Privacy Policy
Last updated: 4 August 2026
MediCore is operated by Wizzora Agency. This policy explains how we handle personal data across the platform. For clinical/patient data, clinics are the data controllers and MediCore acts as a processor on their behalf.
1. Data we process
- Account data: clinic and staff names, emails, phone numbers, roles.
- Patient/clinical data entered by clinics: demographics, medical records, appointments, prescriptions, documents/scans, invoices.
- Usage & technical data: log/audit entries, device/IP for security.
2. How we use it
To provide and secure the Service, process payments, send transactional messages (e.g. appointment confirmations/reminders), and support and improve the platform. We do not sell personal data or use patient data for advertising.
3. Security
- Database-enforced tenant isolation (row-level security) so clinics cannot access each other’s data.
- Role-based access control, audit logging, encryption in transit (HTTPS), and encryption of sensitive credentials at rest.
- Regular database backups.
4. Sharing
We share data only with sub-processors needed to run the Service (e.g. hosting, our payment provider Paymob, and email/messaging providers), under appropriate safeguards, and where required by law.
5. Retention
We retain data for as long as your subscription is active and as needed to comply with legal obligations. On account closure you may request export or deletion of your data (subject to legal retention requirements).
6. Your rights
Depending on your jurisdiction (including GDPR where applicable), you may request access, correction, export or deletion of personal data. Patients should direct such requests to their clinic; clinics can contact us for assistance.
7. Cookies
We use only essential cookies required for authentication and security.
8. Contact
Wizzora Agency · +20 128 701 9991 · info@wizzora.app
This is a general template; have it reviewed by qualified counsel (and complete HIPAA/GDPR requirements) before commercial launch.