Privacy Policy
MedicTests LLC is committed to protecting your privacy. This policy describes what information we collect, how we use it, who we share it with, and what rights you have over your data.
Last modified: April 2, 2026
Who We Are
MedicTests LLC ("Company," "we," "us," or "our") operates medictests.com and the MedicTests mobile applications. We are based in Chattanooga, Tennessee. You can reach us at support@medictests.com.
Information We Collect
Information You Provide
- Account information: Name, email address, and password when you register.
- Payment information: Billing details when you purchase a subscription. On the website, payment card data is processed directly by Stripe; we store only your subscription status and the last four digits of your card for display purposes. In our mobile apps, purchases are processed through the Apple App Store or Google Play, and we receive purchase receipts and product identifiers.
- Profile information: Your EMS certification level, target exam date, rank, school/class information, and preferences you set in your account.
- Study data: Test progress, XP, streaks, and other learning metrics stored in your account.
- Communications: Messages you send us through support channels.
- Survey responses: Responses to optional surveys we may send.
Information Collected Automatically
When you visit our website or use our apps, we automatically collect:
- Usage data: Pages visited, features used, exam and quiz performance, study progress, and time spent on content.
- Device and technical data: IP address, browser type, operating system, device identifiers, device model and manufacturer, screen dimensions, timezone, app version, and referring URLs.
- Cookies and similar technologies: Small files stored on your device that help us recognize you, remember your preferences, and analyze how you use our site. See the Cookies and Tracking Technologies section below.
Cookies and Tracking Technologies
We use the following categories of cookies and tracking technologies:
Strictly Necessary
Required for the site to function. These cannot be disabled.
- Session cookie: Keeps you logged in during your visit.
- Stripe: Fraud prevention and payment processing cookies set when you make a purchase.
Analytics and Performance
- Google Analytics 4 (GA4): Collects usage and behavioral analytics data, including persistent session and user identifiers. Operated by Google LLC.
- New Relic: Monitors site performance and load times.
- Sentry: Captures application errors to help us fix bugs. User data in error reports is minimized and not used for advertising.
Marketing and Advertising
The following advertising pixels and tags are loaded only for anonymous (non-logged-in) visitors. Once you create an account and log in, none of these fire during your session.
- Google Ads & Remarketing: Conversion tracking and remarketing.
- Meta (Facebook) Pixel: Conversion tracking and audience building on Facebook and Instagram.
- TikTok Pixel: Conversion tracking on TikTok.
- LinkedIn Insight Tag: Conversion tracking and audience building on LinkedIn.
- Pinterest Tag: Conversion tracking on Pinterest.
- Microsoft Advertising (Bing UET): Conversion tracking on Microsoft Advertising.
A/B Testing
- VWO (Visual Website Optimizer): Used to test variations of marketing pages to improve the experience for new visitors. Loaded for anonymous visitors only.
Mobile App Permissions
Our mobile apps may request the following device permissions. You can decline any permission and still use the app.
- iOS: Camera, Microphone, Photo Library, Location, and App Tracking Transparency.
- Android: Internet access and Billing (for in-app purchases). We do not collect the Android Advertising ID.
How We Use Your Information
- Provide and improve the MedicTests platform and mobile apps.
- Personalize your study experience and track your progress.
- Process payments and manage your subscription.
- Send account notices, renewal reminders, and support responses.
- Analyze site usage to improve content and performance.
- Measure advertising effectiveness and acquire new members.
- Detect and prevent fraud and abuse.
- Comply with legal obligations.
AI Features (M.A.C.K. Tutor)
Our M.A.C.K. AI tutor is powered by large language model APIs provided by Anthropic and/or OpenAI. When you interact with M.A.C.K.:
- Your messages are transmitted to the AI provider's API to generate a response.
- We do not intentionally send your name, email, or account details to AI providers as part of tutor conversations.
- AI providers may retain conversation data per their own privacy policies.
- Do not enter personal health information, patient data, or sensitive personal information into the AI tutor.
How We Share Your Information
We do not sell your personal information. We share it only in these circumstances:
- Service providers: Companies that help us operate the platform — including Stripe (payments), SendGrid (email), Google Firebase (database and analytics), Heroku (hosting), AWS (file storage), AppsFlyer (attribution), Algolia (search), Sentry (error monitoring), Google Analytics (usage analytics), and New Relic (performance monitoring). These providers process data on our behalf.
