PlatinumMeds
Effective Date: August 4, 2026 Last Updated: August 4, 2026 Version: 2.0
PlatinumMeds is a medication management and health tracking application for people living with kidney disease, including dialysis patients, chronic kidney disease (CKD)
patients, transplant recipients, and their caregivers.
The following summary is provided for convenience only. The sections that follow govern.
| What we collect | Why | Who else sees it |
|---|---|---|
| Name, email address | To create and secure your account | Our servers; a caregiver you link sees your name |
| Health data — medications, doses, adherence, lab results, fluid intake, dialysis type, appointments | To deliver the core features of the app | Our servers; a caregiver you link |
| Photos and documents you upload — lab reports, profile photo, chat attachments | To store the records you choose to keep | Our servers; a caregiver you link (lab reports, chat attachments) |
| Messages you send to a caregiver | To deliver in-app messaging | Google Firebase; the caregiver you message |
| Precise location — only while using Nearby Pharmacies | To find pharmacies near you | Google (Places API). Not stored by us |
| Device type, OS version, app version, push notification token | To deliver reminders and support the app | Apple / Google notification services |
| Subscription and purchase status | To manage your plan | Apple, Google, RevenueCat |
We do not sell personal information, and we do not use advertising or analytics tracking.
If you sign in with Google or Apple, we receive your name and email address from that provider in place of a password. See Section 6.
We collect the health information you enter into the app:
Health information is special-category data under the GDPR and sensitive personal
information under the CPRA. We process it accordingly.
With your permission, we collect files you choose to upload:
We access your camera or photo library only when you choose to add a file, and only for the file you select. We do not scan or index your photo library.
Photographs of lab reports frequently contain details beyond the value you are recording, including your full name, date of birth, medical record number, and ordering physician.
Review a document before uploading it.
If you use in-app messaging with a linked caregiver, we collect the content of your messages, including any attachments, together with the sender, recipient, and timestamp.
Messages are stored in Google Firestore and are not end-to-end encrypted. Section 9 describes who may access them.
When, and only when, you open the Nearby Pharmacies feature, we request access to your device’s precise location. Your coordinates are sent from your device to the Google
Places API to return a list of pharmacies near you.
We request location only while you are actively using that feature. We do not collect location in the background, we do not retain a location history, and we do not store your
coordinates on our servers.
You may decline location access. All other features continue to work, and you can add and save pharmacies manually.
We collect your device type, operating system version, and app version, together with a push notification token issued by Apple Push Notification service (APNs) or Firebase
Cloud Messaging (FCM). The token identifies your device so we can deliver reminders and caregiver alerts, and is deleted when you sign out or uninstall the app.
We do not collect your advertising identifier (IDFA on iOS, AAID on Android).
If you invite a caregiver, or accept an invitation, we collect the email address the invitation is sent to, the relationship you specify (for example, family member or nurse), and the
status and history of the link, including when it was created, accepted, declined, or removed.
If you purchase a subscription, we receive your subscription tier, billing period, renewal status, expiration date, and the store that processed the purchase, from Apple or Google via RevenueCat. Payment is processed entirely by Apple or Google; we never receive or store your payment card details.
If you contact us for support, we collect the content of your message and the email address you sent it from.
| Purpose | Information Used |
|---|---|
| Creating, authenticating, and securing your account | Account and personal information |
| Delivering medication reminders and dose alarms | Health information, time zone, push notification token |
| Recording doses, adherence, refills, and supply | Health information |
| Storing and displaying lab results, fluid intake, and appointments | Health information, uploaded files |
| Finding pharmacies near you | Precise location (used transiently) |
| Creating and managing caregiver links, and delivering invitation emails | Caregiver connection information, email address |
| Delivering in-app messaging between you and a linked caregiver | Messages and attachments |
| Managing your subscription and access to paid features | Subscription information |
| Sending account and service notifications | Email address, push notification token |
| Customer support, account management, system maintenance, security investigations, and legal compliance | Account, health, and message information, accessed only by authorized administrators under Section 9 |
| Securing the service, preventing abuse, and diagnosing faults | Device and account information |
We may use aggregated and anonymized information to improve the app. Anonymized information has all identifiers permanently removed and cannot be re-identified; once
anonymized, it is no longer personal information under this policy.
We do not use your information for advertising, profiling, or automated decision-making producing legal or similarly significant effects.
