MedShelf

Privacy

Effective 25 September 2026

MedShelf is inventory and point-of-sale software for retail pharmacies in Bangladesh, made by Tasin Labs. This page sets out what the app stores, where it is held and who can reach it. It is written in plain language rather than as a contract.

Your account

To open an account we need a name, an email address and a password. A phone number is optional. The password is stored only as a bcrypt hash and cannot be read back, by us or by anybody else. If you sign in with Google we store the email address Google confirms as verified, and no password at all.

Your pharmacy's records

Everything you record in the app belongs to your pharmacy: medicines, stock, deliveries, shelf counts, sales, staff and cash counts. Every row is stored against your pharmacy's own identifier and every request is filtered by it, so one pharmacy cannot read another's records.

If you work at more than one pharmacy, each keeps its own separate records and nothing is combined between them.

Customers you record

You can save a customer's name, and optionally a phone number and an address, so that you can find them again and keep track of what they owe. That record belongs to your pharmacy. We do not sell it, share it with anyone, or use it to contact the person.

What the app keeps on your phone

Four things, all in the device's own encrypted storage: a sign-in token for each pharmacy you belong to, an identifier for the device itself, which pharmacy is currently open, and the language you chose. Your pharmacy's records are not kept on the phone. The device identifier is there so an owner can see which phones are signed in and sign one out.

The app asks for internet access and network status. It does not ask for your location, your contacts, your photos, your files, the camera or the microphone.

Notifications

If you allow notifications, Google's Firebase Cloud Messaging is given a token for your device so we can send alerts about your own shop: stock running low, medicine approaching its expiry, a cash drawer left uncounted. The message passes through Google's servers to reach your phone. Declining leaves everything else working, and the same alerts are still listed inside the app.

Where the data is held

Records are stored in a PostgreSQL database hosted by Neon, and the service itself runs on Cloudflare Workers. Both operate outside Bangladesh, so your pharmacy's records are held on servers abroad. Everything in transit is encrypted.

Services we rely on

Each is given only what it needs to do its job, and none of them is given your records to use for its own purposes.

No advertising and no tracking

The app carries no advertising, no analytics and no third-party trackers. We do not build a profile of you, and there is nothing in it that follows you to other apps or websites.

Who at MedShelf can see it

Our own staff can see accounts and pharmacy records where answering a support request or running the service requires it. Nobody at MedShelf sells your data or passes it anywhere outside the services listed above.

Keeping and deleting

A pharmacy's records are deliberately append-only. A cancelled sale is recorded as a reversal and the original stays readable, because a pharmacy whose sales can be made to disappear cannot be audited. Taking somebody off your staff list removes them from the roster, and the sales they recorded keep their name on them.

Records are kept for as long as the pharmacy uses MedShelf. If you want an account or a pharmacy closed and its records removed, ask us to delete it and we will.

Children

MedShelf is for people running a business. It is not meant for anyone under 18, and we do not knowingly collect anything from children.

Changes to this page

If we change what we store or who we share it with, we will update this page and change the date at the top.

Contact

Write to support@medshelf.app.

← Back to MedShelf