Security for medical data
Medical information is highly sensitive. Medikard is designed around data minimization, account isolation, traceability, and user control.
Encryption
Connections use modern TLS, HSTS, and authenticated APIs. The database is not directly exposed to the internet.
Account isolation
Application and database controls bind every data request to the authenticated account.
Consent and retention
Consent is explicit and versioned, access is logged, and retention periods are defined for sensitive data.
Portable and deletable
Export the complete record on any plan or delete the account and associated data.
No advertising data sales
Medikard is subscription-funded and does not monetize medical records through advertising.
No model training
Personal documents and conversations are processed to serve you, not to train models.
Legal framework
Data processing obligations depend on the userβs jurisdiction. Detailed terms are provided in the Privacy Policy and Terms of Use.