Health Question Architect AI
Español
Back to home

Privacy Policy

Last updated: June 30, 2026

This Privacy Policy explains how Health Question Architect AI ("we", "us", the "Service") collects, uses, and protects information. The Service is designed to collect and retain as little personal data as reasonably possible.

1. Who we are

Health Question Architect AI is a consumer health-literacy and medical-visit preparation tool. It is not a healthcare provider, health plan, healthcare clearinghouse, HIPAA covered entity, or intended HIPAA business associate, and it does not provide medical advice, diagnosis, or treatment.

2. Information we collect

3. Conversation content

We do not save conversation content in our server database and do not write conversation content to our server logs. Conversation content is sent to the configured AI model provider to generate the response. We do not intentionally send your account email or billing data to the AI model provider, but the health text you type is processed by that provider.

4. Cookies and Local Storage

We use cookies and browser storage for functional purposes needed to operate the Service. We do not use advertising cookies, behavioral advertising pixels, or cross-site tracking tools in the current version of the Service.

You can remove local conversation content by restarting the conversation, clearing browser storage, or deleting your account. You can also control cookies and local storage through your browser settings, but disabling essential storage may prevent login, language selection, or chat features from working correctly.

5. How we use information

6. Service providers

We use service providers only as needed to operate the Service:

7. Health information and AI

The assistant may discuss health topics, but it does not diagnose, prescribe, provide treatment, or replace a licensed professional. AI responses may be inaccurate or incomplete. Always verify important information with a qualified healthcare professional. In an emergency, contact local emergency services immediately.

8. Retention and deletion

We keep account and subscription data while your account is active or as needed for legal, security, tax, billing, or dispute purposes. Conversation content is not retained in our server database. You can delete your account from the app; this removes account/subscription data under our control and cancels any active subscription, subject to records that providers or law may require us to retain.

9. Your choices

Depending on where you live, you may have rights to access, correct, delete, or receive information about personal data. Contact us at gabrieliba@gmail.com to exercise available rights.

10. Security

We use HTTPS/TLS in transit, provider-side encryption at rest where available, secure cookies, least-privilege access controls, rate limiting, and secret keys stored server-side. No system is perfectly secure, and we do not promise absolute security.

11. Children

The Service is intended for adults 18 and older and is not directed to children. We do not knowingly collect data from children.

12. Breach notification

If we discover a breach involving unsecured identifiable health information or other personal information, we will investigate promptly and notify affected users, the FTC, media outlets, or other authorities when required by applicable law, including the FTC Health Breach Notification Rule. When that rule applies, notices will be made without unreasonable delay and no later than the legally required deadline after discovery.

13. Changes to this Policy

We may update this Policy from time to time. Material changes will be posted on this page with a new "Last updated" date.

14. Contact

Questions about privacy? Contact us at gabrieliba@gmail.com.