Privacy Policy
This privacy policy ("Policy") applies to the Mobile Vision Care (MVC) app ("Application"), a React Native application built using Expo, which functions as a wrapper around the web portal at https://portal.mobilevisioncare.com. The Application is operated by Eye Care and Vision Associates LLC ("Service Provider," "we," "us," or "our"). This Policy describes how we handle information collected through the Application and the embedded web portal.
Information Collection and Use
The Application itself does not directly collect, store, or process user data beyond what is handled by the embedded web portal. However, the following may occur through your use of the Application:
- Web Portal Data: All user interactions, submissions, and data (e.g., cookies, localStorage, sessionStorage, form inputs) are managed by the web portal at https://portal.mobilevisioncare.com. The privacy practices of the web portal are governed by its own privacy policy, which you should review.
- Device Information: The Application may collect non-personal information such as:
- Your device's Internet Protocol (IP) address;
- The pages of the Application you visit, the time and date of your visit, and the time spent on those pages;
- Your mobile operating system;
- Device type and unique device identifiers (e.g., Expo's anonymous device ID).
- Local Storage: The Application uses DOM storage (localStorage, sessionStorage) and may use AsyncStorage (a React Native API for local data persistence) to store non-sensitive data locally on your device. This data is used solely to improve your experience within the Application and is not transmitted to our servers unless explicitly submitted via the web portal.
Device Permissions
The Application may request the following device permissions to support functionality within the embedded web portal:
- Camera Access: The Application may request access to your device's camera to allow you to take photos or videos for upload through the web portal. Camera access is only used when you explicitly initiate a photo/video capture action and is not accessed without your consent.
- Microphone Access: The Application may request access to your device's microphone to allow you to record audio or videos for upload through the web portal. Microphone access is only used when you explicitly initiate a recording action and is not accessed without your consent.
- Photo Library Access: The Application may request access to your device's photo library to allow you to select existing images or videos for upload through the web portal. Photo library access is only used when you explicitly initiate an image selection action.
You can manage these permissions through your device's settings at any time. Denying these permissions may limit certain functionality within the web portal but will not affect the core functionality of the Application.
WebView Configuration and Privacy Implications
The Application uses react-native-webview to embed the web portal. The WebView is configured with the following settings, which may impact your privacy and security:
- JavaScript Enabled: JavaScript is enabled to support the functionality of the web portal.
- DOM Storage Enabled: The web portal may use localStorage and sessionStorage to store data on your device.
- Mixed Content Mode: The WebView allows loading of mixed content (HTTP and HTTPS). This could expose you to security risks, such as man-in-the-middle attacks. We recommend ensuring the web portal uses HTTPS for all content.
- Origin Whitelist: The WebView is configured with an origin whitelist of `['*']`, meaning it can navigate to any origin. This may expose you to potential security vulnerabilities. Exercise caution when interacting with external links.
- File Access: The WebView allows access to local files and file URLs from any origin, which could pose security risks if malicious content is loaded.
By using the Application, you acknowledge and accept the privacy and security implications of these WebView settings. We are not responsible for the content or privacy practices of any third-party websites or services accessed through the WebView.
Third-Party Dependencies
The Application relies on third-party libraries and services, which may have their own privacy policies and data collection practices. These include:
These third-party services may collect and process data in accordance with their own privacy policies. We encourage you to review the privacy policies of these providers.
Cookies and Tracking Technologies
The Application or the embedded web portal may use cookies, localStorage, sessionStorage, and similar technologies to support functionality, analytics, or service delivery. Where required by applicable law (e.g., GDPR, CCPA), we will obtain your consent before using non-essential tracking technologies.
You may be able to control or clear cookies and local storage through your device settings or the web portal's interface. However, disabling these technologies may affect the functionality of the Application.
Your Rights
Depending on your jurisdiction, you may have the following rights regarding your personal data:
- Access: Request a copy of the personal data we hold about you;
- Correction: Request corrections to inaccurate or incomplete data;
- Deletion: Request deletion of your personal data, subject to legal obligations;
- Opt-Out: Opt out of the sale or sharing of your personal information (e.g., under CCPA/CPRA);
- Portability: Request the transfer of your data to another service provider;
- Withdraw Consent: Withdraw consent for data processing where applicable.
To exercise these rights, contact us at admin@mobilevisioncare.com.
Your California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have the right to:
- Know what personal information is collected, used, shared, or sold;
- Request deletion of your personal information;
- Opt out of the sale or sharing of your personal information;
- Non-discrimination for exercising your rights.
To exercise your CCPA/CPRA rights, contact us at admin@mobilevisioncare.com.
Third-Party Access
We may share your information with third parties in the following circumstances:
- With trusted service providers who assist us in operating the Application and have agreed to adhere to this Policy;
- As required by law, such as to comply with a subpoena, court order, or other legal process;
- To protect our rights or the rights, safety, or property of others;
- In connection with a merger, acquisition, or sale of assets;
- With your explicit consent.
Only aggregated, anonymized data may be shared for analytics or improvement purposes.
International Data Transfers
Your personal data may be transferred to and processed in countries outside your country of residence, including the United States. We will ensure that such transfers comply with applicable laws, including:
- Standard Contractual Clauses (SCCs) approved by the European Commission;
- Adequacy decisions or other legally recognized mechanisms;
- Your explicit consent, where required.
Data protection laws in other countries may differ from those in your jurisdiction. We will apply appropriate safeguards to protect your data.
Data Retention Policy
We retain personal data for as long as necessary to fulfill the purposes for which it was collected, or as required by law:
- User-Provided Data: Retained for the duration of your use of the Application plus 12 months, unless a longer period is required by law;
- Automatically Collected Data: Retained for up to 24 months from collection;
- Aggregated/Anonymized Data: Retained indefinitely;
- Legal Compliance: Retained as long as required by applicable law.
You may request deletion of your personal data by contacting us at admin@mobilevisioncare.com.
Security
We implement physical, electronic, and procedural safeguards to protect your information. However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
Given the WebView configuration (e.g., mixed content mode, broad origin whitelist), we recommend:
- Avoiding interactions with untrusted links or content;
- Ensuring your device's operating system and the Application are up to date;
- Reviewing the web portal's security practices at https://portal.mobilevisioncare.com.
Data Breach Notification
In the event of a data breach affecting your personal data, we will notify you in accordance with applicable legal requirements, including details of the breach and steps taken to address it.
Children
The Application is not intended for children under 13 years of age (or such higher age as required by applicable law). We do not knowingly collect or solicit personal information from children. If we discover that a child has provided personal information, we will promptly delete it. If you are a parent or guardian and believe your child has provided us with personal information, please contact us at admin@mobilevisioncare.com.
Opt-Out Rights
You can stop further collection of information by:
- Uninstalling the Application (this will not delete data already transmitted to us or third parties);
- Clearing cookies/local storage through your device settings or the web portal's interface;
- Contacting us to request deletion of your data.
Changes to This Policy
We may update this Policy from time to time. We will notify you of material changes by posting the updated Policy with an effective date. Where required by law, we will seek your consent before changes take effect.
Previous versions of this Policy will be available upon request.
Your Consent
By using the Application, you consent to the collection, use, and sharing of your information as described in this Policy. Where processing is based on consent, you may withdraw it at any time without affecting the lawfulness of processing based on consent before its withdrawal.
Contact Us
If you have any questions about this Policy or our privacy practices, please contact us at:
admin@mobilevisioncare.com
Effective Date: July 27, 2026