RadKits Privacy Policy
Effective Date: January 31, 2026
Last Updated: Jan 27, 2026
1. Introduction
RadKits ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, store, and share information when you use our platform and services (the "Service").
By using RadKits, you agree to the collection and use of information as described in this policy.
2. Information We Collect
2.1 Information You Provide
Account Information
- Email address
- Name (optional)
- Password (stored securely using industry-standard hashing)
- Professional information you choose to provide (e.g., specialty, institution)
Content You Create
- Reports generated through the Service
- Report templates you create or customize
- Knowledge base entries
- Feedback and survey responses
2.2 Information Collected Automatically
Usage Data
- Features used and actions taken within the Service
- Report generation activity (e.g., number of reports, templates used)
- Session duration and frequency
- Device type, browser, and operating system
Technical Data
- IP address
- Browser type and version
- Time zone and location (approximate, based on IP)
- Error logs and performance data
We use PostHog for analytics to understand how users interact with the Service and to improve the product.
2.3 Information We Do NOT Collect
We do not intentionally collect:
- Patient names or identifiers
- Protected health information (PHI)
- Personally identifiable information about your patients
The Service is designed for workflow assistance, not patient data storage. You are responsible for ensuring that content you enter does not contain patient-identifiable information.
3. How We Use Your Information
We use the information we collect to:
Provide and Operate the Service
- Create and manage your account
- Store and display your reports, templates, and knowledge base entries
- Generate AI-assisted reports and suggestions
Improve the Service
- Analyze usage patterns to understand how features are used
- Identify and fix bugs and performance issues
- Develop new features based on user behavior and feedback
Train and Improve AI Models
- Use anonymized and aggregated content to improve our AI models
- Enhance report generation quality and suggestions
- We do not use patient-identifiable information for AI training (and rely on you not to enter such information)
Communicate with You
- Send service-related announcements (e.g., maintenance, updates)
- Respond to support requests
- Request feedback through surveys
- Notify you of changes to our Terms or Privacy Policy
Ensure Security and Compliance
- Detect and prevent fraud, abuse, and security threats
- Comply with legal obligations
4. How We Store and Protect Your Information
4.1 Data Storage
Your data is stored on secure servers currently located in the United States. We may relocate our infrastructure to the European Union or MENA region in the future to better serve our users. We will update this policy if data storage locations change significantly.
Security Measures
- Data is stored in PostgreSQL databases on servers with encrypted disks
- Passwords are hashed using industry-standard algorithms
- Access to production systems is restricted to authorized personnel
- We use HTTPS/TLS encryption for all data in transit
4.2 Data Retention
- Reports and Content: Retained until you delete them or close your account. We may delete data after an extended period of inactivity (typically 3+ years) with prior notice.
- Account Information: Retained while your account is active and for a reasonable period afterward for legal and business purposes.
- Usage Analytics: Retained in aggregated/anonymized form indefinitely to improve the Service.
5. How We Share Your Information
We do not sell your personal information. We may share information in the following circumstances:
Service Providers We use third-party services to help operate RadKits, including:
- Cloud hosting providers (for data storage and processing)
- Analytics services (PostHog) for understanding usage patterns
- Email services for transactional and marketing communications
These providers are contractually obligated to protect your information and use it only for the services they provide to us.
Aggregated and Anonymized Data We may share aggregated, anonymized data that cannot identify you (e.g., "Users generate an average of 5 reports per week") for research, marketing, or other purposes.
Legal Requirements We may disclose information if required by law, legal process, or government request, or to protect the rights, property, or safety of RadKits, our users, or others.
Business Transfers If RadKits is acquired, merged, or sells assets, your information may be transferred as part of that transaction. We will notify you of any such change.
6. Your Rights and Choices
6.1 Access and Portability
You can access your reports, templates, and knowledge base entries through the Service at any time. You can copy or export your content using the features provided.
6.2 Correction
You can update your account information and edit your content through the Service.
6.3 Deletion
- Individual Reports: You can delete reports through the Report History feature.
- Account Deletion: To delete your account and all associated data, contact us at support@radkits.com. We will process deletion requests within 30 days.
6.4 Communication Preferences
You can opt out of non-essential communications (e.g., marketing emails) by following the unsubscribe link in any email or by contacting us. You cannot opt out of essential service communications (e.g., security alerts, Terms updates).
6.5 Analytics Opt-Out
If you prefer not to be tracked by our analytics, you can enable "Do Not Track" in your browser or contact us to opt out.
7. Cookies and Tracking Technologies
We use cookies and similar technologies to:
- Keep you logged in to your account
- Remember your preferences
- Understand how you use the Service (analytics)
- Improve performance and security
Types of Cookies We Use
| Type | Purpose |
|---|---|
| Essential | Required for the Service to function (authentication, security) |
| Analytics | Help us understand usage patterns and improve the Service |
| Preferences | Remember your settings and preferences |
Most browsers allow you to control cookies through settings. Disabling essential cookies may prevent you from using the Service.
8. Children's Privacy
RadKits is not intended for use by individuals under 18 years of age. We do not knowingly collect information from children. If you believe a child has provided us with personal information, please contact us and we will delete it.
9. International Data Transfers
If you are accessing RadKits from outside the United States, your information will be transferred to and processed in the United States (or other locations where our servers are located). By using the Service, you consent to this transfer.
We take appropriate measures to ensure your information is protected in accordance with this Privacy Policy regardless of where it is processed.
10. AI and Automated Processing
RadKits uses artificial intelligence to generate reports and provide suggestions. This involves automated processing of the content you enter. You should be aware that:
- AI models learn from patterns in data to generate outputs
- We use your content (excluding any patient-identifiable information, which you should not enter) to improve our AI models
- AI-generated content should always be reviewed by a qualified professional
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will:
- Update the "Last Updated" date at the top of this policy
- Notify you by email or through the Service
Your continued use of RadKits after changes take effect constitutes acceptance of the updated policy.
12. Contact Us
If you have questions about this Privacy Policy or our data practices, please contact us:
Email: support@radkits.com
Website: https://radkits.com
13. Summary of Key Points
| Topic | Summary |
|---|---|
| What we collect | Account info, content you create, usage data |
| What we DON'T collect | Patient-identifiable information (PHI/PII) |
| How we use data | Operate service, improve product, train AI |
| AI training | Yes, using anonymized content (no patient data) |
| Data storage | Encrypted servers, currently in US |
| Data retention | Until you delete, or after extended inactivity |
| Sharing | Service providers only; no selling of data |
| Your rights | Access, correct, delete your data |
By using RadKits, you acknowledge that you have read and understood this Privacy Policy.