Privacy Policy
Last updated: 22 September 2026
1. What we collect
- Account data: Email address (for login), display name (pseudonymous by default)
- Health data: Compounds you take, conditions you track, outcomes you report, doses, durations
- Usage data: Pages visited, features used, and Core Web Vitals, collected via Vercel Analytics and Speed Insights — first-party, cookie-free tools that never see search terms or form input. Compound and condition names in page URLs are redacted before being sent.
- What we DON'T collect: Real names (optional), precise location, IP addresses (not stored in our database)
2. How we use your data
- To show you your own outcomes in My outcomes — no other user can see your individual reports (our moderation team reviews reports before they count towards community results)
- To combine with other users' reports into community results on compound and condition pages — published only as totals and averages, never as individual reports, never with your display name, and only once at least 10 approved reports exist for that compound and condition
- To improve our services and develop new features
- To send you essential account-related emails (password reset, security notices)
We never sell your individual health data. Aggregated, de-identified data may be licensed to research institutions and commercial partners under strict data licensing terms.
3. How we protect your data
- Row-Level Security (RLS): Database-level access controls ensure users can only see their own individual reports
- No public individual reports: Visitors and other signed-in users can never see your individual report or anything you write in it
- Aggregation threshold: Community results for a compound × condition pair are published only once at least 10 approved reports exist, and only as combined figures (number of reports, average rating, share who would recommend). Smaller groups and finer breakdowns stay unpublished
- Encryption: All data in transit (TLS) and at rest (AES-256)
- No third-party trackers on pages containing health data
- Pseudonymous by default: Display names only — real names are never required
4. Your rights (UK GDPR)
- Right of access: Request a copy of all data we hold about you
- Right to rectification: Correct inaccurate data
- Right to erasure: Delete your account and all associated data
- Right to data portability: Export your data in a machine-readable format
- Right to object: Stop processing of your data for specific purposes
Manage your information in Account settings: export your data, review consent history, or request account deletion. To edit or delete an individual contribution, open My outcomes.
Browser drafts and session notes
Contribution drafts are stored in this browser until submitted or discarded. Returning to a draft requires fresh consent before submission. Your private stack notebook uses session storage and is not uploaded to your account. Browser session restoration may restore these notes; remove entries before leaving a shared device.
If account services are unavailable, your browser draft is not a submitted report. Keep the draft and try again when service is restored.
5. Data retention
Your individual data is retained for as long as your account is active. If you delete your account, your individual data is permanently removed within 30 days. Aggregated, de-identified data derived from your outcomes is retained permanently as it can no longer be linked to you.
6. Contact
For privacy questions or help with a data request, prepare a privacy email or email privacy@works-for-us.app. Include your account email and the action you need; do not send medical records or passwords.