Privacy policy
PathoCare processes patient and laboratory data solely on behalf of the laboratory that operates each account. Each organization's clinical data lives in its own isolated database.
- Sign-in: Google OAuth only. We store your name, email and profile picture; we never see your password.
- Patient data: entered and owned by your laboratory. We never sell or share it, and staff access is role-restricted and audit-logged.
- Public report links: protected by an unguessable token and, by default, a date-of-birth check. Links expire and can be revoked.
- Backups: owners can export their organization's full data at any time, and deregistration permanently deletes it after a 14-day grace period.
- Contact form: details submitted are used only to reply to you.
Questions about data handling? Contact us.