My Medical Support

Privacy Policy

Effective date: 27 September 2025
Company: MyMedicalSupport UK Ltd
Company number: 16059639
ICO Registration: ZB676716
NHS ODS Code: N2Q7K
Clinical Safety Officer: Deborah Murray, NMC-registered nurse

 

1. Introduction

MyMedicalSupport UK Ltd (“we”, “our”, “us”) is committed to protecting the privacy and security of your personal information. This Privacy Policy explains how we collect, use, store, and share information when you use our services, including our website, mobile access, and digital medical ID platform.

 

2. What information we collect

We may collect and process the following types of information:

  • Personal details: name, date of birth, address, contact details.

  • Health information: medical conditions, medications, allergies, emergency contacts, and other data you choose to store.

  • Technical information: IP address, device details, browser type, usage logs.

  • Payment details: stored securely by our payment provider (Stripe) – we do not hold card data.

 

3. How we use your information

We use your information to:

  • Provide and manage your secure digital medical ID.

  • Allow you to share your health details with first responders in emergencies.

  • Send SMS alerts with live location to your chosen emergency contacts.

  • Improve, maintain, and develop our platform.

  • Comply with legal and regulatory obligations.

 

4. Legal basis for processing

We process your data under the following lawful bases:

  • Consent: when you choose to store and share health data.

  • Contract: to deliver the services you subscribe to.

  • Legitimate interest: to improve and secure our services.

  • Legal obligation: where required by law.

 

5. How we protect your data

  • All sensitive information is encrypted using AES-256, the same standard used by the NHS.

  • Access is restricted to authorised staff who require it to perform their role.

  • We are registered with the ICO and comply with UK GDPR and the Data Protection Act 2018.

  • We regularly review our security controls, incident response, and clinical safety case documentation.

 

6. Who we share data with

We do not sell your data. We may share information with:

  • First responders: when your QR code or NFC ID is accessed.

  • SMS providers: to deliver emergency alerts.

  • Payment providers (Stripe): to process subscriptions.

  • Regulators and legal authorities: where required by law.

 

7. How long we keep your data

We keep your information for as long as you have an active account. On closure, your profile and health data are securely deleted within 30 days, unless legal requirements demand longer retention.

 

8. Your rights

Under UK GDPR, you have the right to:

  • Access a copy of your personal data.

  • Request correction or deletion.

  • Restrict or object to processing.

  • Data portability.

  • Withdraw consent at any time.
    To exercise your rights, contact us at info@mymedicalsupport.co.uk

 

9. Cookies and analytics

We use essential cookies for platform functionality. Analytics cookies may be used to improve user experience but are optional and can be managed in your browser settings.

 

10. Children’s data

Our services are intended for parents, guardians, and individuals over 16. Parents may create and manage profiles for children with their consent.

 

11. Changes to this policy

We may update this Privacy Policy from time to time. The latest version will always be available on our website.

 

12. Contact us

If you have any questions, please contact us:

MyMedicalSupport UK Ltd
Registered Office: 82A James Carter Road, Mildenhall, IP28 7DE
Email: info@mymedicalsupport.co.uk

If you are not satisfied, you can raise a complaint with the Information Commissioner’s Office (ICO) at https://ico.org.uk