medlistIQ

Terms of Service

Effective April 18, 2026

1. Agreement

These Terms of Service (“Terms”) govern your access to and use of MedListIQ (“Service”, “we”, “our”). By creating an account, generating an API key, or otherwise using the Service, you agree to these Terms. If you do not agree, do not use the Service.

2. What the Service does

MedListIQ is a stateless API that ingests FHIR medication resources and returns a deduplicated, classified medication list with inferred status and confidence scores. Responses are deterministic and based on documented rule sets.

3. Not medical advice

MedListIQ output is informational and does not constitute medical advice, diagnosis, or treatment.

The Service is a data-processing tool for software engineers and healthcare technology teams. Any decisions about patient care must be made by a qualified clinician exercising independent judgment. You are solely responsible for how the output is used in your own systems or clinical workflows.

4. Protected Health Information (PHI) and HIPAA

MedListIQ does not persist the medication data you send to the inference endpoint — inputs are processed in memory and discarded when the response returns. We retain only request metadata (timestamp, status code, resource counts) for billing and observability.

That said, the Service has not yet executed a Business Associate Agreement (“BAA”). Do not send PHI, identifiable patient data, or data subject to HIPAA through the Service unless we have entered into a signed BAA with you. Send de-identified data or test data only, until a BAA is in place.

Contact us at brian@briankfung.com to discuss BAA arrangements.

5. Your account and API keys

You are responsible for keeping your account credentials and API keys secret. Any activity authenticated by your key is your responsibility. If a key is compromised, revoke it from the dashboard immediately and rotate it.

You agree not to share keys outside your organization, commit them to public repositories, or use them to abuse the Service (rate-limit evasion, scraping, reverse engineering, competitive benchmarking without consent).

6. Acceptable use

You agree not to:

  • Use the Service for unlawful purposes or to process unlawful data
  • Attempt to disrupt the Service, reverse engineer, or probe for vulnerabilities without written permission
  • Misrepresent the Service’s output as clinically validated advice
  • Resell the Service or re-expose the API to third parties without our written permission

7. Billing

Free-tier accounts have a fixed monthly request cap. Paid tiers are billed monthly in advance through our payment processor (Clerk Billing, which processes payments via Stripe). You authorize recurring charges to your payment method on file.

Overage beyond your plan’s monthly cap is blocked with a 429 response — upgrade your plan from the dashboard to continue. Cancellations take effect at the end of the current billing period; no partial-month refunds.

8. No warranty

The Service is provided “as is” without warranties of any kind, express or implied, including merchantability, fitness for a particular purpose, and non-infringement. We do not warrant that the output is error-free, clinically correct, or suitable for any specific patient or clinical decision.

9. Limitation of liability

To the maximum extent permitted by law, our total liability arising out of or related to these Terms or the Service shall not exceed the greater of (a) the fees you paid to us in the 12 months preceding the claim, or (b) USD $100. We are not liable for indirect, incidental, consequential, or punitive damages, including lost profits or clinical outcomes.

10. Termination

You may stop using the Service and close your account at any time. We may suspend or terminate access if you breach these Terms or if we are required to do so by law. Sections 3, 4, 8, 9, and 11 survive termination.

11. Changes

We may update these Terms. Material changes will be announced via email or an in-product notice. Continued use after the effective date of an update constitutes acceptance.

12. Contact

These Terms are provided as a starting point and have not been reviewed by an attorney. They will be updated before we take on enterprise customers or handle PHI under a BAA.