PraxisMD / Privacy Policy

Privacy Policy

Last updated: 10 May 2026  ·  Version 1.0

🔒 Patient data never leaves your device. Clinical notes and patient information are stored locally in your browser only and are never transmitted to PraxisMD servers.

1. Who We Are

PraxisMD ("we", "us", "our") is operated by PraxisMD FZ LLC, a company registered in the Ras Al Khaimah Economic Zone (RAKEZ), United Arab Emirates. This Privacy Policy explains how we collect, use, and protect personal data when you use our service at www.praxismd.app.

For privacy-related enquiries, contact us at support@praxismd.app.

2. Data We Collect

We collect the minimum data necessary to operate the service:

Category Data Collected Purpose
Account data Name, email address, password (hashed), professional title, speciality, clinic name, GMC/NMC/registration number Account creation, verification, and support
Subscription data Subscription tier, plan type, purchase date, PraxisMD ID (PMD-XXXX) Licence management and access control
Verification data Registration certificate image (base64), registration number, submitted name Professional credential verification
Recovery codes SHA-256 hashes of recovery codes only — never plaintext Account recovery
Usage data Firebase authentication logs, function call logs Security monitoring and debugging
Payment data Processed exclusively by Paddle — we receive only confirmation of payment status and subscription tier Billing and access control

3. Data We Do NOT Collect

The following data is explicitly not collected by PraxisMD:

4. Where Data Is Stored

Account and subscription data is stored in Google Firebase Firestore, hosted in the europe-west1 (Belgium) region. This means your data is stored within the European Economic Area (EEA), in compliance with UK GDPR requirements.

Clinical notes are stored in your own browser's local storage. They do not leave your device unless you explicitly export them as PDF.

5. Legal Basis for Processing

PraxisMD FZ LLC is registered in the UAE and complies with applicable UAE data protection laws. Where we serve users in the UK or European Economic Area, we additionally apply the principles of UK GDPR / EU GDPR as a matter of good practice. We process your personal data on the following grounds:

6. Payments — Paddle

All payments are processed by Paddle.com Market Limited, which acts as the Merchant of Record. Paddle collects and processes your payment card details, billing address, and tax information independently under their own privacy policy, available at paddle.com/legal/privacy. PraxisMD does not have access to your full card details at any time.

7. How We Share Data

We do not sell your personal data. We share data only in the following circumstances:

8. Data Retention

We retain your account data for as long as your account is active and for up to 3 years after account closure, in order to meet our legal and financial obligations. Verification documents are retained for the duration of your subscription and deleted within 90 days of account closure. You may request earlier deletion (see Section 10).

9. Security

We implement appropriate technical and organisational measures to protect your personal data, including:

10. Your Rights (UK GDPR)

If you are based in the UK or EEA, you have the following rights regarding your personal data:

To exercise any of these rights, contact us at support@praxismd.app. We will respond within 30 days.

11. Cookies

PraxisMD uses only essential cookies and browser storage mechanisms required to operate the application (e.g. authentication state, session tokens). We do not use advertising cookies, tracking cookies, or third-party analytics cookies. No cookie consent banner is displayed because we do not use non-essential cookies.

12. Children

PraxisMD is not directed at persons under the age of 18. We do not knowingly collect personal data from children.

13. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify registered users of material changes by email. Continued use of PraxisMD after the effective date of changes constitutes acceptance of the updated policy.

14. Contact and Complaints

For any privacy questions, contact us at support@praxismd.app.

PraxisMD FZ LLC is registered in the UAE. If you are a UK-based user and believe we have not handled your personal data correctly, you may also lodge a complaint with the UK Information Commissioner's Office (ICO) at ico.org.uk. EU-based users may contact their local data protection authority.