PlatinumMeds allows a patient and a caregiver to link their accounts. A link is created only where both parties consent: one sends an invitation, the other accepts it. Links are never
created automatically.
While a link is active, the caregiver has ongoing access to the patient’s information in the app, including:
A caregiver may also send the patient reminders and messages.
Either party may remove the connection at any time from Settings. Unlinking immediately revokes the caregiver’s access going forward. A patient may be linked to more than one
caregiver; the number permitted depends on the subscription plan.
Information a caregiver viewed or retained before being unlinked remains in that person’s possession, and we cannot recall or delete it. Link only people you trust with your medical information.
We share only the information each provider requires for its function.
Authentication, in-app messaging storage (Cloud Firestore), and push notification delivery (Firebase Cloud Messaging). Receives: account identifiers, authentication tokens, message content and attachments, device push tokens.
https://firebase.google.com/support/privacy
Hosts our application servers and database. Receives: the information described in Section 3, other than location.
https://cloud.google.com/terms/cloud-privacy-notice
Returns pharmacies near you in the Nearby Pharmacies feature. Receives: your device’s precise coordinates at the moment you use the feature. It does not receive your name, account details, or health information.
https://policies.google.com/privacy
Google Sign-In (Google LLC)
Optional sign-in method. Returns your name and email address to us. We never receive your Google password.
https://policies.google.com/privacy
Optional sign-in method on iOS. Returns your name and email address to us. We never receive your Apple password. If you use Hide My Email, we receive only a private relay address and use it solely for account and service email.
https://www.apple.com/legal/privacy
Manages subscriptions and in-app purchases. Receives: an anonymous app user identifier, purchase and subscription history, and basic device and country information. RevenueCat does not receive health information.
https://www.revenuecat.com/privacy
Process all payments and manage billing and renewals. Receive your payment information directly.
Transactional email — account verification and one-time passcodes, password resets Transactional email — account verification and one-time passcodes, password resets, account status
account status notifications, and caregiver and patient invitations — is sent directly from our own servers using Nodemailer over SMTP. We use no third-party email marketing or campaign platform, and we do not add your address to any marketing list. Our email contains only what the message requires and does not include health information.
We do not sell personal information, share it for cross-context behavioral advertising, or disclose health information to advertisers, data brokers, insurers, or employers.
We may disclose information where legally compelled, in response to a valid subpoena, court order, or other lawful request, or where necessary to protect the rights, safety, or property of our users or ourselves. Where permitted by law, we will notify you first.
If our business is involved in a merger, acquisition, or sale of assets, your information may transfer. We will notify you before it becomes subject to a different privacy policy, and your rights under Section 12 will continue to apply.
Each permission is optional, and the app remains usable if you decline.
| Permission | When requested | Purpose | If you decline |
|---|---|---|---|
| Notifications | On first launch, or when you set a reminder | Medication reminders, refill alerts, caregiver messages | The app works, but you receive no reminders |
| Camera | When you choose “Take Photo” for a lab report | To photograph a lab report | You can upload an existing file instead |
| Photo library | When you choose a file or profile photo | To select an image or PDF | You can use the camera or skip the upload |
| Precise location | When you open Nearby Pharmacies | To find pharmacies near you | All other features work; add pharmacies manually |
| Alarms and reminders (Android) | When you set up dose reminders | To trigger reminders at the scheduled time | Reminders may be delivered late |
You may change any permission at any time in your device settings.
We send push notifications for medication reminders, refill and supply alerts, caregiver messages, and account notices. These may display medication names or dose details on your lock screen, where they could be visible to anyone with sight of your device.
To hide previews: on iOS, Settings → Notifications → PlatinumMeds → Show Previews; on Android, Settings → Apps → PlatinumMeds → Notifications → Lock screen. Disabling notifications entirely will stop medication reminders from being delivered.
Your account and health information is stored on our servers hosted on Google Cloud Platform in the United States. Authentication, in-app messaging, and push notification delivery are provided by Google Firebase, also in the United States.
Communication between the app and our servers is encrypted using TLS, and the app does not permit unencrypted network traffic. Data held on our servers and in Firebase is encrypted at rest by our cloud provider. On your device, authentication tokens and cached account information are stored in the iOS Keychain or Android EncryptedSharedPreferences rather than ordinary app storage, and app data is excluded from automatic device backups.
PlatinumMeds includes an internal admin panel. Authorized administrators engaged by Justin Pham LLC may access user information through it, including account details, health information, and message content. Your data is not end-to-end encrypted.
