Privacy Policy for MedRoad.org

Effective Date: April 2026

1. Introduction

Welcome to MedRoad.org, a career guidance platform for medical students. Your privacy is of paramount importance to us. This Privacy Policy outlines how we collect, use, store, and protect your personal information in compliance with the General Data Protection Regulation (GDPR).

2. Data Controller

  • The entity responsible for processing your personal data (the “Data Controller”) is:
  • Vitalii Ometsynskyi (SapiensFin)
  • Registered Address: Kędzierz 153, 39-200 Dębica, Poland
  • NIP (Tax ID): 6731915349 | REGON: 526417603
  • Email: support@medroad.org
  • The service is operated in technical cooperation with the website owner, Sole Proprietor Karpa Oleh Olehovych (Ukraine).

3. Information We Collect

  • Personal Identity Data: Name, email address, and educational background.
  • Assessment Data: Answers and results of the career orientation tests.
  • Transaction Data: Payment details processed via our billing partner (SapiensFin). Note: We do not store full credit card numbers; these are handled by encrypted third-party payment processors.
  • Technical Data: IP address, browser type, and usage cookies for website functionality.

4. Legal Basis for Processing

We process your data based on the following:

  • Performance of a Contract (Art. 6(1)(b) GDPR): To provide you with the test results and guidance you purchased.
  • Legal Obligation (Art. 6(1)(c) GDPR): To comply with Polish and EU tax and accounting laws (e.g., issuing invoices).
  • Consent (Art. 6(1)(a) GDPR): For newsletters or marketing communications, if you have opted in.

5. How We Use Your Information

  • To Deliver Services: Providing personalized career recommendations.
  • Invoicing: Processing payments and issuing VAT/tax invoices via SapiensFin.
  • Communication: Sending technical updates and support responses.
  • Security: Protecting our website from fraudulent activity.

6. Data Sharing and Third Parties

We do not sell your data. We only share information with trusted partners necessary for our operations:

Payment Processors: To handle secure transactions.

  • Cloud Hosting Providers: Where the website and database are securely stored.
  • Accounting Services: To process financial records in Poland.
  • Authorities: Only if required by law (e.g., tax audits).

7. Data Retention

We retain your personal information only as long as:

  • Your account is active.
  • Necessary to provide the service.
  • Required by Polish law (financial and tax records are typically stored for 5 years).

8. Your Rights (GDPR)

As a user, you have the following rights:

  • Right to Access: Request a copy of your personal data.
  • Right to Rectification: Request correction of inaccurate data.
  • Right to Erasure (“Right to be Forgotten”): Request deletion of your data (subject to legal retention requirements).
  • Right to Data Portability: Request transfer of your data to another provider.
  • Right to Withdraw Consent: You can opt out of marketing at any time.

9. Data Security

We implement appropriate technical and organizational measures (including SSL encryption) to protect your data. However, no electronic transmission is 100% secure; we encourage users to use strong passwords.

10. Changes to This Policy

We reserve the right to update this policy. Any changes will be posted on this page with an updated “Effective Date.”

11. Governing Law and Contact

This Privacy Policy is governed by the laws of Poland. If you have any questions or wish to exercise your rights, please contact us:

SapiensFin Vitalii Ometsynskyi
Kędzierz 153, 39-200 Dębica, Poland
Email: support@medroad.org
Phone: +380 67 911 84 84