Legal
GDPR Policy
Our commitment to your privacy and compliance with data protection laws.
Last updated: March 1, 2026
1. Data Protection & GDPR Compliance
- The Medical Physics platform is committed to complying with the General Data Protection Regulation (GDPR) for our international users, as well as applicable Indian data protection laws.
- This policy outlines our data protection guidelines and the rights of students, medical physics professionals, and authors regarding their personal data.
2. Data Processing Principles
- Lawfulness and Transparency: Data such as exam scores and study progress is processed transparently to improve your learning experience.
- Purpose Limitation: Data is collected exclusively for educational purposes, platform analytics, and secure payment processing via Razorpay.
- Data Minimization: We only collect necessary information, such as your email, professional role, and mock test performance.
- Storage Limitation: Personal test history is retained as long as your account is active to support your certification preparation, while payment records are kept as required by tax regulations.
3. Your Rights
- Right to Access: You can request copies of your personal data, including detailed mock test reports.
- Right to Rectification: You can update your profile information, institution details, or professional role directly from your Dashboard.
- Right to Erasure ('Right to be Forgotten'): You can request the deletion of your account and associated study data by contacting our support team.
- Right to Data Portability: You can request an export of your study progress and test history in a machine-readable format.
4. Data Breaches & Security
- All user data is stored on secure servers located in India, utilizing AES-256 encryption at rest and TLS 1.3 in transit.
- In the event of a personal data breach that poses a high risk to your rights, we will notify the relevant supervisory authority and affected users within 72 hours.
5. Contacting the Data Protection Officer
- If you wish to exercise any of your data rights or have concerns about how your data is handled, please contact our Grievance/Data Protection Officer.
- You can reach us directly at medicalphysicshelpdesk@gmail.com with the subject line 'GDPR Data Request'. We aim to respond to all legitimate requests within 30 days.
Have questions about your data rights? Contact us or email medicalphysicshelpdesk@gmail.com