MediLine MCPMediLine MCPMEDICAL AI HARNESS
コンセプト接続構造デモ機能
始めましょう
← トップページに戻る ← Back to Top

プライバシーポリシー / Privacy Policy

制定日:2026年5月21日 最終更新:2026年5月21日
Effective Date: May 21, 2026 / Last Updated: May 21, 2026

株式会社シェアメディカル(以下「当社」)は、当社が提供する医療AIインフラサービス「MediLine MCP」(以下「本サービス」)において、個人情報および医療情報の保護を最重要課題と認識し、以下のとおりプライバシーポリシー(以下「本ポリシー」)を定めます。本サービスへの登録またはアクセスを行った時点で、ユーザーは本ポリシーに同意したものとみなします。

ShareMedical, Inc. ("ShareMedical", "we", "our", or "us") operates MediLine MCP (the "Service"), a medical AI infrastructure platform implementing the Model Context Protocol (MCP). We are committed to protecting the privacy and security of personal and medical information. By registering for or accessing the Service, you agree to this Privacy Policy ("Policy").

第1条(適用範囲)Article 1: Scope

  1. 本ポリシーは、当社が本サービスを通じて処理するすべての個人情報・医療情報に適用されます。
  2. 本サービスを利用する医療機関・医療従事者・研究者(以下「ご利用者」)および第三者の患者情報の取り扱いに関して適用されます。
  3. 本サービスはAPIおよびMCPサーバーとして提供されるため、LLMクライアント(Claude、ChatGPT等)経由の利用も本ポリシーの対象となります。
  1. This Policy applies to all personal and medical information processed by ShareMedical through the Service.
  2. It governs information related to healthcare institutions, medical professionals, and researchers ("Users"), as well as any patient data processed on their behalf.
  3. Because the Service operates as an API and MCP server, use via LLM clients (Anthropic Claude, OpenAI ChatGPT, etc.) is also subject to this Policy.

第2条(取得・処理する情報の範囲)Article 2: Information Collected and Processed

2-1. アカウント・認証情報Account and Authentication Information

  • 氏名・所属医療機関名・メールアドレス・電話番号(アカウント登録時)
  • 認証トークン(暗号化保管)
  • APIリクエスト内容(クエリ文字列・検索条件等)
  • アップロードファイル(PDF・Word・テキスト等)
  • サーバーアクセスログ・タイムスタンプ・エラーログ
  • Name, affiliated institution, email address, and phone number (at registration)
  • Authentication tokens (stored encrypted)
  • API request content (query strings, search parameters, etc.)
  • Uploaded files (PDF, Word, text, etc.)
  • Server access logs, timestamps, and error logs

2-2. 患者識別情報(PHI)の取り扱いProtected Health Information (PHI)

患者氏名・患者ID等の患者識別情報(PHI)は、MedicalGuardrailパイプラインにより自動仮名化処理を施したうえで外部サービスに送信されます。オリジナルのPHIは暗号化されたマッピングテーブルのみに保持され、外部クラウドや外部AIには送信されません。マイナンバーは、いかなる場合もシステムを通過しないよう恒久的にブロックされます。

Patient identifiers such as patient names and IDs ("PHI") are automatically pseudonymized by the MedicalGuardrail pipeline before transmission to any external service. Original PHI is retained exclusively in an encrypted mapping table and is never transmitted to external cloud services or AI models. Japan's My Number is permanently blocked from passing through the system under any circumstances.

第3条(利用目的)Article 3: Purposes of Use

当社は、取得した情報を以下の目的の範囲内でのみ利用します。

We use collected information solely for the following purposes:

  1. 本サービスの提供・運営・技術サポート
  2. 医薬品情報・診療報酬・ガイドライン等の医療DBへの照会処理
  3. PHI仮名化・復元によるセキュアな医療AIワークフローの実現
  4. サービス品質の向上・バグ修正・機能開発のための利用状況分析
  5. 法令または行政機関の要請に基づく対応
  6. ご利用者への重要なシステム通知・セキュリティアラートの送信
  1. Providing, operating, and supporting the Service
  2. Querying medical databases (drug information, medical fees, clinical guidelines, etc.)
  3. Enabling secure medical AI workflows via PHI pseudonymization and de-pseudonymization
  4. Analyzing usage patterns to improve quality, fix bugs, and develop new features
  5. Complying with applicable laws and governmental requests
  6. Sending Users critical system notifications and security alerts

