We built this product for our own families. This page explains exactly how your documents are processed, what AI never sees, and how to delete everything in one click.
Your raw document passes through a strict pipeline before any AI ever touches it. Here's every step, in order:
The AI only ever sees: lab values, diagnoses, medications, imaging findings, and clinical observations β stripped of all identifying information.
This applies to us and to Amazon Web Services, the cloud platform we run on.
βAmazon Bedrock doesn't use your prompts and continuations to train the base model. Your inputs and outputs are not shared with model providers.β
Every user gets a completely separate encrypted vault. There is no shared storage, no shared context, and no way for one user's data to leak into another's AI answers.
You decide what stays. Everything can be deleted in seconds.
We use the same AWS infrastructure that banks, hospitals, and governments trust.
Your files stored with server-side AES-256 encryption in your private prefix
Your search index is completely private β no shared cluster, no cross-user queries
AI inference runs in a private API call. AWS explicitly does not use it for training
Authentication handled by AWS. We never store or see your password
Serverless β no persistent server that could be breached. Code runs and terminates
All traffic served over TLS 1.3. Data encrypted in transit at all times
One button. Every document, every analysis, your entire health index, all chat history, and your account β gone permanently. We give you a deletion receipt.
You must be signed in. Takes you to your profile where you confirm.