← Back to EaseMed
🛡️

Privacy Policy

EaseMed Clinical Clerk System · How we collect, use, and protect your data

📅 Effective: January 2025 🌍 Uganda 🔒 Data Protected
📧 What we collect Your name, email, role, and clinical records you create.
🎯 Why we use it To run your account and power your clerking modules.
🚫 We don't sell it Your data is never sold or shared with advertisers.
1

Who We Are

EaseMed is a clinical clerking system built for medical students and healthcare learners, primarily in Uganda. It is structured around Hutchison's Clinical Methods and provides structured modules for history-taking and patient documentation during ward attachments.

This Privacy Policy explains how EaseMed collects, stores, and uses the personal information you provide when creating an account or using the platform.

2

Information We Collect

We collect two categories of information:

Category What It Includes Why We Collect It
Account Information Full name, email address, phone number (optional), role, institution, year of study, license number (optional), practice location To create and manage your account
Clinical Records Patient clerking data you enter into modules (history, symptoms, examination findings, management plans) To power your clerking activity and allow supervisor review
Session Data Login time, IP address, device/browser information For security monitoring and active session tracking by administrators
Usage Data Pages visited, module activity, Vercel Analytics (anonymous) To improve the platform and fix issues
3

How We Use Your Information

We use the information collected to:

  • Create, maintain, and secure your EaseMed account
  • Allow you to save and retrieve clinical clerking records
  • Enable administrators and supervisors to review clerkship activity
  • Monitor for unauthorised or suspicious access via session logs
  • Send important account communications (e.g. email verification, password reset)
  • Improve platform stability and user experience over time
✅ We do not use your data for advertising. EaseMed does not run ads, and your data is never used to build advertising profiles or sold to any third party.
4

Patient Data — Your Responsibility

When you clerk a patient using EaseMed, you may enter clinical information about that patient. As the person entering that data, you are responsible for ensuring it is handled appropriately.

⚠️ Avoid entering full identifying patient information. Use initials, patient codes, or anonymised identifiers wherever possible, in line with your hospital's data privacy policy and Uganda's applicable health data regulations.

EaseMed stores patient clerking data on your behalf as a data processor. You, as the user, remain the data controller for any patient data you enter.

5

Where Your Data Is Stored

EaseMed uses Supabase as its backend database and authentication provider. Your data is stored on Supabase's secure cloud infrastructure. Supabase uses industry-standard encryption (AES-256 at rest, TLS in transit) and is compliant with SOC 2 security standards.

By using EaseMed, you consent to your data being processed and stored on Supabase's infrastructure, which may be hosted outside Uganda.

6

Sharing Your Information

We do not sell, rent, or share your personal data with third parties for commercial purposes. We may share limited data only in these circumstances:

  • Administrators & Supervisors: Authorised EaseMed administrators at your institution can view your clerking records and session activity for oversight purposes.
  • Service Providers: Supabase (database), Vercel (hosting and analytics). These providers only process your data to deliver the service.
  • Legal requirements: If required by Ugandan law or a valid legal authority, we may be required to disclose certain data.
7

Google Sign-In

EaseMed offers sign-in via Google OAuth. If you choose to sign in with Google:

  • We receive your name, email address, and Google profile picture from Google.
  • We do not receive your Google password.
  • Your use of Google sign-in is also governed by Google's Privacy Policy.
8

Your Rights

You have the following rights regarding your data on EaseMed:

👁️
Right to Access Request a copy of the data we hold about you.
✏️
Right to Correct Ask us to correct inaccurate personal data.
🗑️
Right to Delete Request deletion of your account and associated data.
📦
Right to Portability Request your data in a portable format (CSV/JSON).
🚫
Right to Object Object to how your data is being used.
📧
How to Exercise Email us at support@easemed.app to make a request.
9

Data Retention

We retain your account data for as long as your account is active. If you request deletion of your account, we will remove your personal data from our systems within 30 days, except where we are required by law to retain it longer.

Clinical records you have entered may be retained by your institution's administrator for audit or educational review purposes, in line with your institution's own data retention policy.

10

Cookies & Analytics

EaseMed uses minimal browser storage (localStorage) to remember your login session. We use Vercel Analytics to collect anonymous, aggregated usage statistics — this does not identify you personally and does not use advertising cookies.

We do not use third-party advertising cookies or tracking pixels of any kind.

11

Changes to This Policy

We may update this Privacy Policy periodically. The effective date shown at the top of this page will reflect any changes. If changes are significant, we will notify you via your registered email address. Continued use of EaseMed after an update constitutes your acceptance of the revised policy.

12

Contact Us

For any privacy-related questions, data requests, or concerns, please contact us:

📧 Email: support@easemedapp.site
🏥 EaseMed Clinical Clerk System
🌍 Built for Ugandan Medical Students
We aim to respond to all data requests within 14 working days.