Legal
Privacy Policy
Last updated June 2026
Hospital policy content is sensitive, and we treat it that way. This page describes what we collect and how we use it.
What this covers
This policy explains what information Policy Prism collects when you use the product and website, how we use it, and the choices you have. It is written in plain language and is a working draft for the current preview.
Information we collect
Account information you provide, such as your name, work email, and organization.
Policy content you choose to upload or connect, including your policy documents, obligations, and the findings generated from them.
Usage and diagnostic data that helps us keep the product reliable, such as log events and basic device information.
How we use information
To provide the product: building your regulatory scope, running assessments, and helping you draft and govern policy work.
To operate, secure, and improve the service.
We do not use your policy content to train shared or third-party models. Your corpus is used to serve you, not to teach a model that benefits anyone else.
How we share information
We do not sell your data. We share information only with service providers who help us run the product under contract, and when required by law.
Access within Policy Prism is scoped to your organization and recorded in an audit trail.
Data retention and deletion
We retain your information while your account is active and as needed to provide the service. You can request an export of your library or deletion of your data, and we will act on it.
Your choices and rights
Depending on where you operate, you may have rights to access, correct, or delete your information. To make a request, contact us using the email below.
Contact
Questions about privacy can be sent to [email protected].
This page is a working draft for the Policy Prism AI preview and is not yet a final agreement. Questions? Reach us at [email protected].
