Effective date: 1 October 2026 · Applies to the CASYN app for Android · Provided by Ashorin Technologies (sole proprietorship), India
CASYN is built so that your clinical records stay with you. Patient photos, videos, notes and details live on your phone, and in backups that you choose to make to your own Google Drive or your own phone storage. We, the makers of CASYN, do not have servers that store your cases, and we cannot see them.
This policy explains what CASYN keeps on your phone, the limited information that does leave it, why, and the choices you have.
CASYN is developed and published by Ashorin Technologies, a sole proprietorship based in India (“we”, “us”). You can reach us at info.casyn@gmail.com. Email is the fastest way to reach us about anything in this policy.
Everything you put into a case: patient name, age, sex, ID, phone numbers, diagnosis, specialty, tags, notes, photos, videos, PDFs, reminders and appointments. You are the one responsible for this information (see section 10). We never receive it.
Your Google sign-in details, anonymous usage statistics and crash reports. This helps the app work, lets us fix bugs and shows us which features are used. It does not contain your clinical records.
Your cases and workspaces — stored in CASYN's own private storage on your phone, which other apps cannot open. The case database is additionally encrypted by CASYN, and on most modern phones Android also encrypts the whole phone storage.
Your profile — the name, specialty and hospital/clinic you enter, and your profile photo.
Your settings — watermark, reminders, app lock and backup preferences.
Reading details from photos — when CASYN fills in a patient's details from a photo, the reading happens on your phone. The photo is not sent anywhere for this.
Fingerprint and face unlock — handled by Android. CASYN never sees or stores your fingerprint or face data; it only gets a yes/no answer.
Reminders — scheduled on your phone and shown as notifications by your phone.
Only the following, and only for the reason given.
Google sign-in (goes to: Google; when: when you sign in). To sign you in. CASYN receives your name, email address and profile photo from your Google account.
Backups (goes to: Your own Google Drive; when: when you back up, or on the schedule you set). So you can restore your cases on a new phone. Backups are encrypted before they leave your phone and go into a hidden app folder in your Drive. CASYN can only see its own folder, not your other Drive files. We cannot open your Drive.
Calendar (read-only) (goes to: Google Calendar; when: when Appointments loads them). To show public holidays and your calendar events on the Appointments screen. CASYN only reads; it never changes or deletes calendar entries.
Usage statistics (goes to: Google (Firebase Analytics); when: automatically while you use the app). To understand which features are used and improve the app. Includes: screens opened, app sessions, app version, phone model, Android version, language, approximate country (worked out from your internet connection), a random ID for this installation, and the number of workspaces. No patient information, case content, photos or your email.
Crash reports (goes to: Google (Firebase Crashlytics); when: when the app crashes or hits a serious error). To find and fix crashes. Includes: technical details of the error, phone model, Android version, app version, free memory and storage, and a random installation ID. Not intended to include case content.
Voice dictation (goes to: Your phone's speech service (usually Google); when: only while the microphone is on). When you tap the microphone in a note, your speech is turned into text by your phone's built-in speech service. Depending on your phone, this may happen on the phone or on the provider's servers, under that provider's own privacy policy.
Update checks (goes to: Google Play; when: when the app opens). To tell you when a new version is available.
Things you share (goes to: Where you choose; when: only when you share). When you export or share photos, videos or cases, they go to the app you pick (WhatsApp, email, etc.). What happens to them there is governed by that app.
Google handles the data in the rows marked Google under Google's Privacy Policy. Firebase's own terms are described at firebase.google.com/support/privacy.
We do not store your clinical records on our servers. We do not have such servers.
We do not sell, rent or trade any information.
We do not show ads, and the app does not use your advertising ID.
We do not use your clinical records to train AI or for any purpose of our own.
We do not read your Google Drive outside CASYN's own backup folder, and we never write to your calendar.
Camera — Taking clinical photos and videos inside the app.
Microphone — Recording video sound, and voice dictation of notes.
Photos and videos — Adding existing pictures and videos from your gallery to a case.
All files access — Keeping your backups in a folder on your phone that survives if the app is uninstalled, and restoring from it.
