Privacy
Medox holds a pharmacy's operational records. This page says what we store, where, and who can reach it.
What we store
- About you: the name, email address and profile picture Google gives us when you sign in, and nothing else. We never receive or store your Google password.
- About your pharmacy: medicines, batches, purchases, invoices, customers, suppliers and the accounting entries you make. This is your business record, and it is yours.
- About your customers: whatever you enter — typically a name, a phone number, and for trade buyers a GSTIN and drug licence number. Prescription images, if you upload them.
Where it lives
Each organisation's business data sits in its own isolated database on Cloudflare's network, pinned to the Asia-Pacific region. Identity data — who you are and which organisations you may open — is stored separately. Files you upload go to object storage under your organisation's own prefix.
Who can see it
Only members you have invited, according to the role you gave them. Our own operator console can see account-level facts — organisation name, plan, expiry, how many bills were posted — and deliberately cannot open your business data. Being able to administer an account is not the same as being able to read a pharmacy's customer list.
Logs
Request logs carry identifiers — a request id, an organisation id, a user id, a route and a duration. They never carry an invoice body, a customer name or a phone number.
Backups
An automatic backup of each organisation is taken nightly and kept for 30 days. You can take and download a full backup yourself at any time, on any plan.
Deleting your data
Closing an organisation or deleting your user account is done on request: write to the address below. Before an organisation is removed we take a final backup, which you can have. Deleting a user account anonymises the identity record and signs out every session.
Contact
Questions about any of this: medox@crawlink.com.