SmartPrescribeSmartPrescribe

Privacy Policy

Last updated: May 23, 2026

1. Information we collect

SmartPrescribe collects information to operate a clinical education platform for healthcare professionals. This includes:

  • Account information: Name, professional email, specialty, and credentials used for HCP verification.
  • Clinical interactions: Questions you submit to Ask AI, treatment-planning inputs, conversation history, and optional patient-context fields you choose to enter.
  • Usage data: Feature usage, daily case participation, and technical logs (device, browser, approximate region).

Do not enter patient-identifiable information unless you are authorised to do so and your local policies permit it. SmartPrescribe is designed for professional education, not as a patient medical record.

2. How we use information

Your data is used to:

  • Provide and personalise the educational service (e.g. country-aware SmPC links).
  • Verify professional credentials and manage account access.
  • Maintain conversation history and progress within the platform.
  • Monitor quality, security, and abuse prevention.
  • Produce aggregated, de-identified analytics on platform usage (never sold; see Section 4).

We do not use your identifiable clinical questions to train third-party foundation models for promotional purposes. Optional product improvement may use de-identified or aggregated patterns only, subject to your settings and applicable law.

3. Security & GDPR

We apply industry-standard safeguards, including encryption in transit (TLS) and at rest where supported by our infrastructure providers. We process personal data under the EU General Data Protection Regulation (GDPR) for users in the European Economic Area.

  • Infrastructure partners (e.g. Supabase, Vercel) act as processors under contractual terms.
  • AI inference providers receive only the data necessary to fulfil your request.
  • You may request access, correction, or deletion via profile settings or support.

SmartPrescribe is an HCP education platform, not a covered entity under US HIPAA unless explicitly agreed in a separate business associate agreement for a specific enterprise deployment. US users should not rely on this policy as a HIPAA compliance statement unless such an agreement exists in writing.

4. Data sharing & pharmaceutical sponsors

SmartPrescribe does not sell your personal data or identifiable clinical queries to third parties, including pharmaceutical or medical device companies.

  • Service providers: Hosting, authentication, email, and AI inference only as needed to operate the service.
  • Legal requirements: When required by applicable law or valid legal process.
  • Educational sponsors: If a module is supported by a funding partner, we may report aggregated, non-identifiable metrics (e.g. completion counts, anonymised topic themes). Sponsors do not receive individual user queries, chat transcripts, or personal data. See our Medical Affairs policy.

5. Your rights

You may access, correct, export, or delete your personal data through profile settings or by contacting support@smartprescribe.app. EU/EEA users may lodge a complaint with their local supervisory authority.