Skip to content

Privacy Policy

Last updated: July 25, 2026 · Maintained by the Medishelf security & compliance team

1. Who we are

Medishelf Software ("Medishelf", "we") builds cloud-based inventory and point-of-sale software for retail pharmacies. Handling pharmacy data means handling sensitive customer and health-adjacent records, so this policy is written to be specific about what we do and don't do with it — not just legally sufficient, but genuinely readable.

2. Data we collect

Account data: name, email, phone number, and pharmacy name, used to create your tenant.

Business data: product catalogues, batch and expiry records, sales, customer records, and staff profiles you enter. This is scoped to your tenant ID and never visible to other accounts.

Usage data: anonymized analytics on features and session length, used to prioritize what we build next — never used for advertising or resold.

Technical data: IP address, browser, and device details, logged for security monitoring and audit trails.

3. How we use it

  • To run the application you're paying for
  • To send transactional emails — login links, daily reports, low-stock alerts
  • To improve the product from anonymized, aggregate usage patterns
  • To meet legal obligations and enforce our Terms
  • To detect and stop abuse, fraud, and security threats

4. Who we share it with

We never sell your data. We share it only with the vendors that keep Medishelf running — hosting, email delivery, and payment processing — and only what each needs to do its job. Every one of them signs a data processing agreement holding them to our standards, not just theirs.

5. How we secure it

Business data is isolated per tenant at the database layer. Passwords are hashed with bcrypt. API input is validated against strict schemas, and endpoints are rate-limited against abuse. Emails, passwords, and tokens are automatically redacted from audit logs. Everything is encrypted in transit with TLS 1.3 and at rest with AES-256 — the same baseline used across regulated industries handling comparable data.

6. How long we keep it

Active accounts keep their data as long as the subscription runs. After cancellation, data is exportable for 30 days, then permanently deleted from production and, within 90 days, from backups — full detail in our Refund Policy.

7. Your rights

  • Access: export everything, anytime, from account settings.
  • Correction: edit account and business data directly in the app.
  • Deletion: email us to request full account and data deletion.
  • Portability: CSV and JSON exports, so you're never locked in.

8. Cookies

We use essential cookies for login sessions and anonymized analytics cookies to see how the product is used. No advertising or cross-site tracking cookies. Disable non-essential cookies anytime in your browser settings.

9. Updates and contact

We'll email the account owner at least 14 days before any material change takes effect. Questions about your data or this policy: support@medishelf.co or our contact page.