Privacy Policy for Lizar Clinic

Effective Date: May 2, 2026

Note for Regulators: This policy has been updated to explicitly define data retention periods and deletion procedures for our local-only architecture.

This Privacy Policy is designed to inform medical professionals, hospital administrators, and clinical staff about the rigorous data handling practices of Lizar Clinic. Given the sensitivity of medical records and patient health information (PHI), this application has been engineered with a "Zero-Cloud" architecture.

Fundamental Security Commitment

Lizar Clinic DOES NOT use cloud services, external servers, or internet-based databases. All clinical data, medical histories, patient identifiers, and cognitive stimulation results are stored exclusively within the encrypted local storage of the user's device. Access to this data is technically impossible from outside the physical device or by the developer.

1. Scope of Clinical Data Privacy

The Application is a self-contained professional tool. It handles several types of sensitive information, including but not limited to:

None of this information ever leaves the hardware. There are no background processes that "sync" or "backup" data to any online repository controlled by the developer or third parties.

2. Data Retention and Storage Duration

Lizar Clinic does not determine or control how long patient data is stored. Since all information is saved locally on the user's device:

3. Data Deletion Rights and Procedures

Users have absolute control over the clinical data stored within the app. Data can be deleted through the following methods:

4. Technical Architecture & Access Restrictions

Access to clinical records is restricted in the following ways:

5. Regulatory Compliance (HIPAA/GDPR Principles)

By design, Lizar Clinic facilitates compliance with international medical data protection laws. Since data never crosses international borders or enters the public internet, the risk of data breaches during transmission is eliminated. Professional users remain the sole "Data Controllers" of their patients' information.

6. User Responsibilities

Since the application is 100% offline, the user is responsible for the physical and digital security of the device. We recommend:

7. Information Sharing

Lizar Clinic does not share, sell, or rent data. There are no advertising SDKs, no telemetry trackers, and no analytics engines included in the software bundle. The integrity of the clinical environment is absolute.

8. Contact and Technical Inquiries

For more information regarding the encryption and local storage architecture, professional users may contact the developer through the official support channels provided in the Google Play Store.