第4条(第三者提供)Article 4: Disclosure to Third Parties

当社は、以下の場合を除き、ご利用者の同意なく個人情報を第三者に提供しません。

We do not share personal information with third parties without User consent, except as follows:

4-1. 業務委託先(サブプロセッサー)Sub-processors

以下の機能カテゴリについて、当社が選定した第三者クラウドサービス事業者に処理を委託します。PHIは仮名化後のデータのみ送信されます。具体的な委託先の情報は、お問い合わせいただいた法人ご利用者に対して開示します。

We engage third-party cloud service providers for the functional categories below. PHI is transmitted only in pseudonymized form. Specific sub-processor details are disclosed to institutional Users upon written request.

機能カテゴリネットワーク保護・CDN — 通信の保護・DDoS対策・エッジキャッシュ/PHI送信:なし
Network protection / CDN — Traffic protection, DDoS mitigation, edge caching / PHI: None
オブジェクトストレージ仮名化済みドキュメントの保管/PHI送信:仮名化後のみ
Object storage — Storage of pseudonymized documents / PHI: Pseudonymized only
暗号化キャッシュストアPHIマッピングテーブルの暗号化保管(セッション限定)/PHI送信:暗号化済みのみ・平文なし
Encrypted cache store — Encrypted PHI mapping table (session-scoped) / PHI: Encrypted only; no plaintext
ベクトルデータベース仮名化済み埋め込みベクトルの保管・検索/PHI送信:仮名化後のみ
Vector database — Storage and retrieval of pseudonymized embeddings / PHI: Pseudonymized only
大規模言語モデル(LLM)AIモデルの呼び出し/PHI送信:仮名化後のみ
Large language models (LLMs) — AI model inference / PHI: Pseudonymized only
決済処理クレジットカード決済(カード情報は当社サーバーに保存されない)/PHI送信:なし
Payment processing — Credit card payments (card data not stored on our servers) / PHI: None

4-2. 法令上の開示Legal Disclosure

裁判所・行政機関等からの適法な命令に基づく場合に限り、必要最小限の情報を開示します。

We may disclose the minimum necessary information in response to lawful orders from courts or government authorities.

4-3. 統計データAggregated Statistical Data

個人または組織を識別できない統計的処理を施したデータは、サービス改善・学術研究目的で利用する場合があります(詳細は第7条参照)。

Statistically processed data that cannot identify individuals or organizations may be used for service improvement and research (see Article 7).

第5条(安全管理措置)Article 5: Security Measures

  1. すべての通信は業界標準の暗号化プロトコルで保護されます。
  2. PHIはMedicalGuardrailにより自動仮名化されます。オリジナルのPHIは強固な暗号化を施したキャッシュストアに保管され、外部AIや外部クラウドには送信されません。
  3. アクセス制御はOAuth 2.1に準拠した認証基盤で実施し、テナントIDによるデータ分離を行います。
  4. 外部通信はアウトバウンドHTTPSのみに限定し、インバウンドポートの開放はありません。
  5. PHI処理の監査ログを保持し、不正アクセス検知・アラートの仕組みを設けます。
  6. 本サービスのセキュリティ設計は、経済産業省「AI利活用における民事責任の解釈適用に関する手引き」(令和8年4月・第1.0版)の補助・支援型AI分類に準拠します。
  1. All communications are protected using industry-standard encryption protocols.
  2. PHI is automatically pseudonymized by MedicalGuardrail. Original PHI is stored in a strongly encrypted cache store and is never transmitted to external AI services or cloud storage.
  3. Access control is enforced via an OAuth 2.1-compliant authentication layer with tenant-level data isolation.
  4. External communications are restricted to outbound HTTPS; no inbound ports are exposed.
  5. PHI processing audit logs are maintained with anomaly detection and alerting.
  6. The security design complies with METI's April 2026 AI civil liability guidance (v1.0) and is classified as supplementary/support-type AI.

