Privacy notice
Last updated 26 August 2026
What we store
Your account details, the projects you create, and the files you upload. Uploaded clinical data is stored as files rather than in the application database, and the database holds only metadata about it.
Protected health information
Fields that look like PHI are detected automatically and excluded from AI prompts, charts and exports until a person decides otherwise. Treating a field as less sensitive requires a justified request that an account owner approves, and every such decision is recorded.
What leaves the system
AI features send the minimum context required for the task, never raw clinical rows. A request that would carry protected data outside the approved boundary is blocked rather than trimmed silently, and the block is explained.
Logging
Application logs carry correlation identifiers so a failure can be traced. They are filtered so clinical values, credentials and provider keys do not reach them.
Deletion
Deleting a project removes its data and the artifacts derived from it. Audit records of privacy-relevant decisions are retained, because their purpose is to survive the thing they describe.
Contact
Questions about this notice, or a request to access or delete your data, can be sent from the settings page of your account.