Privacy Policy

Effective date: September 6, 2026

1. Who we are

MediBox ("MediBox", "we", "us", "our") is a personal medicine-cabinet organizer app. It helps you track the medicines and supplements you own, their expiry dates and quantities, dosing history, and reminders, and optionally share that cabinet with your household.

Data controller / contact: MediBox is operated by an independent individual developer (referred to as “we”, “us”, or “the developer”), identified as the owner of the MediBox developer account on the Google Play Store. For any privacy question or request, contact us at support@medibox-app.com.

Email: support@medibox-app.com

MediBox is offered in English and Ukrainian and is intended for general adult use. It is not directed at children (see ยง8).

2. MediBox is not a medical service

MediBox is a personal organizer. It does not provide medical advice, diagnosis, or treatment, and any in-app recommendations or reminders are general in nature. Always consult a doctor or pharmacist about your medicines and health conditions. See the Terms of Service for the full medical disclaimer.

3. Data we collect

We only collect data you provide or generate by using the app.

3.1 Account & authentication

  • Email address โ€” used as your login identifier.
  • Password โ€” never stored in readable form; it is hashed and managed by our backend authentication provider (Supabase Auth). We cannot see your password.
  • Email verification codes โ€” a short-lived 6-digit code sent to your email to confirm sign-up or to reset your password. Codes expire within minutes and are deleted once used or expired.

3.2 Profile & app settings

  • Optional display name.
  • Language preference (English or Ukrainian).
  • Notification on/off preference.
  • Household membership (which shared household, if any, you belong to).

3.3 Medicine cabinet data (sensitive health-related data)

We treat the contents of your medicine cabinet as sensitive personal (health-related) data. This includes:

  • Medicine/supplement name, active ingredient, purpose, expiry date, quantity, and optional photo.
  • Storage location and category labels you create.
  • Dose-taken usage history and any notes you add.
  • Medication reminder schedules you set.
  • Health conditions you optionally choose to record (e.g. to tailor recommendations) and their severity.

3.4 Household sharing

If you create or join a household, we store the household name and the email addresses of anyone you invite, along with the invite status (pending/accepted/declined).

3.5 Camera & barcode scanning

MediBox uses your device camera for two things:

  • Barcode scanning โ€” the camera preview is analyzed on your device to read a barcode. Camera frames are not uploaded, transmitted, or stored anywhere โ€” only the resulting barcode number is sent to our backend to look up product information.
  • Medicine photos (optional) โ€” if you choose to attach a photo to a medicine entry, that photo is uploaded and stored so it can be shown in your cabinet.

3.6 Purchases & subscription

MediBox Pro is an optional subscription billed and processed by Google Play Billing. We never see or store your card details. We use RevenueCat to manage entitlements; RevenueCat receives your MediBox account ID (a random identifier, not your email) so it can tell our backend whether you have an active subscription, along with subscription status, expiry date, and platform (Android/iOS).

3.7 Push notifications

If you enable notifications, we store a device push token together with your platform and language, so we can deliver expiry, low-stock, and medication reminders to your device.

3.8 IP address & abuse prevention

For endpoints that don't require you to be logged in yet โ€” such as requesting an email verification code โ€” we record your IP address briefly to apply rate limits and prevent abuse (e.g. someone spamming verification emails). This is not used to identify you personally or for any other purpose.

3.9 Diagnostics / crash reports

If the app encounters an unexpected error, a technical error report (error message, stack trace, the screen/component involved, and your account ID if you were signed in) may be logged to help us fix bugs. These logs are automatically deleted after 30 days.

3.10 What we do not collect

  • We do not collect precise or approximate location.
  • We do not collect contacts, SMS, or call logs.
  • We do not use advertising identifiers, and we do not show ads.
  • We do not sell personal data or share it with data brokers.

4. How and why we use your data (legal basis)

PurposeLegal basis (GDPR)
Create and secure your account; provide the core cabinet, reminder, and household-sharing featuresPerformance of a contract (Art. 6(1)(b))
Send verification codes, password resets, and household invite emailsPerformance of a contract / legitimate interests (Art. 6(1)(b)/(f))
Rate-limit and secure endpoints against abuse (IP address)Legitimate interests (Art. 6(1)(f))
Look up product data from a scanned barcodePerformance of a contract (Art. 6(1)(b))
Process health conditions you choose to record, to tailor recommendationsExplicit consent (Art. 9(2)(a)) โ€” given when you add a condition; you can remove it at any time
Manage your Pro subscription and entitlementPerformance of a contract
Diagnose crashes and technical errorsLegitimate interests (Art. 6(1)(f))

You may withdraw consent for health-condition processing at any time by deleting the condition in-app; this does not affect processing already carried out.

