Privacy Policy
Last updated: March 2026
1. Information We Collect
We collect information you provide directly:
- Account data: name, email address, and password (stored securely via Supabase Auth)
- Profile and scenario data: fictional patient profiles and simulation scenarios you create
- Simulation transcripts: conversation logs from your practice sessions
- Billing data: handled entirely by Stripe — we never store card numbers
2. How We Use Your Information
- To provide and improve the Service
- To process payments and manage your subscription
- To send transactional emails (account invites, billing receipts) via Resend
- To respond to support requests
3. AI Processing
Your simulation conversations are sent to Anthropic's Claude API to generate AI responses. Anthropic processes this data subject to their own privacy policy. All profile content is fictional — do not enter real patient data.
4. Voice Data
Voice input is processed entirely in your browser using the Web Speech API. Audio is not transmitted to or stored on our servers.
5. Data Storage and Security
Your data is stored in Supabase (hosted on AWS). We use row-level security policies to ensure users can only access their own data. Data is encrypted in transit (TLS) and at rest.
6. Data Retention
We retain your data for as long as your account is active. After account deletion, data is removed within 30 days. Stripe retains billing records per their legal obligations.
7. Your Rights
You may request access to, correction of, or deletion of your personal data at any time by emailing privacy@myonesim.com. Institution admins may also remove member accounts through the admin panel.
8. Cookies
We use cookies solely for session authentication (Supabase Auth). We do not use advertising or tracking cookies.
9. Third-Party Services
- Supabase — database and authentication
- Stripe — payment processing
- Anthropic — AI model inference
- ElevenLabs — text-to-speech (if enabled)
- Resend — transactional email
- Vercel — hosting and edge network
10. Children's Privacy
The Service is not directed to individuals under 18. We do not knowingly collect personal information from minors.
11. Changes to This Policy
We may update this policy periodically. We will notify you of material changes via email or a notice within the Service.
12. Contact
Privacy questions? Email privacy@myonesim.com.