Notifications — Appointment reminders and backup progress.
Alarms and reminders — Making reminders fire at the exact time you set.
Run at start-up — Putting your reminders and scheduled backups back after the phone restarts.
Foreground service, battery optimisation — Letting a backup finish while the screen is off.
Fingerprint / face — App lock.
Internet, network state — Sign-in, Drive backup, calendar, updates, and backing up on Wi-Fi only if you choose.
You can refuse or later withdraw any of these in Android settings. The feature that needs it will stop working; the rest of the app will not.
The case database on your phone is encrypted.
Backups are encrypted on your phone (AES-256) before they are written to Drive or to your phone storage. You can add your own backup password for extra protection; if you forget it, we cannot recover it for you.
App lock (fingerprint, face or phone PIN) can be turned on so that no one else can open CASYN on your phone.
You can block screenshots of CASYN.
All connections to Google use encrypted (HTTPS) connections.
No method of storage or transfer is perfectly secure. Keeping your phone locked, and your Google account secure, is an important part of protecting your records.
On your phone: until you delete it. Deleted cases go to Trash and are removed permanently after 30 days, or earlier if you empty Trash.
Backups in your Drive or phone folder: until you delete them. CASYN keeps a few recent backup versions so you can go back to an earlier one, and clears out older files on its own.
Usage statistics: deleted automatically by Google after 2 months.
Crash reports: kept by Google for up to 90 days.
CASYN does not create an account with us, and we hold nothing that identifies you. Your records are on your phone and in your own Drive, so you are always in control of deleting them:
A case: delete it, then empty Trash.
Everything on the phone: uninstall CASYN, or clear its storage in Android settings. The backup folder on your phone is kept on purpose so you do not lose data by accident; delete it from your file manager if you want it gone.
Backups in Drive: open drive.google.com → Settings → Manage apps → CASYN → Delete hidden app data.
Google access: remove CASYN at myaccount.google.com → Security → Third-party apps.
Usage statistics and crash reports: these are linked only to a random installation ID, never to your name or email, so we cannot pick out yours — and Google deletes them automatically within 90 days (section 8).
If you have a question about deleting your information, write to info.casyn@gmail.com.
CASYN is a tool for registered healthcare practitioners. For the patient information you record in CASYN, you decide what is collected and why, so you are responsible for it under the law that applies to you — in India, the Digital Personal Data Protection Act, 2023 and your professional council's rules; elsewhere, your local health-privacy law (for example GDPR in Europe or HIPAA in the United States). In particular:
get your patient's consent before photographing or recording them, and before sharing any record;
keep your phone and Google account secure;
take care when sharing or exporting records, including watermarked ones.
We only provide the software. Our Terms of Use explain this in more detail.
For information we receive about you (sign-in details, usage statistics and crash reports), you can ask us to tell you what we have, correct it, delete it, or stop using it. Under India's Digital Personal Data Protection Act you may also nominate someone to exercise these rights for you, and complain to the Data Protection Board of India. If you live in the European Union or United Kingdom you also have the rights set out in the GDPR, including complaining to your local data protection authority. Write to info.casyn@gmail.com; we will reply within 30 days.
For patient information, the patient's request should go to you as their practitioner, because only you hold that information.
CASYN is meant for healthcare professionals aged 18 or over. It is not directed at children, and we do not knowingly collect information from anyone under 18. Records of child patients that you keep in CASYN are your clinical records (section 10).
If you have a concern about how your information is handled, write to Ashorin Technologies at info.casyn@gmail.com with “Grievance” in the subject. We will resolve it within 30 days.
CASYN can be used worldwide. Information handled by Google (sign-in, Drive, analytics, crash reports) may be processed in countries other than yours, under Google's safeguards. Your clinical records are only stored where you keep them: your phone and your own Drive.
If we change this policy, we will update the date at the top and show you the change in the app before it applies. If a change affects what leaves your phone, we will tell you clearly first. Paid plans are planned; if they need any new information (such as payment through Google Play), this policy will be updated before they launch.