Administrator access is permitted only for customer support, account management, system maintenance, security investigations, and legal compliance. Access is restricted to personnel who require it for one of those purposes, and administrators are bound by confidentiality obligations. We do not use administrator access for advertising, marketing, profiling, or any purpose unrelated to operating the service.
No method of electronic transmission or storage is completely secure, and we cannot guarantee absolute security. You can help protect your account by using a strong, unique password, keeping your device locked, and unlinking caregivers who no longer require
| Information | Retention period |
|---|---|
| Account information (name, email, password hash) | Life of the account, then erased 14 days after a deletion request |
| Health information (medications, doses, adherence, lab results, fluid intake, appointments, kidney care profile) | Life of the account, then erased 14 days after a deletion request |
| Uploaded lab report files and profile photograph | Life of the account, or until you delete the individual record, then erased 14 days after a deletion request |
| Messages and chat attachments | Life of the account, then erased 14 days after a deletion request |
| Precise location coordinates | Not retained. Used transiently to return nearby pharmacies, then discarded |
| Device and push notification tokens | Until you sign out, uninstall the app, or delete your account |
| Caregiver link records | Life of the link, then removed with your account |
| Subscription and purchase records | As required by applicable tax and accounting law |
| Support correspondence | 24 months from the date of last contact |
Encrypted system backups may hold residual copies for a short period after erasure.These are not accessible for ordinary use and are overwritten on a rolling schedule.
You may delete your account at any time from Settings → Delete Account. If you registered with an email address, you will be asked to re-enter your password to confirm.
You may also request deletion by emailing us from your registered email address.
On deletion, your account becomes inactive immediately: you are signed out, your data is no longer accessible in the app, and any linked caregiver immediately loses access to your information.
Your account then remains recoverable for 14 days. If you sign in during that period, your account and all associated data are fully restored. After 14 days, your account
and all personal and health information are permanently and irreversibly deleted.
We may retain a minimal record that the account existed and was deleted, together with any transaction or tax records we are required by law to keep. Neither includes health
information.
Deleting your account does not cancel your subscription. Subscriptions are billed by Apple or Google and must be cancelled through the store that billed them: on iOS,
Settings → your name → Subscriptions; on Android, Google Play → Profile → Payments and subscriptions → Subscriptions.
Please cancel before deleting your account.
Wherever you are located, you may access the personal information we hold about you, most of which is visible in the app at any time; correct inaccurate information through
your profile or by contacting us; delete your account and associated data under Section 11; withdraw consent by unlinking a caregiver, disabling a permission, or
deleting your account; and raise an objection or complaint with us.
To exercise a right that cannot be exercised in the app, email us from your registered email address. We confirm control of that address before acting on a request, and we
respond within one month. We do not charge for requests and will not treat you differently for making one.
Justin Pham LLC is the controller of your personal data. Contact details appear in Section 23.
| Purpose | Legal basis |
|---|---|
| Processing your health information, including any shared with a caregiver | Explicit consent — Art. 6(1)(a) and Art. 9(2)(a) |
| Creating and maintaining your account, delivering subscribed features, and processing payment | Performance of a contract — Art. 6(1)(b) |
Additional rights
In addition to the rights in Section 12, you may request your personal data in a structured, commonly used, machine-readable format and have it transmitted to another controller where technically feasible; request restriction of processing; object to processing based on our legitimate interests; and lodge a complaint with your national data protection authority. A list of authorities is available at https://edpb.europa.eu/about-edpb/board/members_en, and in the United Kingdom at https://ico.org.uk.
We do not carry out automated decision-making producing legal or similarly significant effects.
| CCPA category | Collected | Source | Purpose | Disclosed to |
|---|---|---|---|---|
| Identifiers (name, email, account ID, device token) | Yes | You; sign-in provider | Account, reminders | Cloud provider |
| Personal information under Cal. Civ. Code §1798.80 | Yes | You | Account | Cloud provider |
| Commercial information (purchase history) | Yes | Apple/Google | Subscription management | RevenueCat |
| Internet or network activity (app usage, device info) | Yes | Your device | Service operation, security | Cloud provider |
| CCPA category | Collected | Source | Purpose | Disclosed to |
|---|---|---|---|---|
| Geolocation data (precise) | Yes | Your device | Nearby Pharmacies only | Google Places API |
| Sensitive personal information — health data | Yes | You | Core app features | Cloud provider; caregivers you link |
| Audio, electronic, visual information (photos, documents) | Yes | You | Lab reports, profile, attachments | Cloud provider; caregivers you link |
| Biometric information | No | — | — | — |
| Inferences and profiles | No | — | — | — |
We have not sold personal information, or shared it for cross-context behavioral advertising, in the preceding twelve months. This includes the personal information of minors under 16.
