Privacy Policy

Effective Date: December 31, 2025

1. Introduction

MedTech Access ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclosure, and safeguard your information when you access our application, in accordance with the Swiss Federal Act on Data Protection (FADP) and, where applicable, the EU General Data Protection Regulation (GDPR).

2. Data Controller & Processor

Controller: MedTech Access
Contact: [email protected]

3. Information We Collect

We collect the minimum amount of data necessary to provide our services:

  • Account Information: Email address and authentication identifiers provided via Google or Email sign-up.
  • User Inputs: Documents (PDFs, Word files), project descriptions, and text inputs you provide for analysis.
  • Usage Data: Technical logs and interaction data to ensure system stability and security.

4. How We Use Your Data

We use your information strictly for:

  • Authentication: To verify your identity and manage your session (via Firebase Auth).
  • Service Provision: To generate HTA dossiers, reports, and literature reviews as requested by you.
  • AI Processing: Your inputs are processed by our AI models (powered by Google Gemini and Azure OpenAI) solely to generate the outputs you request. We do not use your data to train public AI models.

5. Data Processors & Sub-processors

We utilize trusted third-party service providers to power our infrastructure:

  • Google Cloud Platform / Firebase: Authentication, Database, File Storage, and Hosting.
  • Google Generative AI (Gemini): LLM inference for report generation.
  • Microsoft Azure OpenAI: LLM inference for specialized tasks.
  • Cloudflare (DNS & Security): Performance optimization, Security, and Analytics.

6. Cookies

We use only strictly necessary cookies required for authentication and security. We do not use advertising or tracking cookies.

7. Data Retention

We retain your personal information and project data only for as long as necessary to provide the Service to you. You may request the deletion of your account and associated data at any time by contacting support.

8. Your Rights

Under the Swiss Federal Act on Data Protection (FADP) and applicable international laws (such as GDPR), you have the right to access, correct, or delete your personal data. Please contact us at [email protected] to exercise these rights.