- Advertising platforms: We share limited behavioral data (page views, conversion events) with ad platforms for anonymous, non-logged-in visitors only. This constitutes "sharing" for cross-context behavioral advertising under California law. See Your Right to Opt Out.
- Legal requirements: When required by law, court order, or to protect our legal rights.
- Business transfers: In connection with a merger, acquisition, or sale of assets, your data may be transferred as part of that transaction.
- With your consent: For any other purpose with your explicit permission.
Data Retention
- Account and usage data: Retained while your account is active. If you delete your account, we retain data for up to 3 years to comply with legal obligations and resolve disputes.
- Payment records: Retained for 7 years to comply with tax and accounting requirements.
- Support communications: Retained for 3 years.
- Analytics data: Per third-party provider policies. GA4 data is retained for 14 months by default.
- Error logs: Retained for 90 days.
Your Privacy Rights
Depending on where you live, you may have some or all of the following rights regarding your personal information:
- Right to know: Request details about what personal information we have collected about you and how we use it.
- Right to access: Obtain a copy of your personal information.
- Right to correction: Request that we correct inaccurate information.
- Right to deletion: Request that we delete your personal information, subject to certain exceptions.
- Right to portability: Receive your data in a portable format.
- Right to opt out of targeted advertising: Direct us not to share your data with advertising platforms for cross-context behavioral advertising. See Your Right to Opt Out below.
- Right to opt out of profiling: Object to automated decision-making that produces significant effects. Contact us to exercise this right.
- Right to non-discrimination: We will not deny you service or charge different prices because you exercised a privacy right.
These rights apply to residents of states with comprehensive privacy laws, including California, Virginia, Colorado, Connecticut, and Texas. We extend these rights to all US residents as a matter of policy.
California Residents (CCPA/CPRA)
California residents have additional rights under the California Consumer Privacy Act and California Privacy Rights Act, including the right to limit use of sensitive personal information and the right to opt out of the sale or sharing of personal information. We do not sell personal information. We do share behavioral data with ad platforms as described above, which constitutes "sharing" under California law. To opt out, see Your Right to Opt Out.
Your Right to Opt Out of Sharing for Advertising
We share limited behavioral data (page visits, conversion events) with advertising platforms (Meta, TikTok, LinkedIn, Pinterest, Microsoft) for cross-context behavioral advertising. This sharing applies only to anonymous visitors — once you log in, advertising pixels do not fire during your session.
To opt out, you have two options:
- Global Privacy Control (GPC): If your browser sends a GPC signal, we automatically suppress all advertising pixels for your session. We honor GPC signals as required by California and Colorado law.
- Manual opt-out request: Email us at admin@medictests.com with subject line "Do Not Share My Data." We will process your request within 15 business days.
How to Exercise Your Rights
To submit a privacy request (access, deletion, correction, portability):
- Email: admin@medictests.com
- Subject line: "Privacy Request — [type of request]"
We will verify your identity before processing the request and respond within 45 days. We may extend this period by an additional 45 days when reasonably necessary and will notify you of any extension.
You may also review and correct your account information directly by logging in and visiting your account profile page.
If you are a California resident and wish to appeal a decision we made regarding your privacy request, email us at admin@medictests.com with subject line "Privacy Appeal."
Children's Privacy
Our platform is intended for users 18 years of age or older. We do not knowingly collect personal information from anyone under 18. If you believe we have collected information from a minor, contact us at admin@medictests.com and we will delete it promptly.
Data Security
We use industry-standard safeguards including encrypted connections (TLS), hashed passwords, and access controls to protect your personal information. Payment transactions are processed through Stripe (website) or the Apple App Store and Google Play (mobile apps) and are encrypted end-to-end.
Changes to This Policy
We will post any changes to this policy on this page with an updated date. For material changes, we will notify you by email. Your continued use of MedicTests after a change is posted constitutes acceptance of the updated policy.
Contact Us
For privacy questions, requests, or concerns:
- Email: admin@medictests.com
- General support: support@medictests.com
- Mailing address: MedicTests LLC, Chattanooga, TN