ClaimGuard

ClaimGuard policies

Privacy Policy

Last updated: June 13, 2026

This Privacy Policy explains how ClaimGuard ("ClaimGuard," "we," "us," or "our") collects, uses, discloses, and protects information when you use our website, applications, and related services (the "Service"). By using the Service, you agree to the practices described here.

1. Who This Policy Applies To

This Policy applies to visitors, account holders, trial users, paying customers, and anyone who contacts us about the Service. If you use the Service on behalf of a business, you should ensure your organization has authority to share the information you submit.

2. Information We Collect

We collect information in the following categories:

  • Account information: name, email address, company name, authentication identifiers, and profile settings.
  • Workspace data: products, ingredients, markets, sales channels, claims, analysis results, tasks, audit events, onboarding answers, feedback messages, and related compliance workflow records.
  • Billing information: subscription status, plan tier, customer identifiers, and payment metadata processed by Dodo Payments. We do not store full payment card numbers on our servers.
  • Technical data: IP address, browser type, device information, pages viewed, timestamps, referral data, and similar usage logs generated by our hosting and security systems.
  • Communications: messages you send to support, feedback forms, or other correspondence with us.

3. How We Use Information

We use information to:

  • provide, operate, maintain, and secure the Service;
  • authenticate users and enforce account permissions;
  • analyze claims using our rules engine and store results in your workspace;
  • track plan usage, process subscriptions, and manage billing;
  • send service-related notices, security alerts, and support responses;
  • improve features, troubleshoot errors, and prevent abuse;
  • comply with law, respond to lawful requests, and protect our rights and users.

4. Claim Analysis and Automated Processing

ClaimGuard's core claim analysis is performed by a deterministic rules engine within our application stack. Unless we clearly disclose a different processing method for a specific feature, we do not send claim text to a third-party generative AI API for standard risk scoring.

Automated outputs may influence internal workflow suggestions, but they do not produce legal decisions about you. You should not treat risk scores or rewrite suggestions as a formal compliance determination.

5. Legal Bases for Processing (EEA, UK, and Similar Regions)

Where applicable data-protection law requires a legal basis, we rely on:

  • Contract: to provide the Service you request, manage your account, and process subscriptions.
  • Legitimate interests: to secure the Service, prevent abuse, improve functionality, and support customers, balanced against your rights.
  • Consent: where required for optional communications or non-essential cookies.
  • Legal obligation: where we must retain or disclose information to comply with law.

6. How We Store and Protect Information

Workspace and account data are stored in Supabase-hosted infrastructure using access controls and row-level security designed to restrict user access to the correct workspace records.

We use administrative, technical, and organizational safeguards appropriate to the nature of the Service, including encrypted transport, access-limited service credentials, authenticated APIs, and rate limiting. No method of transmission or storage is completely secure, and we cannot guarantee absolute security.

You are responsible for safeguarding your login credentials and ensuring that only authorized members of your organization access your workspace.

7. Data Retention

We retain information for as long as your account is active or as needed to provide the Service, comply with legal obligations, resolve disputes, and enforce our agreements.

You may request deletion of your account or workspace data by contacting us. Some information may be retained where required by law, billing records, fraud prevention, or backup systems for a limited period.

8. When We Share Information

We do not sell your personal information. We may share information with:

  • Service providers that help us operate the Service, such as Supabase, Dodo Payments, hosting providers, email/support tools, and security vendors, under contractual confidentiality and data-protection obligations;
  • Professional advisers where reasonably necessary for legal, accounting, or compliance purposes;
  • Law enforcement, regulators, courts, or other parties when required by law or to protect rights, safety, and security;
  • A successor entity in connection with a merger, acquisition, financing, or sale of assets, subject to this Policy or equivalent protections.

9. International Data Transfers

ClaimGuard may process and store information in the United States and other countries where we or our service providers operate. If you access the Service from outside the United States, you understand that your information may be transferred to jurisdictions that may have different data-protection laws than your own.

Where required, we implement appropriate safeguards for cross-border transfers.

10. Your Privacy Rights

Depending on your location, you may have rights to access, correct, delete, restrict, object to, or port certain personal information, and to withdraw consent where processing is consent-based.

You may also have the right to lodge a complaint with your local data-protection authority. To exercise your rights, contact us at the email below. We may need to verify your identity before responding.

11. Cookies and Similar Technologies

We use cookies and similar technologies necessary for authentication, session management, security, and core site functionality. We may also use analytics or preference technologies where enabled.

For more detail, see our Cookie Policy. You can control cookies through your browser settings. Disabling essential cookies may prevent some parts of the Service from functioning properly.

12. Children's Privacy

The Service is not directed to children under 18, and we do not knowingly collect personal information from children. If you believe a child has provided us information, contact us and we will take appropriate steps to delete it.

13. Sensitive Information

The Service is designed for business compliance workflows, not for collecting consumer health records or large volumes of sensitive personal data. Do not submit personal medical records, government ID numbers, payment card numbers, or other highly sensitive personal data unless your internal policies and applicable law clearly permit it and it is necessary for your use case.

14. Changes to This Policy

We may update this Privacy Policy from time to time. If we make material changes, we will provide notice through the Service, by email, or by updating the "Last updated" date above. Your continued use of the Service after the effective date constitutes acceptance of the revised Policy.

15. Contact

Privacy questions and data requests may be sent to claimguard.io@gmail.com. Please include the account email associated with your workspace so we can respond efficiently.

Contact: claimguard.io@gmail.com