Overview
MedBlitz ("we", "our", or "us") is an educational flashcard application designed to help students prepare for medical licensing exams. We are committed to protecting your privacy. This Privacy Policy explains what information we collect, how we use it, and your rights regarding your data. By using MedBlitz, you agree to the practices described in this policy.
Information We Collect
MedBlitz stores the following data locally on your device: • Display name you enter during onboarding • Exam focus selection • Daily study goal preference • Flashcard decks and cards you create • Study session history and spaced repetition progress • Subscription status We do not create user accounts. We do not collect your name, email address, or any personally identifiable information.
Device Identifier for Free Tier Limits
To enforce the free-tier AI generation limit fairly, our server stores an anonymous device identifier (a random ID generated on your device) alongside a generation count. This data: • Is not linked to your identity in any way • Contains no personal information • Is used solely to track the number of AI generations per device • Is stored securely on our backend server (Railway) • Is not shared with any third parties This identifier resets if you factory-reset your device (Android) or uninstall the app (iOS).
AI Card Generation
When you use the Generate Cards feature, the text you submit is sent to our backend server solely for the purpose of generating flashcards. This text is: • Processed by OpenAI's GPT-4o-mini model (primary) or Anthropic's Claude model (fallback) • Not stored on our servers after processing • Not used to train AI models • Not shared with any other third parties Please do not include sensitive personal or confidential information in text submitted for AI generation.
AI Study Coach
When you use the AI Study Coach feature, the following data is sent to our backend server to generate personalized coaching responses: • Your chat messages to the Coach • Aggregated study statistics (exam readiness score, retention rate, study streak, cards reviewed) • Deck names and high-level performance data (due cards, learning cards, lapse counts) • Your selected exam target (e.g. USMLE, NCLEX) • An anonymous device identifier used to enforce daily message limits This data is: • Processed by OpenAI's GPT-4o-mini model to generate coaching responses • Not stored on our servers after processing • Not used to train AI models • Not linked to your identity • Not shared with any other third parties Please do not include sensitive personal or confidential information in your Coach messages.
Camera and Photo Library
MedBlitz may request access to your device camera and photo library to enable the "Import from Photo" feature, which uses optical character recognition (OCR) to extract text from images for flashcard generation. • Camera access is used solely to capture photos for text recognition • Photo library access is used solely to select existing photos for text recognition • Photos and images are processed entirely on your device and are never uploaded to our servers or shared with any third parties • On iOS, text recognition is performed using Apple's Vision framework • On Android, text recognition is performed using Google's ML Kit, which runs on-device You may deny camera or photo library access at any time through your device settings. Denying access will disable the Import from Photo feature but will not affect any other app functionality.
Push Notifications
MedBlitz may request permission to send push notifications to your device. Notifications are used solely to: • Remind you to complete your daily study session • Encourage streak maintenance • Provide study progress updates Notifications are generated locally on your device based on your study schedule and preferences. No notification content is sent to or processed by our servers. You may disable notifications at any time through your device's system settings.
Third-Party Services
MedBlitz integrates with the following third-party services: • OpenAI API — processes text for flashcard generation and AI Study Coach responses. Subject to OpenAI's Privacy Policy. • Anthropic API — fallback AI processing for flashcard generation. Subject to Anthropic's Privacy Policy. • Railway — backend hosting for AI generation, AI Study Coach, and device limit tracking. • Firebase Analytics — anonymous usage analytics to understand how features are used. • Firebase Crashlytics — crash reporting to improve app stability. • Apple Vision Framework (iOS) — on-device text recognition for the Import from Photo feature. No data leaves your device. • Google ML Kit (Android) — on-device text recognition for the Import from Photo feature. No data leaves your device. Subject to Google's Privacy Policy. • Apple Push Notification Service / Firebase Cloud Messaging — delivery of study reminders. Notification content is generated on-device and not processed server-side. • Apple App Store / Google Play — handles subscription payments. We do not receive or store your payment information. We encourage you to review the privacy policies of these services.
Subscriptions and Payments
MedBlitz Pro subscriptions are processed entirely by Apple (iOS) or Google (Android). We do not collect, store, or have access to your payment information such as credit card numbers. Subscription status is stored locally on your device. If you request a refund, your Pro access will be deactivated in accordance with Apple or Google's refund policies.
Data Storage and Security
All personal preferences, decks, cards, and study data are stored locally on your device using secure platform storage (Android DataStore / iOS secure storage). This data never leaves your device except for the AI generation feature described above. On our backend server we store only: the anonymous device identifier and your AI generation count. No personal data is stored server-side. Uninstalling the app will permanently delete all locally stored data. We recommend exporting or backing up any important study materials before uninstalling.
Educational Use Disclaimer
MedBlitz is an educational study tool, not a medical application. It is not intended to provide medical advice, diagnosis, or treatment. AI-generated flashcard content is created for study purposes only and may contain inaccuracies. MedBlitz is not a substitute for professional medical education, clinical training, or qualified healthcare advice. Users are solely responsible for verifying the accuracy of any content against authoritative medical sources.
Children's Privacy
MedBlitz is intended for users aged 17 and older. We do not knowingly collect personal data from children under the age of 13. If you believe a child has provided us with personal information, please contact us and we will take steps to delete such information.
Your Rights
You have full control over your local data at all times. You may: • Delete individual decks or cards within the app • Clear all local data instantly via Settings → Clear All Data • Request deletion of your server-side device record by contacting us • Contact us at support@itrnlabs.com with any privacy questions
Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices or for legal reasons. Any material changes will be reflected in the app with an updated date. Continued use of MedBlitz after changes constitutes acceptance of the updated policy.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at: support@itrnlabs.com You may also reach us through the App Store or Google Play support page for MedBlitz.