Privacy Policy
Last Updated: December 26, 2025
TCM Acupuncture Atlas ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Traditional Chinese Medicine tongue diagnosis platform.
1. Information We Collect
1.1 Account Information
When you create an account, we collect:
- Email address
- Password (encrypted)
- Account preferences and settings
- Subscription and payment information (processed securely through Stripe)
1.2 Tongue Diagnosis Images
Our tongue diagnosis model runs entirely in your browser using WebAssembly technology:
- Images you upload for diagnosis are processed locally on your device
- These images are NOT uploaded to our servers unless you explicitly use the AI Chat feature
- When using AI Chat, compressed images are sent to OpenAI for analysis and are subject to OpenAI's privacy policy
1.3 Expert User Contributions
If you have expert status and upload annotated tongue images:
- Uploaded images and annotations become part of our research database
- These may be used for model training, research, and educational purposes
- You must ensure you have proper patient consent and comply with HIPAA, GDPR, and other applicable laws
1.4 Usage Information
We automatically collect certain information about your use of our platform:
- Browser type and version
- Device information
- IP address (anonymized)
- Pages visited and features used
- Analytics data through Vercel Analytics
2. How We Use Your Information
We use your information to:
- Provide and maintain our tongue diagnosis services
- Process your subscription and payments
- Send you important account and service updates
- Improve our AI models and platform features
- Conduct research to advance Traditional Chinese Medicine
- Respond to your support requests
- Comply with legal obligations
3. Data Sharing and Disclosure
We share your information only in these limited circumstances:
3.1 Service Providers
- Supabase: Database and authentication services
- Stripe: Payment processing
- Vercel: Hosting and analytics
- OpenAI: AI Chat feature (only when you explicitly use this feature)
3.2 Legal Requirements
We may disclose your information if required by law, court order, or government regulation, or to protect our rights, safety, or property.
3.3 Research and Education
Expert-contributed images and annotations may be used for academic research and educational purposes, with all personally identifiable information removed.
4. Data Security
We implement industry-standard security measures to protect your information:
- All data transmission is encrypted using HTTPS/TLS
- Passwords are hashed using bcrypt
- Database access is restricted and monitored
- Regular security audits and updates
- Client-side processing for tongue diagnosis (images never leave your device unless you use AI Chat)
5. Your Rights and Choices
You have the right to:
- Access: Request a copy of your personal data
- Correction: Update or correct your account information
- Deletion: Request deletion of your account and data
- Data Portability: Receive your data in a structured format
- Opt-Out: Unsubscribe from marketing communications
- Object: Object to certain data processing activities
To exercise these rights, please contact us at tcmatlas.contact@gmail.com
6. Data Retention
We retain your information for as long as necessary to provide our services:
- Account data: Until you request deletion or your account is inactive for 3 years
- Payment records: As required by financial regulations (typically 7 years)
- Expert contributions: Indefinitely for research purposes (with identifiers removed)
- Analytics data: Aggregated and anonymized after 2 years
7. Cookies and Tracking
We use essential cookies for:
- Authentication and session management
- User preferences and settings
- Analytics to improve our platform
You can control cookies through your browser settings, but disabling essential cookies may affect platform functionality.
8. International Data Transfers
Our services are hosted globally. Your data may be transferred to and processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers, including compliance with GDPR and other data protection regulations.
9. Children's Privacy
Our platform is not intended for children under 13 (or 16 in the EU). We do not knowingly collect information from children. If you believe we have inadvertently collected such information, please contact us immediately.
10. Medical Disclaimer
Our tongue diagnosis tool is for educational and informational purposes only. It is not a substitute for professional medical advice, diagnosis, or treatment. Always consult qualified healthcare providers for medical decisions.
11. Changes to This Privacy Policy
We may update this Privacy Policy periodically. We will notify you of significant changes via email or through a prominent notice on our platform. Continued use after changes constitutes acceptance of the updated policy.
12. Contact Information
For privacy-related questions, concerns, or requests, please contact us:
- Email: tcmatlas.contact@gmail.com
- Twitter: @tcmatlas
- Instagram: @tcmatlas
13. GDPR Compliance
For users in the European Economic Area (EEA), we comply with the General Data Protection Regulation (GDPR). Our lawful basis for processing includes:
- Consent: For AI Chat and expert data contributions
- Contract: To provide our services
- Legitimate Interest: For platform improvement and security
- Legal Obligation: To comply with applicable laws
By using TCM Acupuncture Atlas, you acknowledge that you have read and understood this Privacy Policy.