Wstęp
Niniejsza Polityka Prywatności wyjaśnia, w jaki sposób przetwarzamy informacje, gdy korzystasz z Exura – naszej aplikacji mobilnej. Exura pomaga Ci otrzymywać i przeglądać zalecenia medyczne od Twojego lekarza. Ochrona prywatności i bezpieczeństwo danych są naszym priorytetem – zbieramy tylko te informacje, które są niezbędne do świadczenia tej usługi.
Przenoszenie Danych i Prawa Użytkownika
Masz dwa kluczowe prawa dotyczące Twoich danych:
Dostęp do Danych: Możesz poprosić o wgląd do przechowywanych informacji, w tym aktywnych zaleceń medycznych i podstawowych informacji o urządzeniu.
Usunięcie Danych: Możesz zażądać całkowitego usunięcia swoich danych z naszego systemu.
Aby skorzystać z tych praw, napisz do nas na privacy@exura.app lub użyj przycisku „Usuń konto” w aplikacji.
Możesz również zażądać kopii swoich danych:
Zalecenia medyczne będą dostarczone w formacie PDF
Wniosek zostanie przetworzony w ciągu 15 dni
Dane zostaną wysłane na Twój zweryfikowany adres e-mail
Eksport obejmie wszystkie aktywne zalecenia i ich zaplanowane terminy
Odpowiemy na Twoją prośbę w ciągu 15 dni.
Jakie Dane Zbieramy
Chcemy być transparentni w kwestii tego, jakie dane zbieramy, a jakich nie. "Zbieranie" oznacza dane przesyłane z Twojego urządzenia i przechowywane na naszych serwerach dłużej niż czas potrzebny do przetworzenia bieżącego żądania.
Gdy korzystasz z Exura, zbieramy:
Zalecenia medyczne od Twojego lekarza, w tym instrukcje przygotowawcze i plany rekonwalescencji. Każde zalecenie jest dostępne przez okres określony przez Twojego lekarza, plus dodatkowe 30 dni. Po tym czasie usuwamy je z naszego systemu.
Podstawowe informacje o urządzeniu w postaci unikalnego identyfikatora. Służy on wyłącznie do autoryzacji urządzenia i dostarczania właściwych zaleceń. Identyfikator pozostaje aktywny do momentu usunięcia konta.
Opcjonalne informacje o koncie: Jeśli zdecydujesz się założyć konto za pomocą e-maila, przechowujemy te dane oddzielnie od Twoich zaleceń medycznych. Pozwala to na dostęp do zaleceń z różnych urządzeń. Nie łączymy tych danych z innymi aplikacjami ani usługami.
Nie zbieramy:
Twojego imienia, numeru telefonu ani żadnych innych danych kontaktowych
Danych do analityki lub śledzenia
Informacji o Twoich zaleceniach medycznych do żadnych innych celów poza ich wyświetlaniem
Raportów awarii ani danych diagnostycznych
Twoich danych do ulepszania produktu lub marketingu
App Tracking and Advertising
Exura does not track your activity across other companies' apps or websites. Specifically, we do not:
- Share your data with third parties for advertising purposes
- Use data to track you across apps and websites owned by other companies
- Link your data with third-party data for advertising or advertising measurement
- Share your information with data brokers
Device Permissions and App Functionality
Exura requires notification permissions to alert you when new medical recommendations are available or when action is needed regarding your treatment plan. You can manage notification permissions through your device settings at any time.
If you choose to deny notification permissions:
- You will still have full access to your medical recommendations within the app
- You will need to manually check the app for updates and new recommendations
- You may miss important timing for your treatment plan activities
You can update your notification preferences at any time through your device's settings menu.
Age Verification and Access
Exura displays medical recommendations that are issued by healthcare providers to their patients. Age verification is handled by healthcare providers as part of their medical practice:
- Only verified healthcare providers can issue treatment plans through our system
- Treatment plans can only be issued to patients who have been verified in person by the healthcare provider
- While individuals under 18 may install the application, they cannot receive treatment plans unless verified and approved by their healthcare provider
Data Security, Storage and Protection
We implement industry-standard security measures to protect your data:
- Data at rest is encrypted using Firebase's built-in encryption
- Access to the data is strictly controlled and limited to essential personnel
- We monitor our systems for potential security issues
- In the event of a data breach that affects your personal information, we will notify you within 72 hours via the contact information available
We store all data in secure Google Firebase data centers located in Warsaw, Poland (europe-central-2 region). Our data storage practices include:
- Strict separation between medical recommendations and authentication data
- Automatic deletion of recommendations after their designated period
- Complete data removal when you delete your account
- No backup retention after deletion
Privacy Labels and Data Usage
In accordance with Apple's privacy requirements, here is how we use the data we collect:
Data Linked to You:
- Device ID: Used only for app functionality (authenticating your device and delivering correct recommendations)
- Medical Recommendations: Used only for app functionality (displaying your treatment plans)
- Email Address (if provided): Used only for app functionality (optional account authentication)
Data Not Collected:
- Location information
- Usage data
- Diagnostic data
- Contact information
- Any other personal information
Third-Party Services
We use only essential third-party services:
Google Firebase:
- Firestore: Stores your medical recommendations
- Authentication: Handles account creation and login if you choose to use email
- Cloud Functions: Processes data delivery and account deletion requests
App Stores:
- Google Play Store and Apple App Store: Only for application distribution
These services can access only the minimum data required for their specific functions and cannot use your data for any other purposes.
International Data Transfers
We keep your data within the European Union. Your medical recommendations and related information are stored in Warsaw, Poland, and do not leave EU territory.
If you download our application from the App Store or Google Play Store, your interaction with these platforms is governed by their respective terms and privacy policies.
Regional Privacy Rights
Different privacy laws may give you additional rights depending on your location:
- EU residents have specific rights under GDPR, including those outlined in this policy
- California residents have additional rights under CCPA, including opting out of data sales (though we never sell your data)
- Other regions may provide similar protections
We honor these rights regardless of your location.
Application Updates and Data Handling
When we update Exura:
- Your privacy settings and preferences remain unchanged
- Your medical recommendations and account information stay secure and intact
- You may need to accept new permissions if we add features, but can always adjust them in settings
Changes to Privacy Policy
We may update this Privacy Policy. When we make significant changes, we will notify you through the Exura app and update the "Last Updated" date at the top of this policy.
By continuing to use Exura after changes to this policy, you accept the updated terms. If you disagree with any changes, you may delete your data and stop using the application.
User Control Over Data
You have complete control over your data through:
1. The 'Delete Account' button in the application, which immediately removes all your data
2. Automatic deletion of recommendations after their designated period
3. Email-based requests for data access
Using Exura requires storing your medical recommendations and a device identifier. If you don't wish to provide this information, you won't be able to use the service.
Data Controller Information
The data controller responsible for processing your information is:
Exura PSA
Registration Number: KRS 0001134792
NIP: 9462746537
REGON: 54000231100000
Registered Office:
Gospodarcza 26
20-213 Lublin, Poland
If you have questions about how we process your personal data, you can reach our data protection team at privacy@exura.app
Contact Information
For general inquiries about Exura and technical support:
e-mail: support@exura.app
For privacy-related matters:
e-mail: privacy@exura.app
Address:
Exura PSA,
Gospodarcza 26,
20-213 Lublin
We aim to respond to all inquiries within 15 days.