Medgic's AI Processes Skin Condition Photos While Maintaining Strict Privacy
Medgic's AI technology processes user-submitted photos to improve skin condition analysis tools, focusing on global medical challenges while maintaining strict privacy policies. This analysis examines the company's data collection practices, security measures, and research methods to understand how it balances technological advancement with user privacy.
Medgic collects a limited set of basic demographic information, including gender, age, country, and ethnicity—none of which are specific enough to identify individual users. Users must also complete a biodata profile after installation, which is stored locally on their phone. The primary source of data for the company's AI algorithms is photos taken by users of their target skin conditions, with all image processing occurring locally on the device.
The company maintains a strict policy against collecting sensitive personal data, excluding email addresses, usernames, passwords, financial information, full addresses, contact details, real names, social security numbers, exact dates of birth, or aliases. To protect user privacy, Medgic does not collect geolocation data and allows users to delete their biodata profile by clearing their phone's cache and uninstalling the application.
While the company considers uploaded images to be pseudonymized, its processing techniques may complicate complete data removal. Research indicates that uploaded images undergo further processing to enhance anonymization, though specific details on these additional steps are not provided.
Medgic uses the data it collects for research purposes, focusing on improving the accuracy, reliability, and stability of its AI technology. The company emphasizes that this research supports global medical challenges, though it explicitly states that user data is not used for discrimination purposes or to deny services to specific groups. The data undergoes pseudonymization and anonymization before storage on secure cloud servers maintained by trusted third-party providers.
Medgic employs robust security measures to protect user data, storing pseudonymized information on secure cloud servers managed by trusted third-party providers. The company maintains a strict policy against collecting sensitive personal data, ensuring that all information processed by their AI algorithms remains protected through rigorous anonymization techniques.
The pseudonymization process goes beyond initial data collection, as the company further anonymizes uploaded images to add an additional layer of privacy protection. While the specific details of these enhanced anonymization steps are not publicly disclosed, they indicate a commitment to maintaining user privacy throughout the data processing pipeline.
To ensure data security, only staff members and third-party consultants working directly for Medgic are permitted to access the information, and all personnel are bound by confidentiality agreements. The company regularly updates its security protocols and follows industry best practices for protecting sensitive information.
Data retention policies are designed to balance research needs with privacy concerns. Collected data is retained only for as long as it remains useful for improving AI technology's accuracy, reliability, and stability. Once a dataset is no longer necessary for ongoing research, it undergoes complete destruction or de-identification to prevent any potential misuse.
The company maintains that while content and policies may evolve over time, users always have the option to request deletion of their data. However, given the extensive pseudonymization and one-way data flow processes implemented by Medgic, achieving complete data removal can be exceptionally challenging. This limitation is explicitly noted in the company's privacy policy, which also highlights the legal requirement to maintain certain data for research purposes.
Medgic employs its proprietary AI algorithms to derive more accurate predictions from user-submitted data, focusing on improving the technology's accuracy, reliability, and stability. These improvements aim to address global medical challenges while adhering to strict policies against using data for discriminatory purposes or denying services to specific groups.
The company's AI technology processes user-submitted photos to derive more accurate predictions through machine learning. This ongoing refinement cycle allows Medgic to enhance the performance of its skin condition analysis tools over time. The pseudonymized nature of the data facilitates this improvement process without compromising individual user privacy.
Research efforts focus on advancing medical diagnostics through AI, with the ultimate goal of supporting global health initiatives. This research-driven approach distinguishes Medgic's data usage from more consumer-focused applications, highlighting the company's commitment to medical innovation rather than commercial gain.
To support global research efforts, Medgic may transfer pseudonymized data across international borders for collaborative projects. The company works with trusted third-party cloud service providers to store this data securely, ensuring compliance with both local and international data protection standards.
Only Medgic staff members and third-party consultants working directly for the company have access to pseudonymized data. All personnel are required to sign confidentiality agreements to protect user information. This restricted access helps maintain the integrity of the research process while allowing for necessary collaboration between team members.
Like all privacy policies, Medgic's terms of service may evolve over time. Users are notified of policy changes and must agree to them in order to continue using the service. While the company maintains the right to update its policies, users retain the option to request deletion of their data, though complete removal may be technically challenging due to the pseudonymization and one-way data flow processes in place.
Medgic acknowledges user rights under its privacy policy, allowing individuals to request deletion of their data. However, the company notes that complete data removal can be technically challenging due to its extensive pseudonymization and one-way data flow processes.
The ability to delete data is limited to the user's biodata profile, which can be removed by clearing the cache and uninstalling the application. For the pseudonymized images stored on cloud servers, the company's policies for complete data removal are less clear. While users retain the right to request deletion, the company's proprietary pseudonymization techniques and the ongoing research requirements present significant challenges for fully removing an individual's data from its systems.
The company's approach to data retention balances research needs with privacy concerns. Once data is no longer necessary for improving AI technology's accuracy, reliability, and stability, it undergoes complete destruction or de-identification to prevent misuse. This policy reflects the company's commitment to maintaining user privacy while supporting its research objectives.