5. Who we share data with

We use the following processors, who act on our instructions:

ProcessorWhat they receivePurpose
SupabaseAll app data described aboveDatabase, authentication, file storage, and backend functions (our hosting infrastructure)
ResendRecipient email address, email content (codes/invites)Delivering verification, password-reset, and household-invite emails from noreply@medibox-app.com
RevenueCatYour account ID, subscription status/expiry, platformSubscription/entitlement management
Google Play BillingPayment details (handled entirely by Google โ€” never seen by us)Processing your Pro subscription payment
AI processing provider (OpenRouter)Medicine name/text; for personalized recommendations, your selected health-condition labels (no email or account ID sent)Barcode data enrichment, automatic medicine categorization, autofill suggestions, and personalized recommendations
Barcode/product lookup providers (e.g. go-upc, UPCItemDB, Open Food Facts and related open product databases, Nutritionix, and similar sources)The scanned barcode numberReturning product name, brand, and image so we can pre-fill a medicine entry

Community barcode database: when you scan a barcode that isn't already known to us, the barcode-to-product information we find may be added to a shared lookup table so the app recognizes that product for other users too. If you delete your account, the link between that entry and you is removed โ€” the anonymized product entry itself is kept as shared reference data (it no longer identifies you).

We do not sell your personal data. We disclose it only to the processors above, or if required by law.

6. International data transfers

Our processors (Supabase, Resend, RevenueCat, our AI processing provider, and the barcode lookup providers) may process data on servers located outside your country, potentially including the United States. Where this involves transferring personal data out of the EEA/UK/Ukraine, we rely on appropriate safeguards such as Standard Contractual Clauses or an equivalent legal mechanism offered by the processor. Specifically, our database and file storage are hosted in the European Union (Supabase, on AWS in Ireland), and transactional email (Resend) is also processed in the EU; RevenueCat and our AI processing provider operate from the United States under the safeguards described above.

7. Data retention

  • We keep your account and cabinet data for as long as your account exists.
  • Verification codes expire within minutes and are deleted after use or expiry.
  • Diagnostic/crash logs are automatically deleted after 30 days.
  • When you delete your account (see ยง9), your personal data is erased immediately, except anonymized community barcode entries as described in ยง5.

8. Children's privacy

MediBox is not directed to children and is not intended for use by anyone under 16 (or the minimum age of digital consent in your country, if lower โ€” e.g. 13 in some jurisdictions). We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us at support@medibox-app.com and we will delete it.

9. Your rights & how to delete your account

Depending on where you live (e.g. under GDPR), you have the right to:

  • Access the personal data we hold about you.
  • Correct inaccurate data โ€” most fields can be edited directly in the app.
  • Delete your data and account.
  • Object to or withdraw consent for specific processing (e.g. health-condition data).
  • Lodge a complaint with your local data protection authority.

How to delete your account and data

You can delete your account directly in the app:

  1. Open MediBox โ†’ Settings.
  2. Scroll to the account-deletion option and confirm by typing the confirmation phrase shown on screen.
  3. Your account and all associated personal data โ€” medicines, health conditions, usage history, reminders, notifications, storage locations, categories, households you own and their invites, and your push-notification token โ€” are permanently and immediately erased. This cannot be undone.

You can also request deletion by emailing support@medibox-app.com from your account's email address. We will act on any request we cannot fulfill in-app within 30 days. For step-by-step instructions, see our Account Deletion page.

10. Security

Data is encrypted in transit (TLS). Passwords are salted and hashed by our authentication provider โ€” we never see them in plain text. Session tokens on your device are stored in your platform's secure storage (Android Keystore). Endpoints that don't require you to be logged in are rate-limited to deter abuse.

11. Changes to this policy

We may update this policy from time to time. Material changes will be announced in-app or by email. The "Effective date" above reflects the current version.

12. Contact us

Questions, requests, or complaints about this policy or your data:

Email: support@medibox-app.com