Data Security & Privacy

Your health data is yours.
We protect it like it is.

We built this product for our own families. This page explains exactly how your documents are processed, what AI never sees, and how to delete everything in one click.

βœ… AI never trains on your data
βœ… PII removed before AI sees anything
βœ… One-click full deletion
βœ… Each user's data is fully isolated
βœ… Built on AWS β€” enterprise security
Section 1 Β· How We Process Your Documents

What happens when you upload a file

Your raw document passes through a strict pipeline before any AI ever touches it. Here's every step, in order:

πŸ“„
Your File
PDF, image, Word doc β€” any format
β†’
πŸ”
Encrypted Upload
TLS 1.3 in transit β€’ AES-256 at rest
β†’
πŸ”
PII Scanner
AI detects names, DOBs, SSNs, addresses
β†’
βœ‚οΈ
PII Removed
Sensitive identifiers stripped from text
β†’
πŸ€–
AI Sees This
Anonymized medical content only
β†’
πŸ’¬
Your Answer
Insights returned directly to you
🚫
What is NEVER sent to any AI model:
Your full nameDate of birthSocial Security NumberHome addressPhone numberEmail addressInsurance member IDProvider namesAccount numbers

The AI only ever sees: lab values, diagnoses, medications, imaging findings, and clinical observations β€” stripped of all identifying information.

BEFORE β€” Raw Document
Patient: John Smith
DOB: 03/15/1968
Provider: Dr. Sarah Chen
Address: 42 Oak St, Austin TX
HbA1c: 8.2% (HIGH)
TSH: 5.6 mIU/L (HIGH)
LDL: 142 mg/dL
β†’
AFTER β€” What AI Sees
Patient: [REDACTED]
DOB: [REDACTED]
Provider: [REDACTED]
Address: [REDACTED]
HbA1c: 8.2% (HIGH)
TSH: 5.6 mIU/L (HIGH)
LDL: 142 mg/dL
Section 2 Β· AI Training

Your data is never used to train AI

This applies to us and to Amazon Web Services, the cloud platform we run on.

🀝

Our commitment

  • We never sell your data to anyone
  • We never use your records to train our models
  • We never share your data with third parties
  • Your anonymized data never leaves your account context
aws
Amazon Web Services

Amazon's official guarantee:

β€œAmazon Bedrock doesn't use your prompts and continuations to train the base model. Your inputs and outputs are not shared with model providers.”

β†’ AWS Bedrock Data Protection docs β†—
How your data flows β€” and where it stops
πŸ‘€
You
β†’
πŸ”
Your Vault
encrypted
β†’
πŸ€–
AWS Bedrock
anonymized only
β†’
πŸ’¬
Answer
back to you
🚫Your data is NEVER used to train any AI model β€” by us or by AWS
Section 3 Β· Data Isolation

Your data never touches anyone else's

Every user gets a completely separate encrypted vault. There is no shared storage, no shared context, and no way for one user's data to leak into another's AI answers.

πŸ‘©User AπŸ”’
πŸ“„ Lab results
πŸ“„ Echo report
πŸ“„ Visit notes
Encrypted Β· Private Β· Isolated
πŸ‘¨User BπŸ”’
πŸ“„ MRI report
πŸ“„ Blood work
πŸ“„ Prescription
Encrypted Β· Private Β· Isolated
πŸ§‘User CπŸ”’
πŸ“„ Discharge summary
πŸ“„ X-ray report
πŸ“„ Lab results
Encrypted Β· Private Β· Isolated
πŸ”’
Technical isolation guarantees:
Per-user S3 prefix (your account ID in every path)Per-user OpenSearch index (zero cross-user search)JWT-verified on every API callAI context includes only your documents
Section 4 Β· Storage & Retention

Exactly what we store β€” and what we delete

You decide what stays. Everything can be deleted in seconds.

πŸ“„Original file
Stored: Yes β€” in your private S3 folder
Deletable: Yes β€” delete per-file or all at once
πŸ“Anonymized text
Stored: Yes β€” extracted text with PII removed
Deletable: Yes β€” deleted when document is deleted
🧠AI embeddings
Stored: Yes β€” in your private search index
Deletable: Yes β€” wiped when you delete your account
πŸ’¬Chat history
Stored: Yes β€” your conversation sessions
Deletable: Yes β€” cleared with account deletion
πŸ“ŠHealth portfolio
Stored: Yes β€” your synthesized health summary
Deletable: Yes β€” deleted with your account
πŸ”‘Your passwords
Stored: Never β€” hashed by AWS Cognito only
Deletable: N/A β€” we never see it
Section 5 Β· Infrastructure Security

Built on AWS β€” enterprise-grade security

We use the same AWS infrastructure that banks, hospitals, and governments trust.

πŸ—οΈ
Amazon S3
ISO 27001 β€’ SOC 2

Your files stored with server-side AES-256 encryption in your private prefix

πŸ”
Amazon OpenSearch
Encrypted at rest

Your search index is completely private β€” no shared cluster, no cross-user queries

πŸ€–
Amazon Bedrock
HIPAA eligible

AI inference runs in a private API call. AWS explicitly does not use it for training

πŸͺͺ
Amazon Cognito
MFA supported

Authentication handled by AWS. We never store or see your password

⚑
AWS Lambda
Isolated per request

Serverless β€” no persistent server that could be breached. Code runs and terminates

🌐
AWS CloudFront
TLS 1.3

All traffic served over TLS 1.3. Data encrypted in transit at all times

πŸ—‘οΈ

Want to delete everything?

One button. Every document, every analysis, your entire health index, all chat history, and your account β€” gone permanently. We give you a deletion receipt.

All uploaded filesAnonymized text copiesAI search indexHealth portfolioChat historyNutrition plansYour account
πŸ—‘οΈ Delete All My Data β†’

You must be signed in. Takes you to your profile where you confirm.

πŸ”’TLS 1.3 encryption in transit on all connections
πŸ”AES-256 encryption at rest for all stored data
🚫Zero data sold, shared, or used for AI training
πŸ‘€Each user's data completely isolated from others
πŸ—‘οΈFull account + data deletion available anytime
☁️Hosted on AWS β€” same infrastructure as hospitals