Skip to main content
Back to Home

Privacy Policy

Your privacy is important to us. This policy outlines how MyPocketDoctor collects, uses, and protects your personal information.

Last updated: March 2026

I. Information For Registration

After activating your MyPocketDoctor account, you must provide the following information:

a) Basic Information

  • First Name and Last Name
  • Gender
  • Mobile number
  • Email
  • Age
  • Birthday
  • Company Name
  • City Location
  • Height
  • Weight

b) Blood Profile

Your blood type and relevant laboratory results, if provided, to support accurate medical consultations.

c) Emergency Contact

Name, relationship, and contact number of a person to reach in case of a medical emergency.

d) Allergies

Any known drug, food, or environmental allergies to ensure safe prescriptions and medical advice.

e) Medication/s

Current medications you are taking, including dosage, to prevent adverse drug interactions.

f) Insurance

Health insurance provider and policy details, if applicable, for billing and referral coordination.

g) Health Concerns

Current or recurring health conditions you wish to disclose for more informed consultations.

h) Relative Medical Issues

Family medical history relevant to hereditary conditions or risk assessment.

II. The Purposes of Your Personal Information

The company uses personal data to:

  • Enable registration and subscription
  • Provide medical services and continuing care
  • Facilitate licensed physician consultations
  • Support historical, statistical, and scientific purposes for service quality improvement
  • Support insurance and drugstore partner quality improvements
  • Adhere to internal policies and procedures
  • Deliver subscribed products and customer support
  • Enhance customer experience with tailored content
  • Communicate relevant services and advisories
  • Comply with safety, security, public service, and legal requirements
  • Process information for statistical and research purposes

III. Data Safeguarding Measures

Technical Protections

  • SSL certificates on website and APIs
  • Token-based API authentication
  • SSL pinning on Android and iOS applications
  • Password security via key derivation functions and irreversible hashing
  • Periodic penetration testing every three months
  • Data aggregation and anonymization techniques

Organizational Safeguards

  • Secure information updates
  • Access restricted to authorized personnel
  • Regular infrastructure security audits
  • Secured servers behind firewalls with encryption
  • System administrators only have direct shell access
  • Developers use continuous integration/deployment via Git
  • Key-based SSH logins with whitelisted IP restrictions

Cloud Infrastructure

The company uses Linode and Amazon Web Services, complying with their respective policies including Customer Agreement, Terms of Service, Privacy Policy, Acceptable Use Policy, and AWS Data Privacy standards.

IV. Data Retention and Disposal

Data Access and Modification

Users may update personal data through their online account or by contacting the Data Privacy Officer.

Contact Details

  • Address: Level 24, Philippine Stock Exchange Tower, One Bonifacio High Street, 5th Ave. Cor. 28th St., BGC, Taguig
  • Email: [email protected]

Retention Period

Data is retained throughout the duration of your subscription and for a maximum of five years afterward.

Disposal

Upon consent withdrawal, data will be disposed of within the five-year period in a secure manner that prevents further processing, unauthorized access, or disclosure.

V. Analytics and Session Recording

We use PostHog, a third-party analytics provider, to understand how our website is used and to diagnose problems with the booking and payment process. PostHog processes this data on servers located in the United States. This is a cross-border transfer of your information, carried out under the safeguards required by the Data Privacy Act of 2012.

On our booking pages we record how the page is used — clicks, scrolling and navigation. On the health questionnaire, all text is hidden before the recording is created, so your symptoms, medical history and contact details are never included. We do not record the contents of any form you submit.

We identify these recordings only by your booking reference number. We do not send your name, email address or phone number to PostHog. Recordings are deleted automatically after the retention period configured on our account.

If your browser sends a “Do Not Track” or Global Privacy Control signal, we opt you out automatically. You can also opt out manually below.

Product analytics and session recording

Product analytics and session recording are not currently active on this site, so there is nothing to opt out of. If we switch them on, this section will show a control for turning them off.