DRAFT — pending legal review. This document is a working draft and has not yet been reviewed by counsel. It describes how the platform is built to operate.
Your story is yours.

Privacy Policy — IASA Telehealth

I Am Still Alive ("IASA", "we") — Telehealth module. Last updated: July 2026 (draft).

The authoritative version of this document is the English text.

1. Our philosophy: PHI-light by design

We collect the minimum needed to support your care. Free-text surfaces across the platform ask you to stay "PHI-light" — no record numbers, no identifiers you don't need to share. Where health information exists (your health and clinical profiles, intake forms, report vault), you own it: you write it, you can edit or delete it, and it is shared only with the clinicians you actually see. Staff oversight works from audit trails, not your media or clinical content — staff cannot open patient report files, video messages, or session recordings.

2. What we collect

Account data: name, email, role, region/state (used only for clinician licence matching), language preferences. Care data you author: health basics, clinical profile and treatment timeline, uploaded reports, intake answers, symptom readings, medication journal, messages, video messages, consent decisions. Session data: bookings, visit summaries and clinical notes your clinician releases to you, call quality telemetry, and — with everyone's knowledge — live-caption transcripts. Payment data: amounts and status; card details live with Stripe, never with us. Platform records: a security audit trail of who did and viewed what, and an append-only revenue ledger in which patient references are one-way hashes, never names.

3. Who processes data for us

We use a small set of infrastructure processors, each handling only what its job requires:

  • Render + PostgreSQL — application hosting and the primary database.
  • LiveKit — real-time video/audio for calls and group sessions (media relays in real time; we do not store call media except consented recordings, when that capability is enabled).
  • Cloudflare R2 — object storage for consented recordings (when enabled).
  • Stripe — payment processing.
  • Firebase — push notifications and optional Google/phone sign-in (when enabled).
  • Twilio — SMS reminders (when enabled).

We do not sell your data. We do not share health information with advertisers — there are no advertisers here.

4. Retention

Care records and consent decisions are retained while your account is active. The security audit trail is retained for 7 years (NFR-12), because being able to prove who accessed what is part of protecting you. Content you delete (reports, timeline steps, medications) is removed from the live platform; superseded consent versions remain on the record as history of what you agreed to and when.

5. Your rights

You can: read everything the platform holds about you from your own pages; correct or delete what you authored; withdraw any consent at any time from your Privacy & consents page — withdrawal never affects your right to care; revoke a caregiver's access; and close your account. Where GDPR, HIPAA, or India's DPDP Act grant you further rights (access, portability, erasure, complaint to a supervisory authority), we will honour them — write to us and we will help.

6. Contact

Privacy questions and requests: privacy@iamstillalive.com. We answer as people, not as a form letter. You are not alone.