Privacy Policy
Last updated: 2/22/2026
1. Information We Collect
We believe in data minimization. We only collect what is strictly necessary:
- Medical Records: Processed in-memory and never stored on our servers.
- Extracted Profiles: A structured summary of medical info to find trials, encrypted at rest.
- Account Info: Your email address for authentication and notifications.
2. Transient Processing Model
"Your original medical records (PDFs/Images) are held in your computer's memory and our server's temporary memory for the duration of the analysis (usually less than 30 seconds). They are then permanently discarded and never written to our database or file storage."
3. How We Use Your Data
Your data is used solely to match you with clinical trials on global clinical registries and to alert you when new trials appear. We **never** sell your data to third parties.
4. Encryption & Security
- AES-256 Encryption: Your extracted medical profile is encrypted before being saved.
- JWT Auth: Secure token-based access to your matches.
- No PHI in Logs: We redact sensitive info from our system logs.
5. Your Right to Delete
You have full control. You can use the "Delete Account" feature in your Settings to permanently and instantly wipe all matching data and your medical profile from our systems.
6. Contact
For privacy inquiries, contact privacy@trialmatch.com