Privacy Policy — Pangea Provider App
For: Unified Medical File EMR
Effective Date: 14 Feb 2026
Last Updated: 14 Feb 2026
1. Introduction
Pangea Cloud Information Technology operates the Unified Medical File mobile application (the “App”). We are committed to protecting the privacy and security of Users (Healthcare Professionals) and the Protected Health Information (PHI) of patients.
This Privacy Policy explains how we collect, use, disclose, and safeguard information when you use our App. This policy is designed to comply with HIPAA and Google Play Developer Policies.
2. Information We Collect
A. Personal Information of Professionals (User Data)
Registration Data: Name, professional license number, email address, phone number, and facility affiliation.
Credentials: Login usernames and encrypted passwords.
B. Protected Health Information (PHI)
The App processes PHI on behalf of healthcare facilities, including:
Patient demographics (Name, ID, DOB)
Medical history, lab results, medication orders, and clinical notes
Google Play Disclosure: This data is handled with the highest level of security in accordance with HIPAA Privacy and Security Rules.
C. Device and Usage Data
Device Information: IP address, device model, OS version, and unique device identifiers (for security auditing).
App Activity: Access logs, timestamps of file views, and order submissions (for HIPAA audit trails).
3. How We Use Information
We use collected information for:
Treatment & Operations: Enable healthcare professionals to view records and coordinate care.
Interoperability: Secure exchange of patient records across authorized facilities.
Security & Compliance: Authentication, unauthorized access prevention, and audit logging.
App Functionality: Push notifications for critical updates.
4. Data Sharing and Disclosure
We do not sell or rent personal data or PHI.
Data may be shared only with:
Authorized Facilities: For treatment purposes within the Unified Medical File ecosystem.
Legal Authorities: When required by law or to prevent serious threats to health and safety.
Business Associates: Trusted vendors (e.g., cloud providers) with signed HIPAA BAAs.
5. App Permissions (Google Play Disclosure)
The App may request:
Camera: Scan barcodes or capture documents.
Storage/Files: Upload or download medical reports.
Biometrics: Secure login via Face ID or fingerprint.
Permissions can be revoked but may impact functionality.
6. Data Security
We implement strong safeguards, including:
Encryption: AES-256 at rest and TLS 1.2+ in transit
Access Controls: Role-Based Access Control (RBAC)
Session Management: Automatic logout after inactivity
7. Data Retention and Deletion
PHI: Retained according to healthcare facility policies and applicable laws.
User Accounts: Contact your facility administrator for deletion requests.
Audit Logs: Cannot be deleted due to HIPAA compliance requirements.
8. Authentication & OTP Verification (Google Play Compliance Update)
To enhance account security and comply with Google Play requirements:
Users are required to provide a valid email address during registration.
A One-Time Password (OTP) will be sent for verification.
The OTP is time-sensitive and will expire after a defined period.
Expired OTPs will be considered invalid/void, and users must request a new OTP.
This process ensures secure identity verification and prevents unauthorized access.
9. Contact Us
If you have questions regarding this Privacy Policy:
Email: info@pangeacloudIT.com
Address:
488 Sheikh Zayed Road
Building 2020, Office M203
Dubai, UAE
Google Play Compliance Note
This privacy policy is publicly accessible and applies to all users of the Pangea Provider App distributed via the Google Play Store.