providers | Either until the request for deletion, or after 2 years of inactivity The data is erased from the backups 10 days after the deletion of the account |
In order to allow you to gather your Health Data in a single space, MEDICAPROF offers you to connect its application to your other health devices and applications in order to import the information generated by your activity. We base this processing on your consent collected during your registration to our Services.
| Data category | Purposes | Sources | Recipients | Retention period |
|---|---|---|---|---|
| Data from the connected device: Identifier (Google Fit, Apple Health etc…) Health metrics: Heart rate, calories burned, glycemic index, weight, number of steps (speed, stride length) | Synchronization with your connected health devices Synthesis of your health metrics | You Your supplier of connected health devices | MEDICAPROF Providers | Until your request for deletion or the deletion of the account. |
Our dashboard gives you an overview of your account and your information.
We base this processing on the execution of the Contract (GCU) for information relating to your user account and your consent for your Health Data.
| Data category | Purposes | Sources | Recipients | Retention period |
|---|---|---|---|---|
| Identification data (Gender, Last name, first name, date of birth…), profile photograph Contact details (Postal address, email address, telephone number Health metrics: Heart rate, calories burned, glycemic index, weight, number of steps (speed, stride length) | Management of your MEDICAPROF account | You Your supplier of connected health devices | MEDICAPROF Providers | Until your request for deletion or the deletion of the account. |
MEDICAPROF allows you to centralize all your Health Data such as the metrics measured by your connected devices and your documents such as analysis or medical imaging reports, prescriptions. You can then communicate the useful information to the Health Professionals you consult in complete safety.
We base this processing on your consent collected during your registration to our Services.
The characteristic principles of this processing are:
| Data category | Purposes | Sources | Recipients | Retention period |
|---|---|---|---|---|
| Identification data (Gender, Last name, first name, date of birth…) Contact details (Postal address, email address, telephone number Health data: Weight, height, history of operations, allergies, chronic diseases, genetic diseases, information concerning an illness, a disability, a risk of illness, medical history, clinical treatment or the physiological or biomedical condition of the person concerned etc.… health professionals consulted, doctor ID specialties, date of last appointment, medical report, prescription, test results, other health documents, health metrics | Hosting, saving and transmission of data uploaded by the patient in their medical file on behalf of the patient | You Your supplier of connected health devices | MEDICAPROF Providers Health professionals (at your request) | Until your request for deletion or the deletion of the account. |
MEDICAPROF allows you to find a Health Professional and make appointments.
You can also send them any useful information or document in preparation for the appointment.
We base this collection on your consent
| Data category | Purposes | Sources | Recipients | Retention period |
|---|---|---|---|---|
| Identification data (Gender, Last name, first name, date of birth…) Contact details (Postal address, email address, telephone number) Data on the appointment: Date and time of appointment, place of appointment, reason for cancellation Health data: Weight, height, history of operations, allergies, chronic diseases, genetic diseases, information concerning an illness, a disability, a risk of illness, medical history, clinical treatment or the physiological or biomedical condition of the person concerned etc.… health professionals consulted, doctor ID specialties, medical report, prescription, test results, other health documents, health metrics | Management of appointments for your account | You | MEDICAPROF Providers Health professionals (at your request) | Until your request for deletion or the deletion of the account |
MEDICAPROF allows your Health Professional to keep all the data of a Patient including their Health Data collected during their consultation as well as the documents transmitted by the patient or established by the Health Professional such as analysis or medical imaging reports, prescriptions.
| Data category | Purposes | Sources | Recipients | Retention period |
|---|---|---|---|---|
| Identification data (Gender, Last name, first name, date of birth…) Contact details (Postal address, email address, telephone number) Health data: Weight, height, history of operations, allergies, chronic diseases, genetic diseases, information concerning an illness, a disability, a risk of illness, medical history, clinical treatment or the physiological or biomedical condition of the person concerned etc.… health professionals consulted, doctor ID specialties, date of last appointment, medical report, prescription, test results, other health documents, health metrics | Hosting, saving and transmission of the patient's data in a personalized medical file on behalf of the Health Professional | You Your Health Professional | MEDICAPROF Providers Health professionals | The duration defined by the Health Professional (These durations may vary from one Health Professional to another) |
MEDICAPROF offers Professionals a system for managing their agenda and their patient appointments.
