Skip to main content

Privacy · effective 5 September 2026

What we collect, and what we do with it.

Short version: this website collects almost nothing; the software holds your hospital's data on your hospital's behalf, and never shares it across hospitals.

Who this covers

Visitors to this website. Staff who sign in to HMS with an account their hospital created. Patients whose records a hospital keeps in HMS. Each is handled differently below.

This website

We do not run analytics, advertising or tracking on these pages. The only thing stored in your browser is your light/dark theme preference, which never leaves it. Our server keeps ordinary access logs (address, page, time) only to keep the site running and to investigate abuse.

If you contact us on WhatsApp or by email, we receive what you send and the number or address you send it from. We use it to reply and to follow up about HMS, and for nothing else. Please do not send patient information through either channel.

Staff accounts

A hospital administrator creates each account; there is no public sign-up. We hold the name, email address, roles and login sessions needed to authenticate you and to record who did what. Actions on sensitive records — role denials, deletions, financial corrections — are written to an audit log that belongs to your hospital and that you cannot edit. Passwords are hashed; we cannot read them.

Patient records

The hospital decides what to record and why; in the language of the DPDP Act it is the Data Fiduciary, and HMS processes data on its instructions as a Data Processor. HMS stores, for each hospital, what its staff enter: demographics and MRN, phone, allergies, appointments, prescription scans, charges, invoices, payments and receipts.

  • One hospital, one dataset. Every record carries exactly one organization and every request proves membership before it reads or writes. No hospital can see another's data, and neither can this website.
  • Uploaded files are private. Prescription scans live in a private bucket that is never publicly readable; the software issues a short-lived link each time an authorised member opens one.
  • No AI on patient data. Nothing in HMS sends patient records to an AI service or trains a model on them.
  • No sale, no sharing. We do not sell, rent or share patient or staff data with anyone. The only third parties are the infrastructure the hospital's deployment runs on.
  • It is exportable. Every report exports to Excel or PDF over any date range, and every document renders as a PDF. A hospital's records are the hospital's to take with it.

If you are a patient, your rights — to see what is held, correct it, or ask that it be erased — are exercised through the hospital that treated you. It holds the record and the relationship; we act on its instruction. Where a request reaches us directly, we pass it to the hospital and tell you we have done so.

If something goes wrong

If patient or staff data is exposed, we tell the affected hospital as soon as we know, with what happened and what we are doing about it, so it can meet its own duty to inform the people affected and the Data Protection Board.

Questions and complaints

Write to [email protected] with privacy questions or grievances. When the company operating HMS is incorporated, its legal name, registered office and the name of the person responsible for this notice will appear here and on the about page.

Changes

When this notice changes, the date at the top changes with it and the changelog records what moved.

Start with tomorrow morning.

One hospital, one afternoon of setup, and the desk is on it the next day.