第6条(データ保持期間)Article 6: Data Retention

アカウント情報 Account information削除リクエスト受領後30日以内に削除
Deleted within 30 days of account deletion request
APIアクセスログ API access logs最大24ヶ月、期間経過後は自動削除
Up to 24 months; auto-deleted upon expiry
PHIマッピングテーブル PHI mapping tableセッション終了後24時間で自動削除
Auto-deleted within 24 hours of session end
アップロードドキュメント Uploaded documents削除リクエストにより即時削除
Deleted immediately upon user request
統計イベントログ(匿名化済み) Statistical event logs最大60ヶ月(学術研究目的の場合、通知の上で延長あり)
Up to 60 months (may be extended for research with notice)
匿名加工情報 Anonymized data無期限(個人・組織の識別性なし)
Indefinite (no identification possible)

第7条(利用状況データの学術研究・広報活用)Article 7: Use of Usage Data for Research and Marketing

7-1. 収集するデータと目的Data Collected and Purposes

当社は、本サービスの品質向上・セキュリティ管理・学術研究・広報活動を目的として、以下の2種類のデータを収集します。

We collect the following two categories of data for service improvement, security management, academic research, and marketing purposes.

  1. ルーティングログ:接続LLMプロバイダーの種別・呼び出しMCPツール名・呼び出し日時・応答時間・PHIガードレール作動カテゴリ(患者情報の内容は含まない)・組織ID。主としてシステム運用・セキュリティ管理・濫用監視に使用します。
  2. 統計イベントログ:施設種別・診療科区分・地域区分(都道府県より粗い単位)・ツールカテゴリ・応答時間・デバイス種別・LLMプロバイダー区分・PHI検知カテゴリ・ハッシュ化組織ID・時刻(分以下切り捨て)。患者情報・診療情報・プロンプト内容・AI回答内容・ユーザーを直接識別する情報は一切含まれません。
  1. Routing logs: LLM provider type, MCP tool name, call timestamp, response time, PHI guardrail trigger category (no patient content), and organization ID. Used primarily for system operations, security management, and abuse monitoring.
  2. Statistical event logs: Institution type, clinical department category, regional category (coarser than prefecture level), tool category, response time, device type, LLM provider category, PHI detection category, hashed organization ID, and timestamp (truncated to the minute). No patient information, clinical content, prompt content, AI responses, or directly identifying user information is included.

当社は本サービスに接続されたLLMのAPI通信内容を保有・閲覧しません。LLMとの契約および費用負担はご利用者と各LLMプロバイダーの間に帰属します。

ShareMedical does not access or store the content of API communications between Users and connected LLMs. Contractual and billing relationships with LLM providers remain between Users and those providers.

7-2. 学術研究・後ろ向き研究への活用Academic and Retrospective Research

  1. 統計イベントログを仮名加工または匿名加工した上で、医療AIガバナンス・医療情報学に関する後ろ向き観察研究に活用することがあります。必要に応じて倫理審査(IRB審査相当)を経た上で実施します。
  2. 大学・研究機関・医療機関・学会との共同研究に際し、匿名加工した集計データを提供することがあります。個別の組織・ユーザーが識別可能な情報は提供しません。
  3. LLMプロバイダーとの共同研究の目的で、医療用途における利用傾向に関する匿名化データを共有することがあります。
  1. Pseudonymized or anonymized statistical event logs may be used for retrospective observational research on medical AI governance and medical informatics. Where required, research will proceed following ethics review (IRB-equivalent).
  2. Anonymized aggregated data may be shared with universities, research institutions, and academic societies for joint research. No data identifying individual organizations or users will be provided.
  3. Anonymized usage-trend data for medical applications may be shared with LLM providers for joint research purposes.

