Privacy

Privacy Policy

Updated June 12, 2026

Heads-up: NotePush is in beta. This page is a working draft drafted from a standard template and reviewed by a healthcare attorney before the Pro tier launches with real PHI. Until then, the free tier does not process protected health information.

What we collect

On the marketing site (notepush.com): your email if you join the waitlist, and anonymous usage analytics from Vercel Web Analytics (no cookies, no IP storage). On the app (app.notepush.com): an account email and password (hashed), and whatever you choose to enter into your sandbox — which today should only be synthetic patient data.

What we don't do

  • We don't sell your data. Ever.
  • We don't share your data with advertisers.
  • We don't train AI models on your data.
  • We don't set marketing cookies on the landing pages.

AI providers

Note generation runs through Anthropic's API under a zero-data-retention configuration when on a paid plan. Today, on the beta, generations may transit Anthropic's standard API. Audio transcription, when configured, runs through OpenAI Whisper (beta) and will move to a HIPAA-eligible vendor (Deepgram Nova-3 Medical) before Pro launches.

HIPAA / PHI

The current free tier is for synthetic data only. The Pro tier launches with signed Business Associate Agreements at every vendor in the stack — hosting (Vercel), database (Neon), AI model, and ASR. We will publish the BAA chain at launch.

Data deletion

You can delete your account and all associated data by emailing privacy@notepush.com. We'll act within 30 days.

Contact

Questions, requests, or concerns: privacy@notepush.com.