Skip to content

Privacy Policy

Last updated: June 2025

1. Introduction

VistMed is committed to protecting the privacy of its users. This privacy policy describes the types of personal data we collect, how we use, share and protect it. By using the VistMed platform, you agree to the practices described in this policy.

2. Data Collected

When using the platform, we collect the following data:

Identification data

Name, email address, phone number

Professional data

Company, role (Admin, Manager, Delegate), geographic sector

Geolocation data

GPS coordinates during medical visit check-in / check-out

Usage data

Connection logs, actions performed, timestamps, reports generated

3. Purpose of Processing

  • Provide and maintain the VistMed service
  • Authenticate users via OTP (passwordless login)
  • Geolocate medical visits for traceability
  • Generate performance reports and KPIs
  • Manage medical samples and inventory
  • Provide technical support and communication
  • Improve the platform and user experience

4. Data Security

We implement advanced technical and organizational security measures to protect your data:

Encryption in transit

TLS 1.3 for all communications

Encryption at rest

AES-256 for data storage

Secure authentication

Passwordless OTP, JWT tokens with expiration

Multi-tenant isolation

Strict data separation between companies

5. Data Retention

Personal data is retained for the duration of the active subscription. In case of termination, data is retained for 12 months to allow potential reactivation, after which it is securely deleted. Audit logs are retained in accordance with legal obligations.

6. Data Sharing

VistMed does not sell, rent, or share your personal data with third parties for commercial purposes. Your data may only be shared with technical subcontractors necessary for the operation of the service (cloud hosting, OTP email delivery) and strictly within the scope of their duties, under confidentiality agreements.

7. Your Rights

In accordance with the GDPR and applicable laws, you have the following rights:

Right of accessObtain a copy of your personal data
Right to rectificationCorrect inaccurate or incomplete data
Right to erasureRequest the deletion of your data
Right to portabilityReceive your data in a structured, readable format
Right to objectObject to the processing of your data
Right to restrictionRestrict the processing of your data

privacy_s7_contactprivacy@vistmed.com

8. Contact

For any questions regarding the protection of your personal data, you may contact us:

Email: privacy@vistmed.com

Address: Douala, Cameroon