Privacy Policy
MedScan · Last updated: April 15, 2026
1. Who We Are
MedScan is developed by Nomly. Contact: fastapps383@gmail.com
2. Medical Data Processing
All DICOM files are processed 100% locally. Medical images never leave your device. The only optional network feature is PACS/DICOMweb import, which talks directly to your own server. If AI analysis features are introduced in the future, they will be opt-in and covered by an updated policy before launch.
3. Information We Collect
We do NOT collect: medical images, patient data, DICOM metadata, your name, email, or location.
We DO collect (automatically):
- Anonymous analytics: feature usage, session frequency — via Firebase Analytics
- Crash reports: technical error data — via Firebase Crashlytics
- Subscription status: managed via Adapty (Apple handles payments)
4. Future AI Features
MedScan does not currently send images to any AI service. If AI-assisted analysis is introduced, it will be strictly opt-in, transmit only the minimum rendered image data with DICOM metadata stripped, and this policy will be updated before the feature ships.
5. Third-Party Services
- Firebase Analytics & Crashlytics — anonymous analytics
- Adapty — subscription management
6. Data Retention
All DICOM data is stored locally on your device and deleted when you remove scans or uninstall the app. Analytics data follows Firebase standard retention (14 months).
7. HIPAA Compliance
MedScan processes medical images locally without transmitting Protected Health Information (PHI). We recommend consulting your institution's compliance officer before handling patient data on personal devices.
8. Contact
Questions? fastapps383@gmail.com