How MEDAGREE collects, uses, and protects your professional data.
When you create an account or use MEDAGREE, we collect: account credentials (email, hashed password), professional identity details (name, speciality, NMC registration number, qualifications, workplace, city), profile content you publish (posts, clinical cases, comments, reactions), hiring and application activity (job views, applications, ATS status history), messaging metadata (conversation participants, timestamps — message content is accessible only to participants), communication preferences (notification settings, email opt-ins), and platform interaction signals used to improve recommendations and analytics.
We use collected data to: operate and secure your MEDAGREE account; verify your professional identity and credentials; surface relevant connections, jobs, and opportunities; power hiring-side workflows including applicant review and ATS stage management; send transactional emails (connection requests, application updates, security notices); improve platform recommendations using aggregated analytics; maintain audit logs for compliance and trust operations; and contact you about platform changes or policy updates where required.
MEDAGREE is built on a small set of trusted third-party services: Supabase (authentication and database), Mailtrap / Resend (transactional email delivery), and Vercel (application hosting). Each provider operates under their own privacy and data processing agreements. No user data is sold to third parties or used for advertising.
Account data is retained for the lifetime of your account and a reasonable period thereafter to comply with legal obligations. You may request account deletion at any time from Settings → Account → Account Deletion Request. Deletion requests are reviewed by the MEDAGREE team and executed within 30 days unless a legal hold applies. Audit logs may be retained for up to 12 months beyond account closure for compliance purposes.
You can update your profile visibility, open-to-work status, and notification preferences at any time from Settings. You can manage email communication preferences from Settings → Notifications. You can change your password from Settings → Account → Change Password. You can request account deletion and data erasure from Settings → Account → Account Deletion Request.
All data is transmitted over HTTPS with TLS encryption. Passwords are hashed by Supabase Auth and are never stored in plaintext. Session tokens are scoped and rotated on logout. MEDAGREE does not store patient health records, identifiable patient information, or clinical decisions. To report a security concern, contact security@medcircle.in.
MEDAGREE is currently a beta service operated by the MEDAGREE team. Sample profiles, job listings, activity data, and metrics shown during the beta are illustrative and may not reflect real individuals or organisations. Product behaviour and this policy may change before public launch, and beta data may be migrated or reset with notice. No real patient data, clinical records, or medical decisions should be submitted or relied upon in this environment. For data privacy enquiries, contact data-privacy@medcircle.in.