Privacy Policy
This page is provided for transparency and convenience. It is general information only and does not constitute legal advice. Please consult qualified counsel for advice specific to your situation.
Overview
MedVoya.io (“MedVoya,” “we,” “us”) respects your privacy. This policy describes how we handle personal information when you use our website and related services (the “Services”). Replace bracketed placeholders below with your organisation’s details before relying on this text for regulatory or partner review.
Information we may collect
Depending on how you use the Services, we may process identifiers and contact details (for example, name, email address, or phone number), authentication data from sign-in providers (such as Google), usage and device information (such as approximate location, IP address, browser type, and pages viewed), and content you submit through forms or chat features.
When you browse anonymously (for example “Try Meera” without signing in) or submit a lead form, we may also store a pseudonymous browser identifier in local storage, forwarded IP addresses from our CDN/reverse proxy, coarse country inferred from CDN headers such as CF-IPCountry, and transcripts of those interactions to operate and secure the Services.
How we use information
We use this information to provide and improve the Services, authenticate users, respond to inquiries, analyse usage in aggregate, maintain security, comply with law, and communicate operational or service-related messages where permitted.
Voice sessions (Meera)
When you use voice counselling, we process audio you submit for speech-to-text and generate spoken replies using our voice partners (for example Sarvam AI). Transcripts and session summaries may be stored to personalise future conversations. Do not share passwords, Aadhaar numbers, or payment card details aloud. By starting a voice session you consent to this processing for counselling purposes.
Sharing
We may share information with vendors that help us run the Services (for example, hosting, authentication, analytics, or communications providers), when required by law, or to protect rights and safety. We do not sell your personal information as a commodity; adjust this sentence if your practices differ.
Retention
We retain information only as long as needed for the purposes above, unless a longer period is required or permitted by law. Retention schedules may vary by data category.
Security
We implement reasonable technical and organisational measures designed to protect personal information. No method of transmission or storage is completely secure.
Your choices and rights
Depending on your location, you may have rights to access, correct, delete, or restrict certain processing of your personal information, or to object to certain uses. Contact us using the details below to make a request. We may need to verify your identity before responding.
International transfers
If you access the Services from outside the country where our systems operate, your information may be transferred across borders. [Add your legal basis and safeguards, e.g. standard contractual clauses, as applicable.]
Children
The Services are not directed to children under the age where parental consent is required in your jurisdiction. If you believe we have collected such information in error, contact us and we will take appropriate steps.
Changes
We may update this policy from time to time. We will post the revised version on this page and update the “Last updated” date when we do.
Contact
For privacy-related requests or questions: [Contact — replace with privacy@yourdomain.com or your ticketing process]. You may also use our Contact page if that route is available on your deployment.
Last updated: April 26, 2026.