We collect health information and precise geolocation, both sensitive personal information under the CPRA. We use them solely to provide the features you request and for purposes permitted under §7027(m) of the CPRA regulations, including providing the service, ensuring security and integrity, and performing services on our own behalf such as customer support and system maintenance. We do not use sensitive personal information to infer characteristics about you. Because our use is confined to these permitted purposes, exercising the right to limit does not further restrict our processing; you may delete your account at any time to stop it entirely.
California residents hold the rights to know, delete, correct, opt out of sale or sharing, limit use of sensitive personal information, and non-discrimination. Exercise these rights in the app or by emailing us. You may use an authorized agent, subject to written authorization we may verify.
Our servers are located in the United States. If you use PlatinumMeds from outside the United States, your information will be transferred to and processed there, under data protection laws that may differ from those of your country.
For personal data transferred from the EEA or United Kingdom, we rely on the European Commission’s Standard Contractual Clauses, together with the UK International Data Transfer Addendum where applicable, and on our service providers’ certifications under the EU-US Data Privacy Framework and its UK Extension. Further information about these safeguards is available on request.
PlatinumMeds is intended for users aged 17 and older, and you are asked to confirm your age when you create an account. The app is not directed at children, and we do not knowingly collect personal information from anyone under 17. Our minimum age applies in the EEA and United Kingdom regardless of the local age of digital consent.
If we learn that we hold information from a user under 17, we will delete the account and its data promptly. If you believe a person under 17 has created an account, contact us at the address in Section 23.
PlatinumMeds is a native mobile application. It does not use cookies, web beacons, pixels, or similar web tracking technologies, and it does not use third-party advertising or analytics software development kits. We do not track you across other companies’ apps or websites, and the app does not request App Tracking Transparency permission on iOS because it does not track.
If we become aware of a security breach affecting your personal or health information, we will notify you and the relevant supervisory authorities without undue delay and, where the GDPR applies, within 72 hours of becoming aware of it. Our notice will describe what occurred, the information affected, the steps we are taking, and the steps you can take.
Justin Pham LLC is not a covered entity under the U.S. Health Insurance Portability and Accountability Act (HIPAA), and does not act as a business associate of any covered entity. HIPAA does not apply to the information you enter into PlatinumMeds. If a healthcare provider, clinic, or dialysis center referred you to the app, your use of it is a direct relationship with us, governed by this policy rather than by that provider’s notice of privacy practices.
PlatinumMeds is not a medical device. It is a wellness and medication management tool. It does not diagnose, treat, cure, or prevent any disease, and it does not replace the advice of a qualified healthcare provider.
PlatinumMeds is not for use in emergencies. If you are experiencing a medical emergency, call your local emergency number immediately.
We may update this policy from time to time. We will revise the Last Updated date and version number shown above.
Where a change is material — for example, collecting a new category of information, adding a third-party recipient, or altering how we use health information — we will notify you in the app and by email before it takes effect. Where the change affects health information processed on the basis of consent, we will seek your consent again and will not apply the change to that information until you provide it.
Continued use of PlatinumMeds after a non-material change takes effect constitutes acceptance of the updated policy.
The remainder of Section 22 is cut off in the provided image and is not visible, so it cannot be accurately transcribed. Justin Pham LLC is organized under the laws of the State of California. This policy and any dispute arising from it are governed by the laws of the State of California and the federal laws of the United States, without regard to conflict of law principles.
Nothing in this section removes any right you hold under the mandatory law of your country of residence, including the right of EEA and United Kingdom users to bring proceedings in their local courts and to complain to their national supervisory authority.
For any question about this policy, or to exercise any of your rights:
Justin Pham LLC
4406 Bowman Blvd Unit A
Los Angeles, CA 90032-2602
United States
Email: platinumkidney@gmail.com
Website: https://www.platinumkidney.com
We respond to privacy requests within one month.
EEA and United Kingdom users may also lodge a complaint with their national data protection authority. California residents may contact the California Privacy Protection Agency at https://cppa.ca.gov.