ScribeAI
Privacy Policy
Last updated: June 2026
ScribeAI ("we", "us", or "our") is committed to protecting the privacy of doctors and healthcare professionals who use our service. This Privacy Policy explains how we collect, use, and protect your information.
1. Information We Collect
We collect only the minimum information necessary to provide our service:
- Account information: Your name, email address, specialty, language preference, and region when you register.
- Subscription information: Your plan type and usage count (number of notes generated).
- Payment information: Processed securely by Razorpay (India) or Stripe (GCC). We never store your card details.
2. Patient Data — Zero Storage Policy
We do not store any patient data. This is a core architectural principle of ScribeAI:
- Audio recordings are deleted immediately after transcription.
- Patient names are never stored on our servers.
- SOAP notes are generated and sent directly to your screen — we do not retain copies.
- Transcripts are not stored after processing.
The only data on our servers relates to your doctor account and subscription status — never patient information.
3. How We Use Your Information
- To provide and improve the ScribeAI service.
- To manage your subscription and process payments.
- To send important service updates (not marketing without consent).
- To comply with legal obligations.
4. Data Security
- All data transmitted between your device and our servers is encrypted using HTTPS/TLS.
- Passwords are hashed using bcrypt — we cannot read your password.
- Our database stores only doctor account and subscription data.
- Audio files are processed in memory and immediately deleted.
5. Third-Party Services
We use the following third-party services to provide ScribeAI:
- Sarvam AI — Speech transcription for Indian languages (Malayalam, Tamil, Hindi).
- Groq — Speech transcription for Arabic and English, and AI text processing.
- Supabase — Secure database for doctor accounts and subscriptions.
- Razorpay — Payment processing for India.
- Stripe / Paddle — Payment processing for GCC and international.
- Vercel — Frontend hosting.
- Railway — Backend hosting.
Audio sent to Sarvam and Groq is processed for transcription only and is not used for training their models.
6. Data Retention
- Doctor account data: retained while your account is active.
- Subscription data: retained for billing and legal compliance.
- Audio files: deleted immediately after transcription (within seconds).
- SOAP notes: never stored — exist only on your screen.
7. Your Rights
You have the right to:
- Access the personal data we hold about you.
- Request correction of incorrect data.
- Request deletion of your account and associated data.
- Export your account data.
To exercise these rights, contact us at support@scribeai.in.
8. Compliance
- India: Compliant with the Digital Personal Data Protection (DPDP) Act 2023.
- GCC: Compliant with applicable UAE data protection regulations.
9. Cookies
We use only essential cookies necessary for authentication (login session). We do not use advertising or tracking cookies.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by email or in-app notification.
11. Contact Us
For any privacy-related questions or concerns:
Email: support@scribeai.in
Website: scribe-ai-omega.vercel.app