7-3. 広報・マーケティングへの活用Marketing and Communications

統計イベントログを組織・個人が識別できない形に集計・匿名化した上で、医療AI利用動向レポートの作成・公開および当社の広報・営業活動に利用することがあります。公開・提供するデータの最小集計単位はn=5以上とします。

Aggregated and anonymized statistical event logs may be used to publish medical AI usage trend reports and for our marketing and sales activities. The minimum aggregation unit for any published or shared data is n=5 or more.

7-4. オプトアウトOpt-Out

以下の2つのオプトアウトを独立して選択できます。ダッシュボードの設定画面またはカスタマーサポートへの申請により行うことができます。

The following two opt-outs may be exercised independently via dashboard settings or by contacting customer support.

  1. 広報・マーケティング活用からのオプトアウト:当該組織の統計イベントログを広報・マーケティング目的の集計対象から除外します。
  2. 学術研究活用からのオプトアウト:当該組織の統計イベントログを学術研究・後ろ向き研究への提供対象から除外します。なお、既に匿名加工が完了し識別性が失われたデータについては継続利用される場合があります。
  1. Marketing opt-out: Exclude your organization's statistical event logs from marketing and communications aggregation.
  2. Research opt-out: Exclude your organization's statistical event logs from academic and retrospective research. Data that has already been fully anonymized and lost its identifiability may continue to be used.

いずれのオプトアウトも、サービス品質向上・セキュリティ管理・濫用監視を目的としたルーティングログの収集には影響しません。

Neither opt-out affects routing log collection used for service quality improvement, security management, or abuse monitoring.

第8条(ご利用者の権利)Article 8: User Rights

ご利用者は、当社が保有する自己の個人情報について以下の権利を有します。権利の行使を希望される場合は、第11条記載の窓口までご連絡ください。なお、患者の医療情報に関しては、原則として利用医療機関を通じての対応となります。

Users have the following rights regarding their personal information held by us. To exercise these rights, please contact us using the information in Article 11. Patient medical information is generally handled through the relevant healthcare institution.

  1. 保有する個人情報の開示請求
  2. 不正確な情報の訂正
  3. 利用停止・削除請求
  4. 第三者提供の停止請求
  1. Access the personal information we hold about you
  2. Correct inaccurate information
  3. Request suspension of use or deletion
  4. Request cessation of third-party disclosure

第9条(Cookieおよびトラッキング)Article 9: Cookies and Tracking

本サービスはAPIおよびMCPサーバーとして動作するため、エンドユーザー向けのCookieは使用しません。管理コンソールのログイン維持にセッションCookieを利用する場合があります。ブラウザ設定によりCookieの使用を制限することも可能ですが、管理コンソールの一部機能が正しく動作しない可能性があります。

Because the Service operates as an API and MCP server, it does not use end-user cookies. Session cookies may be used for authentication in the administrative console. You may restrict cookie use via browser settings, but some console features may not function correctly as a result.

第10条(本ポリシーの変更)Article 10: Changes to This Policy

当社は、法令変更・セキュリティ対応・サービス変更等に応じて本ポリシーを改定することがあります。重要な変更がある場合には、管理コンソールまたはメールにてご利用者に通知します。改定後も本サービスを継続してご利用いただいた場合、改定後のポリシーに同意したものとみなします。

We may update this Policy in response to legal changes, security requirements, or service modifications. Material changes will be communicated to Users via the administrative console or email. Continued use of the Service after a revision constitutes acceptance of the updated Policy.

第11条(お問い合わせ)Article 11: Contact

株式会社シェアメディカル 個人情報保護担当
〒100-0004 東京都千代田区大手町1-6-1 SPACES大手町ビル
メール:support@sharemedical.jp
電話:050-3612-8255
受付時間:平日 10:00〜18:00(土日祝・年末年始を除く)

ShareMedical, Inc. — Privacy Officer
SPACES Otemachi Building, 1-6-1 Otemachi, Chiyoda-ku, Tokyo 100-0004, Japan
Email: support@sharemedical.jp
Phone: +81-50-3612-8255
Business hours: Weekdays 10:00–18:00 JST (excluding national holidays and year-end/new-year)

© 2026 株式会社シェアメディカル All rights reserved.利用規約 プライバシーポリシー 特定商取引法に基づく表記