MediLens 隐私政策 Privacy Policy

MediLens.app

Version / 版本: 1.1
Effective Date / 生效日期: 2026-01-27
Developer / 开发者: Dianyi Interactive (Beijing) Technology Co., Ltd.

Privacy Policy / 隐私政策

English — 1. Information We Collect

We collect the following categories of data:

Health Data (User-Provided):

  • Medical report images (lab results, blood panels, imaging reports, vitals, clinical documents)
  • Extracted health metrics (e.g., blood glucose, cholesterol, blood pressure, CBC values)
  • Reference ranges and abnormal flags associated with test results
  • Health trend data derived from multiple scans over time
  • Family member health profiles created by you (name, birth year, gender, health history notes)
  • AI chat messages related to your health records

How We Use Your Health Data:

  • To extract, organize, and display your health metrics
  • To track trends and flag abnormal values over time
  • To provide personalized AI health assistant responses
  • To generate PDF health summaries for sharing with healthcare providers

Account & Device Data:

  • Email address and authentication credentials
  • Device model, OS version, and crash logs (for stability)

Usage Data: We record how the app is used — which screens are opened, whether a scan completed or was abandoned, how long a step took, and whether a purchase screen was shown. These events carry your user id, app version, platform and language, and are stored on our own infrastructure. They never contain health values, report contents, or anything you typed. We use them only to find where the app fails people and to measure whether changes help.

Feedback You Send Us: If you use the in-app feedback form, we receive what you write, any screenshot you attach, the contact details you choose to provide, and technical context (app version, build number, OS version, platform, language, the screen you opened it from, and whether you have an active subscription). The app itself passes no health data to that form. Please do not type health values or report contents into feedback yourself — see Section 5 for where this data is stored.

We do NOT intentionally collect irrelevant sensitive personal information.

Medical Disclaimer: MediLens is a personal health record-keeping tool only. It does not provide medical advice, diagnosis, or treatment. Always consult a qualified healthcare professional for any medical concerns.

中文 — 1. 我们收集的信息

我们收集以下类别的数据:

健康数据(用户提供):

  • 医疗报告图片(化验单、血液检查、影像报告、生命体征、临床文件)
  • 提取的健康指标(如血糖、胆固醇、血压、血常规数值等)
  • 与检测结果相关的参考范围及异常标记
  • 多次扫描得出的健康趋势数据
  • 您创建的家庭成员健康档案(姓名、出生年份、性别、健康史备注)
  • 与您健康记录相关的 AI 对话内容

健康数据的使用方式:

  • 提取、整理并展示您的健康指标
  • 追踪趋势并标记异常数值
  • 提供个性化 AI 健康助手回复
  • 生成 PDF 健康摘要,供与医疗人员共享

账户与设备数据:

  • 电子邮件地址及身份验证凭据
  • 设备型号、系统版本及崩溃日志(用于维护稳定性)

使用数据: 我们会记录 App 的使用情况——打开了哪些页面、一次扫描是完成还是中途放弃、某个步骤耗时多久、是否展示过付费页面。这些事件会携带您的用户 id、App 版本、平台和语言,存储在我们自有的基础设施上。其中绝不包含健康数值、报告内容或您输入的任何文字。 我们仅用它来发现 App 在哪里让用户受阻,以及衡量改动是否有效。

您提交的反馈: 若您使用 App 内的反馈入口,我们会收到您填写的内容、您附加的截图、您选择留下的联系方式,以及技术上下文(App 版本、构建号、系统版本、平台、语言、从哪个页面打开、是否为订阅用户)。App 本身不会向该表单传递任何健康数据。 也请您不要在反馈中自行填写健康数值或报告内容——存储地点见第 5 节。

我们不会主动收集与服务无关的个人敏感信息。

医疗免责声明: MediLens 仅为个人健康记录工具,不提供医疗建议、诊断或治疗方案。如有任何健康问题,请咨询专业医疗人员。

English — 2. Third-Party AI Processing

Transparency on AI: To read and interpret your reports we transmit your data to the following third-party processors:

  • Alibaba Cloud DashScope (Qwen-VL models) — reads your report images to extract the data on them
  • OpenRouter — reads your report images when the primary provider is unavailable
  • OpenAI — generates clinical explanations, powers the AI assistant, distils long-term health facts, and reads report images if all other image providers fail
  • DeepSeek and SiliconFlow — generate explanations and assistant replies for Chinese-language users
  • Mem0 — stores durable health facts so the assistant remembers your history across conversations

What is actually sent. To read a report we must send the report image itself. That image is transmitted as photographed and may therefore contain your name, patient or ID number, hospital and physician details. We do not remove that information from the image before sending it. Text-based features receive the extracted values and your report history, never your login credentials or payment details.

Your control. Before uploading, the app lets you mask any part of the image you would rather not send. You can also skip scanning altogether and enter values by hand. These providers are bound by data-processing agreements and are prohibited from using your data to train their models.

