Privacy, in plain language

DocTalk Privacy Policy

Effective date: July 21, 2026

Operator / Data Controller: ZY MGMT Co ("DocTalk," "we," "us," or "our")

Contact: doctalk@zymgmtco.com

1. What this policy covers

This policy explains what information DocTalk collects, how it is collected, why it is used, where it is stored, and which service providers receive it. DocTalk is an AI-powered educational tool. It is not a medical device and does not replace professional medical advice, diagnosis, or treatment.

Permission to use third-party AI providers is requested separately in the app after onboarding. Merely accepting this policy does not grant that permission.

2. Information we collect and how we collect it

  • Account information: email address, first and last name, encrypted date of birth if provided, a user ID, password hash, authentication records, and preferences. We collect this when you create or update an account.
  • Health and conversation content: questions, chat messages, AI responses, conversation history, citations, saved conversations, and health synopsis reports. We collect this when you type, generate, or save it.
  • Documents: PDFs, images, filenames, extracted medical text, summaries, and related document metadata. We collect this when you choose to upload a file.
  • Appointment content: appointment details, recordings, photos, transcripts, summaries, and reports. We collect this when you create or use an appointment feature.
  • Subscription information: product identifiers, entitlement status, transaction identifiers, and purchase receipt metadata from Apple and RevenueCat. We do not receive your full payment-card number.
  • Operations and support: query counts, feature usage, app version, device/OS details, timestamps, network and security logs, diagnostics, crash information, and feedback. We collect this from app and server interactions or when you contact support.

3. What is sent to each AI provider

Google Cloud Vertex AI (Gemini)

If you upload a document, the original PDF or image is sent to Google Vertex AI. Google receives the original file because it performs the text extraction. DocTalk instructs Vertex AI to omit direct identifiers from the returned text and applies an additional automated filter to common identifiers before that extracted text is used downstream. Automated removal is not infallible. DocTalk's production Vertex AI inference settings are configured so that document content and images are not retained or cached by the model service after processing and are not used to train or fine-tune AI models.

OpenAI

OpenAI may receive the text you type for safety classification, relevant conversation content for titles and health synopses, text selected for speech, and appointment audio, transcripts, photos, or related content needed for transcription and summaries. Document-based downstream processing uses the de-identified extracted text, not the original uploaded file.

Perplexity

Perplexity receives your current question, relevant chat history, and the de-identified extracted medical text needed to answer your question. DocTalk replaces original document filenames with generic document labels before this transfer.

DocTalk does not intentionally attach your account name, email address, or user ID to content sent to OpenAI or Perplexity. If you type a name or another identifier in a message, recording, or other content, the provider used for that feature may receive it.

4. Other service providers

  • Google Cloud / Firebase: managed storage and retrieval of uploaded documents, images, and appointment files.
  • MongoDB Atlas: managed database hosting for account, encrypted conversation, document, appointment, and operational records.
  • Apple and RevenueCat: subscription purchase, receipt validation, entitlement management, and related support. DocTalk uses the account email address as the RevenueCat customer identifier so subscription access can be associated with the correct DocTalk account.
  • Cloud hosting, email, diagnostics, and support providers: the limited account or technical information needed to host the Service, deliver account email, diagnose failures, prevent abuse, and answer support requests.

These providers act on DocTalk's behalf for the stated purposes. We require each provider to protect personal information with the same or equivalent level of privacy and security protection that DocTalk applies, including limits on use, disclosure, access, and retention appropriate to the data processed. We review provider terms and controls before use and when material processing changes.

5. How we use information

  • Provide document analysis, chat, speech, appointment, and synopsis features.
  • Authenticate accounts and synchronize subscriptions.
  • Save and display the content and history you ask DocTalk to retain.
  • Maintain security, prevent fraud or abuse, debug failures, and improve reliability.
  • Respond to support requests and meet legal obligations.
  • Use aggregated or de-identified operational information to understand performance.

We do not sell personal information. We do not disclose health information linked to your account to advertisers or data brokers, and we do not use it for cross-app advertising.

6. AI permission and revocation

After onboarding, DocTalk explains the AI providers and the data each workflow sends. The permission box is not preselected, and no covered AI request is allowed unless you affirmatively allow it. Choosing "Not now" leaves AI features unavailable.

You may revoke permission at any time under Account → AI Data Processing. Revocation blocks new content from being sent to Google Vertex AI, OpenAI, and Perplexity. It does not automatically delete information already stored by DocTalk or information previously processed under your permission. You may separately delete saved items or your account.

7. Storage, encryption, and retention

DocTalk does not operate personally owned physical servers. This does not mean that DocTalk stores no data. Account information, uploaded files, messages, and generated records are stored in managed third-party cloud infrastructure operated on DocTalk's behalf and accessible to authorized DocTalk systems and personnel.

Data is encrypted in transit. Stored conversation messages and other sensitive database fields use application-level encryption, and managed cloud storage provides encryption at rest. Access is restricted through authentication, per-user authorization, and service credentials.

We retain account and saved content while needed to provide the Service, until you delete the content or account, or as required for security, fraud prevention, legal compliance, and backup recovery. Google Vertex AI inference is configured not to retain or cache document content after processing and not to use it for model training. This is separate from DocTalk's managed Firebase file storage described above. Other AI providers may have limited retention periods under the enterprise/API settings and contracts applicable to our account. We describe a workflow as having no retention only when that control has been verified for the applicable provider and endpoint.

8. Your choices and rights

  • Decline or revoke AI processing permission.
  • Review and update account details in the app.
  • Delete saved conversations, documents, appointments, and reports where controls are available.
  • Delete your account from Account settings.
  • Contact us to request access, correction, deletion, or a copy of information, subject to applicable law.
  • Control camera, microphone, photo, and file permissions in iOS Settings.

9. Children, legal disclosures, and changes

DocTalk is not directed to children under 13. We may disclose information when required by law, to protect safety or the Service, or as part of a business transaction subject to equivalent protection and applicable notice requirements.

We may update this policy as the Service changes. If a change materially affects AI processing, DocTalk will require review of a new consent version before covered processing resumes.

10. Contact

Questions or privacy requests can be sent to ZY MGMT Co at doctalk@zymgmtco.com.