Privacy Policy
Last updated: April 8, 2026
1. Information We Collect
Account information: When you sign up, we collect your email address and create a secure account via Supabase Auth.
Insurance documents: When you upload a denial letter, EOB, or policy document, we process it to generate your appeal letter. Documents are stored securely in encrypted cloud storage.
Case data: We extract structured information from your documents (insurer name, denial code, claim amount, dates) to generate accurate appeals.
Payment information: Payment is processed by PayPal. We do not store your credit card or bank account details. We only store your PayPal subscription ID.
Usage data: We collect basic analytics about how you use the platform to improve our service.
2. How We Use Your Information
- Generate appeal letters: Your documents are processed by our AI to create personalized appeal letters.
- Improve our AI: When you mark an appeal outcome (won/lost), we use anonymized case data to improve our AI for future users. Your personal information is never included.
- Send notifications: We email you when your enhanced analysis is ready, when appeal deadlines approach, and for account-related updates.
- Customer support: Our AI support agent uses your case data to provide relevant answers to your questions.
3. Health Information (HIPAA Notice)
ClaimFighter is not a covered entity under HIPAA. However, we take the security of your health-related information seriously:
- All documents are encrypted in transit (TLS 1.3) and at rest (AES-256).
- Documents are stored on Supabase (hosted on AWS) with enterprise-grade security.
- Only our AI system processes your documents. Human staff do not access your medical documents unless you explicitly request support and grant permission.
- We never sell, share, or disclose your health information to third parties.
- We never use your personal health information for advertising or marketing.
4. Data Retention
Your case data and documents are retained for as long as your account is active. You can request deletion of all your data at any time by contacting support. We will delete all your data, including uploaded documents, case records, and appeal letters, within 30 days of your request.
5. Data Sharing
We do not sell your personal information. We share data only with:
- Anthropic (Claude AI): Your document text is sent to Claude for processing. Anthropic does not retain or train on this data per their API terms.
- Supabase: Database and file storage provider.
- PayPal: Payment processing only.
- Resend: Transactional email delivery only.
6. Your Rights
- Access: You can view all your case data and appeal letters in your account.
- Deletion: You can request complete deletion of your account and all associated data.
- Export: You can download your appeal letters at any time.
- Opt out: You can unsubscribe from non-essential emails at any time.
7. Cookies
We use essential cookies only for authentication (Supabase Auth session cookies). We do not use tracking cookies or third-party analytics cookies.
8. Contact
For privacy-related questions or data deletion requests, contact us at office@claimfighter.online.