中文 — 2. 第三方 AI 处理

AI 透明度声明: 为了读取和解读您的报告,我们会将您的数据传输给以下第三方处理方:

  • 阿里云 DashScope(通义千问 VL 模型)— 读取您的报告图片以提取其中的数据
  • OpenRouter — 在主要服务不可用时读取您的报告图片
  • OpenAI — 生成临床解读、驱动 AI 助手、提炼长期健康事实;当其他图像服务全部失败时也会读取报告图片
  • DeepSeekSiliconFlow — 为中文用户生成解读与助手回复
  • Mem0 — 保存长期健康事实,使助手能跨会话记住您的病史

实际传输的内容。 为了读取报告,我们必须发送报告图片本身。该图片按拍摄原样传输,因此可能包含您的姓名、就诊号或身份证号、医院及医生信息。我们不会在发送前从图片中移除这些信息。 基于文本的功能接收的是提取出的数值和您的报告历史,绝不包含登录凭据或支付信息。

您的控制权。 上传前,App 允许您遮盖图片中任何不想发送的部分;您也可以完全不使用扫描,改为手动录入数值。这些处理方受数据处理协议约束,被禁止将您的数据用于训练其模型

English — 3. Data Storage & Security

Data is stored on servers meeting industry security standards (e.g., SSL/TLS encryption). While we implement reasonable safeguards, absolute security cannot be guaranteed.

中文 — 3. 数据存储与安全

数据存储在符合行业安全标准(如 SSL/TLS 加密)的服务器中。虽然我们采取了合理的保护措施,但无法保证绝对安全。

English — 4. Data Sharing

We do NOT sell or rent your personal health data to advertisers. Data is shared only when required by law, explicitly authorized by you, or necessary for essential infrastructure (e.g., cloud hosting).

Beyond the AI processors listed in Section 2, we rely on: Supabase (database, file storage and authentication), Sentry (crash diagnostics), RevenueCat (subscription status on iOS and Android), a third-party feedback service (feedback content and screenshots), and, for users in mainland China, Alipay and WeChat Pay (payment processing). Signing in with Google or Apple shares only the identifier needed to authenticate you.

中文 — 4. 数据共享

我们不会向广告商出售或出租您的个人健康数据。仅在法律要求、获得您明确授权或核心基础设施(如云托管)需要时,才可能共享数据。

除第 2 节列出的 AI 处理方外,我们还使用:Supabase(数据库、文件存储与身份认证)、Sentry(崩溃诊断)、RevenueCat(iOS 与安卓的订阅状态)、第三方反馈服务(反馈正文与截图),以及面向中国大陆用户的支付宝与微信支付(支付处理)。使用 Google 或 Apple 登录时,仅共享认证所需的标识符。

English — 5. International Data Transfers

Your data may be processed on servers located outside your country of residence. We rely on standard contractual clauses to ensure the security of cross-border data transfers.

Where feedback is stored. The in-app feedback form is operated for us by a third-party service whose servers are located in Shanghai, China. If you send feedback from outside mainland China, its contents — including any screenshot — are transferred there. This is why the form asks you not to include health values or report contents. If you would rather your message were not stored in China, email us at support@medilens.app instead.

中文 — 5. 国际数据传输

您的数据可能会在您居住国以外的服务器上进行处理。我们依据标准合同条款来保障跨境数据传输的安全性。

反馈数据的存储地点。 App 内的反馈入口由第三方服务代为运营,其服务器位于中国上海。若您从中国大陆以外提交反馈,反馈内容(含截图)会传输至该地。这也是提交页提示您不要填写健康数值或报告内容的原因。如果您不希望自己的留言存储在中国境内,请改为发送邮件至 support@medilens.app

English — 6. Your Rights & Account Deletion

You have the right to access, correct, or delete your data.

Account Deletion: You can request the permanent deletion of your account and all associated cloud data directly via the "Delete Account" feature in the App settings. This action is irreversible.

中文 — 6. 用户权利与注销

您有权访问、更正或删除您的数据。

账户注销: 您可以直接通过应用设置中的“删除账户”功能,请求永久删除您的账户及所有相关的云端数据。此操作不可逆。

English — 7. Children’s Privacy

The App is not intended for children under the minimum legal age (e.g., 13 in the US, 16 in the EU). Any such data will be removed immediately upon discovery.

中文 — 7. 儿童隐私

本应用不面向未达到法定最低年龄(如美国为 13 岁,欧盟为 16 岁)的儿童。一旦发现此类数据,我们将立即予以删除。

English — 8. Updates

This Policy may be updated periodically. Material changes will be notified via the App.

Contact: feedback@medilens.app

中文 — 8. 政策更新

本政策可能不定期更新。重大变更将通过应用内通知。

联系方式: feedback@medilens.app