1. Acceptance of Terms
By accessing or using the mePro platform ("Platform"), including any associated mobile applications, web services, or APIs, you ("User") agree to be bound by these Terms of Service ("Terms"). If you are accessing the Platform on behalf of a clinic, healthcare organisation, or employer ("Organisation"), you represent that you have the authority to bind that Organisation to these Terms. If you do not agree, you must not use the Platform.
2. Description of Service
mePro is an AI-powered Electronic Health Record (EHR) and mental health management platform designed for:
- Clients , individuals seeking mental health support, mood tracking, journaling, and progress insights.
- Therapists , licensed mental health professionals managing caseloads, session notes, and client progress.
- Clinics , healthcare organisations administering therapist teams, billing, and clinical operations.
- Employers / Enterprises , organisations providing employee wellness programs and workplace mental health solutions.
mePro provides tools for session scheduling, note-taking, progress analytics, AI-generated insights, and secure communications between care participants. mePro is not an emergency mental health service. In the event of a mental health crisis, users must contact emergency services or a crisis helpline immediately.
3. User Accounts & Eligibility
- You must be at least 18 years of age (or the age of majority in your jurisdiction) to create an account. Minors may only access the Platform under the supervision and consent of a parent, guardian, or authorised clinician.
- Therapists and clinicians must hold valid, current licensure or registration in the jurisdictions where they practise. mePro reserves the right to request proof of credentials at any time.
- You are responsible for maintaining the confidentiality of your account credentials and for all activity that occurs under your account.
- You must provide accurate, complete, and up-to-date registration information and promptly update it if it changes.
- You may not share, sell, or transfer your account to any third party.
4. Protected Health Information (PHI) & Data Privacy
mePro processes Protected Health Information (PHI) as defined under applicable laws including the Health Insurance Portability and Accountability Act (HIPAA) in the United States, and equivalent regulations in other jurisdictions. As such:
- mePro acts as a Business Associate to covered entities (clinics, therapists) and will execute a Business Associate Agreement (BAA) upon request.
- All PHI is encrypted at rest (AES-256) and in transit (TLS 1.2+).
- PHI is only accessed by authorised personnel on a need-to-know basis and is never sold to third parties.
- Session data, clinical notes, mood tracking data, and AI-generated insights are stored securely and may be retained for the period required by applicable healthcare regulations (typically 7-10 years or as mandated by local law).
- Clients may request access to, correction of, or deletion of their personal data in accordance with applicable data protection law (e.g. GDPR, CCPA), subject to lawful retention obligations.
- mePro's full Privacy Policy, available at mepro.ai/privacy, forms part of these Terms by reference.
5. Session Data & Clinical Records
- Session notes, treatment plans, and clinical records created on the Platform remain the property of the treating clinician and/or their employing Organisation, subject to applicable law.
- Clients have the right to access their own records as permitted by law. Clinicians or Organisations may impose clinically justified restrictions in accordance with applicable healthcare regulations.
- Audio or video recordings of sessions (where offered) require explicit, informed consent from all participants prior to recording. Recordings are stored encrypted and may only be accessed by authorised users.
- AI-generated summaries, insights, and recommendations are assistive tools only and do not constitute clinical diagnoses, medical advice, or a substitute for professional clinical judgement.
- Upon termination of an account or subscription, data is retained for the legally required period then securely deleted or anonymised, unless an Organisation requests an earlier deletion subject to legal obligations.
6. Acceptable Use
You agree not to:
- Use the Platform for any unlawful purpose or in violation of any applicable regulation, including healthcare privacy laws.
- Impersonate any person, clinician, or Organisation.
- Attempt to gain unauthorised access to any part of the Platform, other user accounts, or backend infrastructure.
- Introduce malware, viruses, or any harmful code.
- Scrape, harvest, or systematically collect data from the Platform without express written consent.
- Use the Platform to provide unsolicited communications to other users.
- Misuse AI features to generate false clinical records, fabricated diagnoses, or misleading health information.
7. AI Features & Limitations
mePro incorporates artificial intelligence features including but not limited to mood analysis, session summarisation, progress insights, and wellness recommendations. You acknowledge and agree that:
- AI outputs are generated algorithmically and may contain errors, omissions, or inaccuracies.
- AI outputs are not a substitute for professional clinical assessment, diagnosis, or treatment.
- Clinicians bear sole professional and legal responsibility for clinical decisions made using the Platform.
- mePro continuously works to improve AI accuracy but makes no warranty as to the completeness or correctness of AI-generated content.
