MeloCare

Privacy

MeloCare is a care organizer. Two divisions, two different postures — here is exactly what happens to information in each.

Church Edition

A church care ministry is not a covered entity under HIPAA, and everything in the Church Edition is entered by the patient or their family about themselves. MeloCare does not receive records from a clinic system and does not connect to an electronic health record on the church side.

The care profile — condition, medications, supplements, care team — is stored on the device you typed it into. Clearing it in the app removes it. A church administrator can see which families are approved and how many tasks were covered. They cannot see a family’s medical details or their conversations with MeloCare.

Clinic Edition

A medical office is a covered entity, so MeloCare treats everything in the Clinic Edition as protected health information. The patient enters their own condition, medications, and notes directly on their own device. There is no patient identifier, no account, no cloud backup, and no MeloCare database holding patient records.

One thing does leave the device. When you use Ask MeloCare, your question and a copy of your saved care profile are sent through MeloCare’s servers to our AI provider so an answer can be written. The same happens when you photograph a visit summary or a medication label. That information is used to produce the answer and is not written to any MeloCare database. Every other part of MeloCare works without anything leaving your device.

The only information MeloCare stores is the generic practice profile the office creates once — clinicians, phone numbers, and the practice name — so the QR code and handout work. It holds no patient information, and it is public by design: any patient who scans the code can read it without signing in. It is encrypted in transit and at rest, and it can only be changed by MeloCare, not by the public.

Accounts for office staff, audit logging, a written retention and breach policy, and business associate agreements with us and with the vendors underneath us are still being built. Until they are finished, MeloCare is not offered to clinics as a HIPAA-ready service. The security page lists what is shipped and what is not.

What we never do

  • Sell health information, or use it for advertising.
  • Share a family’s conversations with their church, their employer, or an insurer.
  • Use identifiable patient information to train models.

Deleting your information

In every edition, you delete your information by clearing the care profile and conversation in the app on your device. Clinic staff cannot see your workspace and cannot delete it — only you can. If you have saved an encrypted backup file, delete that file too. Ask us anything about this through the waitlist form until support contacts are published.

Where MeloCare is available

MeloCare is offered in the United States only. It is not available to people in the European Economic Area, the United Kingdom, or Switzerland, and requests from those regions are declined.

This page describes how MeloCare operates. It is not legal advice, and it is reviewed as the product changes.