1. Information we process
We may process account details, pharmacy profile and licence information, authorized-user information, subscription/payment references, operational ERP records, support communications, security logs and technical information needed to provide and protect the service.
2. Why we process information
Information is used to create and administer accounts, provide ERP functions, authenticate users, manage subscriptions, process support requests, maintain security and audit trails, troubleshoot problems, improve reliability and meet applicable legal obligations.
3. Pharmacy business data
Data entered by a pharmacy into its ERP workspace is used to provide the service to that pharmacy and its authorized users. Access controls are intended to keep tenant data separated. Users should grant staff access only as required for their work.
4. Referral information
When a valid referral code is used at signup, we store the referral attribution, the applicable commission percentage and the eligibility period. Related approved subscription payments may generate commission records for administration of the referral program. The pharmacy does not receive a discount solely from using a referral code.
5. Payments
We may store payment method, transaction/reference information, amount, status and approval history needed to verify subscription payments. Do not send passwords, PINs, OTPs or other payment-account secrets through support or ERP remarks.
6. Security
We use access controls and operational safeguards intended to protect service data. No internet-connected system can guarantee absolute security, so users must also protect passwords, devices and authorized access.
7. Retention
Information may be retained for as long as needed to operate accounts, maintain transaction and audit history, resolve disputes, meet legal or accounting requirements, protect the service and support legitimate business continuity. Retention may differ by data type.
8. Service providers
Infrastructure, hosting, communications or other service providers may process limited information when necessary to operate the service. They should receive only the information needed for the relevant service and remain subject to appropriate contractual or security controls.
9. Your requests
For questions or reasonable requests concerning account information, correction or privacy, contact support. Some records may need to be retained where deletion would conflict with transaction integrity, security, legal obligations or legitimate audit requirements.
10. Changes
This policy may be updated as the service evolves. The current version and update date will be published on this page.