7b. AI Model Providers & HIPAA Compliance
To power its AI features, mePro uses select third-party AI providers under signed HIPAA Business Associate Agreements (BAAs) and enterprise data-processing terms. By using AI-assisted features, you acknowledge that PHI and session content may be processed by the following subprocessors solely to deliver the requested feature:
- OpenAI , used for AI-generated session summaries, clinical note assistance, insights, and natural-language features. mePro operates under OpenAI's enterprise / API platform terms with a HIPAA BAA in place. Data submitted via the API is not used to train OpenAI's models.
- AssemblyAI , used for secure speech-to-text transcription of session audio (where enabled with consent). mePro operates under AssemblyAI's HIPAA-compliant offering with a signed BAA. Audio and transcripts are processed solely to return transcription results to mePro and are not used to train AssemblyAI's models.
All data transmitted to these providers is encrypted in transit (TLS 1.2+) and handled in accordance with HIPAA, mePro's Privacy Policy, and the respective BAAs. mePro may update its AI subprocessor list from time to time; material changes affecting PHI processing will be communicated in accordance with Section 15.
8. Subscriptions, Billing & Cancellation
- Access to mePro may be subject to a paid subscription plan. Pricing and plan details are published on the Platform and may be updated with reasonable notice.
- Subscription fees are billed in advance on a monthly or annual basis and are non-refundable except where required by law or at mePro's sole discretion.
- Organisations are responsible for all fees incurred under their account, including fees for sub-accounts of their users.
- Failure to pay may result in suspension or termination of access.
- You may cancel your subscription at any time; access continues until the end of the current billing period.
7a. Google Account Integration & Google Calendar Access
mePro offers an optional integration that allows therapists, clinicians, and other authorised users to connect their Google Account in order to manage therapy sessions, appointments, and reminders directly within their personal or work Google Calendar. This integration is provided in addition to, and not as a replacement for, mePro's built-in scheduling tools.
Authentication via Google (OAuth 2.0)
- Sign-in and calendar access are performed using Google OAuth 2.0. mePro never sees, stores, or has access to your Google password.
- When you connect your Google Account, Google will display a consent screen listing the exact permissions (scopes) requested by mePro. You may decline or revoke these at any time.
- mePro stores only the OAuth access and refresh tokens needed to maintain the connection, encrypted at rest. These tokens are used solely to provide the features you have enabled.
- You can disconnect your Google Account at any time from within mePro's settings or from your Google Account permissions page at myaccount.google.com/permissions. Revoking access immediately invalidates the stored tokens.
Google Calendar Scopes & Data Use
When you connect Google Calendar, mePro may request the following Google API scopes:
- https://www.googleapis.com/auth/calendar , to create, read, update, and delete events on the calendars you choose to connect.
- https://www.googleapis.com/auth/calendar.events , to manage individual events (session bookings, reschedules, cancellations).
- https://www.googleapis.com/auth/userinfo.email and .../userinfo.profile and openid , to identify your Google Account and link it to your mePro user.
mePro uses calendar data only to:
- Create, update, move, and cancel therapy session events on your behalf.
- Display availability and prevent double-booking across mePro and your Google Calendar.
- Send and synchronise reminders, video-call links, and session metadata for events you create through mePro.
- Reflect changes made in Google Calendar back into your mePro schedule, and vice versa.
Google API Services User Data Policy , Limited Use
mePro's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. Specifically:
- We use Google user data only to provide and improve the user-facing features described above.
- We do not transfer Google user data to third parties except as necessary to provide the features (e.g. secure cloud infrastructure), to comply with applicable law, or as part of a merger, acquisition, or sale of assets with notice to users.
- We do not use Google user data for serving advertisements, including retargeting, personalised, or interest-based advertising.
- We do not allow humans to read Google user data unless we have your affirmative agreement for specific data, it is necessary for security purposes (such as investigating abuse), to comply with applicable law, or for internal operations where the data has been aggregated and anonymised.
- Google user data is never sold.
- Google user data is never used to train generalised or third-party AI/ML models. AI features in mePro that operate on calendar data run only on the specific user's own data, at that user's request, to deliver the requested feature.
Storage, Retention & Deletion
- OAuth tokens and the minimum calendar metadata required to keep your schedule in sync are stored encrypted at rest (AES-256) and in transit (TLS 1.2+).
- When you disconnect Google Calendar, revoke access via your Google Account, or delete your mePro account, the stored OAuth tokens and any cached Google user data are deleted from our active systems, with residual copies removed from backups in accordance with our standard retention schedule.
- You may request deletion of Google-derived data at any time by emailing info@mepro.ai.
Your Responsibilities
- You are responsible for ensuring you have the right to connect the specific Google Account you use (for example, that your employer's policies permit connecting a work Google Workspace account to mePro).
