Privacy Policy
Last updated: 2026-08-21
What we collect
- Account information: email address, name (optional), and authentication data via Supabase Auth.
- Usage data: cases started, notes drafted and submitted, AI feedback received, and progress metrics.
- Payment data: processed by Stripe. We do not store your card details on our servers.
- Support and safety data: any content you report as accidental real-patient information (stored as a hash, not raw text, where technically feasible).
What we do not want you to give us
Do not submit real patient information of any kind. The Platform is for fictional, educational cases only. We screen note submissions for likely real-patient content before sending them to any AI provider.
How we use your data
- To operate your account, track your case progress, and grade your submitted notes.
- To enforce free/paid usage quotas.
- To improve case content and AI grading quality.
- To communicate with you about your account, purchases, and product updates.
AI processing
When you submit a note for grading, the fictional case content and your note text are sent to our AI provider (via Vercel AI Gateway) to generate structured feedback. We do not send your account email, name, or billing information to the AI provider, only what is needed to grade the note.
Third-party services
- Supabase: authentication, database, and row-level security.
- Stripe: payment processing.
- Vercel AI Gateway: AI-based note grading.
- Vercel: application hosting.
Data retention and deletion
You may request account and data deletion at any time. If you accidentally submit real patient information, report it immediately so we can review and delete it through our admin deletion workflow.
Contact
Questions about this policy can be sent to the support contact listed in your account settings.