Privacy policy
Clinovia stores the minimum patient information needed to run a clinic's queue and booking system: name, phone number, and appointment details.
Data we collect
To run a clinic's live queue and let patients book appointments, we collect only what's needed for that:
Patient name
Identifies you in the queue and on your appointment record.
Phone number
Used to identify your booking and by clinic staff to reach you directly if needed — we don't send automated SMS.
Appointment details
Which doctor, clinic, date, and time — so the clinic can manage its schedule.
If you sign in with Google or create a patient account, we also store your email address and any reviews you choose to leave for a doctor you've visited.
Your rights
You can ask us for any of the following at any time by emailing hello@clinovia.app:
Access
A copy of the data we hold about your appointments and account.
Correction
Fix inaccurate contact details on your account.
Deletion
Remove your account and associated data, subject to clinics' own record-keeping needs for completed appointments.
Portability
A copy of your data in a portable format to take elsewhere.
Security
Clinovia is built on Supabase, which encrypts data in transit and at rest as standard. Staff accounts can enable two-factor authentication for extra protection, and clinic staff can only see patients and appointments for their own clinic — never another clinic's.
We don't sell patient or clinic data to third parties, and we don't run automatic deletion of appointment records — clinics rely on that history to manage patient care and their own records.
A note on this policy
This describes our actual data practices in plain language, but it isn't a substitute for legal advice specific to healthcare data regulations in the countries Clinovia operates in. Questions about your data — contact us.