Privacy Policy
Last Updated: October 1, 2026
1. Introduction
At MedCueAI, data privacy and security are paramount. This Privacy Policy outlines how we collect, use, and safeguard personal and institutional information when you use our website, Hospital Management System (HMS), Clinic Management System (CMS), and related services.
2. Enterprise & Patient Data (HIPAA)
MedCueAI acts as a Business Associate for our healthcare clients. We enter into formal Business Associate Agreements (BAAs) to securely host Protected Health Information (PHI). We employ industry-leading encryption (AES-256 for data at rest, TLS 1.3 for data in transit).
We do not sell, rent, or share patient data for marketing purposes. Access to PHI is strictly restricted via role-based access control assigned by your institution's administrators.
3. Information We Collect
- Contact Information: Names, emails, phone numbers provided via our contact or demo forms.
- Account Data: Credentials and institutional identifiers for platform access.
- Usage Data: Anonymous analytics on website usage to improve our design and delivery.
4. Cloud Infrastructure
Data is processed within isolated cloud regions chosen by the client (US, EU, APAC) to comply with regional data residency laws such as GDPR or HIPAA.
5. Contact Us
If you have legal or compliance questions regarding data processing at MedCueAI, please reach out to our DPO (Data Protection Officer) at:
privacy@medcueai.com