Information we collect
ANDY may collect account details such as name, email address, password hash, MFA status, role and workspace membership; organisation details such as workspace name, billing contact and plan; payment and subscription references from Stripe; support messages; contact-form submissions; security logs such as IP address, device details and sign-in events; product analytics events; and content users choose to upload or create in the workspace.
The mobile app also processes mobile-session identifiers, device platform and app-version metadata, encrypted push-notification tokens and notification preferences. Push messages contain only generic status information and route identifiers, never prompts, answers, tenant names, file names or SOP titles.
ANDY is not designed for identifiable patient data. Users are warned not to upload identifiable patient data unless a separate written arrangement expressly covers that use.