- You should avoid placing sensitive Protected Health Information (PHI) in Google Calendar event titles or descriptions unless your organisation has an appropriate Business Associate Agreement (BAA) in place with Google. mePro defaults to using non-identifying event titles where possible.
- You may revoke mePro's access to your Google Account at any time. Doing so will disable calendar sync but will not delete sessions already stored within mePro.
8a. Payment Processing
mePro uses third-party payment processors to securely handle all subscription and transactional payments. By making a payment through the Platform, you agree to the terms of the applicable payment processor:
- Web payments , All payments made via the mePro web application (including subscriptions, one-time charges, and other transactions) are processed through Stripe. Your use of Stripe is subject to the Stripe Services Agreement.
- iOS payments , In-app purchases and subscriptions made through the mePro iOS application are processed via Apple Pay and the Apple App Store, subject to Apple's terms and conditions.
- Android payments , In-app purchases and subscriptions made through the mePro Android application are processed via Google Pay and the Google Play Store, subject to Google's terms and conditions.
- mePro does not store full payment card details on its own servers; all sensitive payment information is handled directly by the applicable payment processor in compliance with PCI-DSS standards.
- Refunds, chargebacks, and billing disputes for mobile in-app purchases are governed by the policies of Apple or Google, respectively. Refunds for web-based payments are handled by mePro in accordance with Section 8.
- Subscription pricing may vary across platforms due to processor fees and platform commissions.
9. Intellectual Property
All software, design, text, graphics, logos, and other content comprising the mePro Platform are the intellectual property of mePro or its licensors, protected by applicable copyright, trademark, and intellectual property laws. You are granted a limited, non-exclusive, non-transferable licence to use the Platform solely for its intended purpose. You may not copy, modify, distribute, sell, or reverse-engineer any part of the Platform.
Content created by users (clinical notes, journals, session recordings) remains owned by the respective user or Organisation. You grant mePro a limited licence to store, process, and display such content solely to provide the service.
10. Security & Breach Notification
- mePro implements industry-standard security measures including role-based access controls, audit logging, and regular penetration testing.
- In the event of a data breach affecting PHI, mePro will notify affected Organisations and, where required by law, regulatory authorities and individuals, within the timeframes mandated by applicable law (e.g. 72 hours under GDPR, 60 days under HIPAA).
- Users must promptly report any suspected security vulnerabilities or unauthorised access to info@mepro.ai.
11. Disclaimers & Limitation of Liability
The Platform is provided on an "as is" and "as available" basis without warranties of any kind, express or implied, including fitness for a particular purpose or uninterrupted availability. To the fullest extent permitted by law, mePro shall not be liable for any indirect, incidental, special, consequential, or punitive damages arising from your use of the Platform, including loss of data, loss of revenue, or personal injury.
mePro's total aggregate liability to you for any claims arising under these Terms shall not exceed the greater of (a) the total fees paid by you to mePro in the three (3) months preceding the claim or (b) USD $100.
12. Indemnification
You agree to indemnify, defend, and hold harmless mePro and its officers, directors, employees, and agents from and against any claims, liabilities, damages, losses, and expenses (including legal fees) arising out of or in any way connected with your use of the Platform, your violation of these Terms, your violation of any applicable law, or your infringement of any third-party rights.
13. Termination
mePro reserves the right to suspend or terminate your account and access to the Platform at any time, with or without notice, for conduct that mePro determines in its sole discretion violates these Terms, poses a risk to other users, or is otherwise inappropriate. Upon termination, your right to use the Platform immediately ceases. Provisions that by their nature should survive termination (including data retention obligations, intellectual property, disclaimers, and limitation of liability) shall survive.
14. Governing Law & Dispute Resolution
These Terms shall be governed by and construed in accordance with the laws of the jurisdiction in which mePro is incorporated, without regard to conflict of law principles. Any disputes arising under these Terms shall be submitted to binding arbitration in accordance with the applicable arbitration rules, except that either party may seek injunctive or other equitable relief in a court of competent jurisdiction to prevent irreparable harm. Notwithstanding the foregoing, users in the European Union retain the right to bring claims before the courts of their member state.
15. Changes to These Terms
mePro may update these Terms from time to time. Material changes will be notified to registered users via email or an in-app notice at least 30 days prior to taking effect. Continued use of the Platform after the effective date of any revised Terms constitutes acceptance of the new Terms.
16. Contact
If you have any questions about these Terms, please contact us at:
mePro Technologies INC
Founded in Toronto, Canada
Email: info@mepro.ai
Support: info@mepro.ai