Last updated: 5 July 2026
MedRep is a business (B2B) field-force management application used by the authorized employees of a licensing pharmaceutical/healthcare company (the "Company"). It is not a consumer app and is not intended for the general public. Accounts are created and controlled by the Company. The Company is the data controller of the information processed through MedRep; the app operator provides the platform on the Company's behalf.
We do not sell personal data and do not use it for advertising.
Data is visible to the Company's authorized users (e.g. the employee's supervisor and managers) as required to run the field operation. We use trusted processors only to operate the service — cloud hosting (DigitalOcean), file storage, email delivery (SendGrid), push notifications (Google Firebase) and error monitoring (Sentry) — bound by confidentiality and data-processing terms. We may disclose data if required by law.
Data is retained for as long as the Company maintains its MedRep account and as required for legitimate business and legal purposes, then deleted or anonymized.
Because accounts are managed by the Company, requests to access, correct or delete personal data should be directed to your employer (the Company), who will coordinate with us. You can disable location and notification permissions at any time in your device settings (some features will stop working).
Data is encrypted in transit (HTTPS/TLS). Access is role-based and least-privilege. Uploaded media is stored privately and served via short-lived signed links.
MedRep is for adult professional users only and is not directed to children.
We may update this policy; material changes will be reflected by the "Last updated" date above.
For privacy questions, contact your employer's MedRep administrator, or the app operator at
[email protected].