Privacy Policy
Last updated: April 15, 2026
PillPal ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our medication tracking application.
1. What Data We Collect
We collect the following categories of information:
- Account information — your email address, name, and date of birth when you create an account.
- Medication data — medication names, dosages, schedules, and prescribing doctor information that you enter or scan.
- Health data — dose history (taken, skipped, or snoozed), adherence records, and any notes you add to your medication log.
- Device information — browser type, operating system, and push notification subscription details when you enable reminders.
- Usage data — pages visited, features used, and general interaction patterns to help us improve the app.
2. How We Use Your Data
We use the information we collect to:
- Provide and maintain the medication tracking service.
- Send you dose reminders via push notifications and, if enabled, SMS messages.
- Process pill bottle images through AI to extract medication information.
- Generate shareable medication summaries for your healthcare providers when you choose to create a share link.
- Improve the application and develop new features.
3. Who We Share Data With
We do not sell your personal data. We share information only with the following service providers, and only as necessary to operate PillPal:
- Supabase — hosts our database and authentication system. Your account and medication data is stored securely on Supabase infrastructure.
- Anthropic (Claude AI) — processes pill bottle images you choose to scan. Images are sent to Anthropic's API solely for label extraction and are not retained by Anthropic after processing.
- Twilio — sends SMS reminders only if you explicitly opt in and provide your phone number.
We may also disclose your information if required by law or to protect our legal rights.
4. Data Security
We take the security of your data seriously. Measures we employ include:
- All data is transmitted over HTTPS with TLS encryption.
- Database access is protected by Row Level Security (RLS) policies, ensuring you can only access your own data.
- Authentication tokens are stored as secure, HTTP-only cookies.
- Server-side API keys and secrets are never exposed to the browser.
5. Your Rights
You have the right to:
- Accessyour personal data at any time through the app's settings and history pages.
- Delete your account and all associated data by contacting us at the email below.
- Export your medication and dose history data via the doctor share feature.
- Withdraw consent for optional features like SMS reminders at any time in your settings.
6. Cookie Policy
PillPal uses only essential cookies required for authentication and session management. We do not use advertising cookies, tracking cookies, or third-party analytics cookies. The only cookie stored is your encrypted authentication session token.
7. Children's Privacy
PillPal is not intended for use by anyone under the age of 13. We do not knowingly collect personal information from children under 13. If we learn that we have collected data from a child under 13, we will delete that information promptly.
8. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date.
9. Contact Us
If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at: admin@jamcodes.ai