At their request, you may be required to send them any useful information or document in preparation for your appointment.
| Data category | Purposes | Sources | Recipients | Retention period |
|---|---|---|---|---|
| Identification data (Gender, Last name, first name, date of birth…) Contact details (Postal address, email address, telephone number Data on the appointment: Date and time of appointment, place of appointment, reason for cancellation Health data: Weight, height, history of operations, allergies, chronic diseases, genetic diseases, information concerning an illness, a disability, a risk of illness, medical history, clinical treatment or the physiological or biomedical condition of the person concerned etc.… health professionals consulted, doctor ID specialties, medical report, prescription, test results, other health documents, health metrics | Management of agendas and appointments on behalf of the Health Professionals | You Health professional | MEDICAPROF Providers Health professionals | The duration defined by the Health Professional (These durations may vary from one Health Professional to another) |
The Personal Data collected is only intended to be used by MEDICAPROF and the Health Professionals. We do not transmit data to third parties without your consent.
Your Personal Data is hosted within the European Union.
We use third-party providers to host and protect your data.
In this context, it is sometimes necessary to share your data with these providers to allow the proper functioning of the services. We only share your data when it is strictly necessary and in accordance with the guarantees detailed in this privacy policy.
When personal data is transferred to a third party located outside the European Economic Area (EEA), we take the necessary measures to ensure that your rights to respect for your privacy continue to be protected by using the safeguard mechanisms provided for by the GDPR and complying with the recommendations of the supervisory authorities, reinforced by contractual and technical measures.
MEDICAPROF and its technical service providers AMAZON WEB SERVICES - AWS (hosting) CLOUD FLARE (securing access to systems) protect the security of your personal data.
Our providers are certified according to the main international standards including ISO 27001. CLOUD FLARE is a member of the EU cloud code of conduct guaranteeing a high level of data protection and enhanced security measures.
All data and in particular health data are hosted by AWS certified "Health Data Host - HDS" in order to comply with the provisions of the Public Health Code and offer them greater security.
We maintain internally electronic and organizational security measures in relation to the collection, storage and communication of data concerning our Users.
When we process the data as Data Controller, you can contact us to exercise the rights detailed below. When we act as Subcontractor for the Health Professionals, they are the recipients of your requests to exercise rights and you must contact each of them. However, we will not fail to pass on the requests that concern them.
You have the right to access the data we hold about you.
This includes the right to ask us for the following additional information:
·The categories of data we process
·The purposes of data processing
·The categories of third parties to whom the data may be communicated
·The duration of data retention (or the criteria for determining this duration)
·Your other rights concerning our use of your data.
After ensuring your identity and that you are indeed the person concerned by the data or their duly authorized representative, we will send you this information as soon as possible, unless this harms the rights and freedoms of any other person. (For example: right to respect for private life or right of intellectual property of another person.)
You have the right to request the correction of any inaccurate personal data concerning you.
You have the right to limit the way we use your Personal Data.
This right is intended to apply in limited circumstances, for example when you dispute the accuracy of your Personal Data. In this case you can request the limitation of the use of your data while we can verify the accuracy of your data.
You have the right to object to our continuing to process your data, when the processing is based on a legitimate interest.
To exercise this right, you must provide MEDICAPROF with the reasons related to your particular situation justifying your opposition. We may continue to process the data and therefore reject your request, if there are compelling legitimate grounds for the processing which override your interests and your rights, or if the data is necessary for the establishment, exercise or defense of a legal claim.
You have the right to request the portability of your data to another service provider when the legal basis of the processing is based on your consent or on the execution of a contract.
We will provide you with a copy of your data so that you can provide it to another service. If you request it, and if this is technically possible, we will transfer this data directly to this other provider on your behalf. We will not carry out this transfer in the event that this entails the disclosure of data belonging to other people.
You have the right to request the right to be forgotten by the Data Controller.
You can ask us to delete the personal data that we process concerning you, insofar as it is no longer necessary for us to keep them for the activities of MEDICAPROF or that you withdraw your consent. (If consent is the legal basis used to process your data)
The right to be forgotten applies unless the data must be kept for reasons of legal or regulatory requirements, for security, safety and fraud prevention purposes, or because of a problem related to the account such as a dispute or a complaint.
You have the right to lodge a complaint with the competent supervisory authority.
If you encounter difficulties relating to the processing of your Personal Data, we invite you to contact us beforehand so that we can provide the best solution.
If you believe that the processing of your Personal Data is contrary to the provisions in force, You also have the right to lodge a complaint with the competent supervisory authority, if you believe that the processing of your personal data is contrary to the provisions in force, you can send your complaint to the National Commission for Information Technology and Civil Liberties (CNIL) at the following address: https://www.cnil.fr/fr/plaintes or by mail to 3, Place du Fontenoy, TSA 80715, 75334 Paris Cedex 07.
We do not make any automated decisions about you, we do not carry out any profiling.
You can exercise the rights set out above by writing to us by email at the following address: support@medicaprof.com
We will reply to you within one month from the date of receipt of your request. This period may be extended to two months in the event of a particularly complex request.