medikard

Security for medical data

Medical information is highly sensitive. Medikard is designed around data minimization, account isolation, traceability, and user control.

Encryption

Connections use modern TLS, HSTS, and authenticated APIs. The database is not directly exposed to the internet.

Account isolation

Application and database controls bind every data request to the authenticated account.

Consent and retention

Consent is explicit and versioned, access is logged, and retention periods are defined for sensitive data.

Portable and deletable

Export the complete record on any plan or delete the account and associated data.

No advertising data sales

Medikard is subscription-funded and does not monetize medical records through advertising.

No model training

Personal documents and conversations are processed to serve you, not to train models.

Legal framework

Data processing obligations depend on the user’s jurisdiction. Detailed terms are provided in the Privacy Policy and Terms of Use.