Privacy Policy
Last updated: May 2026
1. Information We Collect
When you create an account, we collect:
- Name and email address
- Profile information (headline, bio, education, research interests)
- Profile photo (if uploaded)
- Content you post (posts, comments, research papers)
When you use Allied Health Alliance, we automatically collect:
- Device information (device type, operating system, browser)
- Usage data (pages visited, features used)
- IP address for security and rate limiting
2. How We Use Your Information
We use your information to:
- Provide and maintain the Allied Health Alliance platform
- Display your profile to other members
- Send notifications about activity on your content
- Process subscription payments through our authorized payment processor
- Detect and prevent fraud, abuse, and security incidents
- Improve the platform based on usage patterns
3. Payment Information
Subscription payments are processed by our authorized payment processor (currently Square). We do not store your credit card number, CVV, or full payment details on our servers. All payment data is handled in compliance with PCI DSS standards.
We store only a customer reference ID and subscription status to manage your membership.
4. Information Sharing
We do not sell your personal data to third parties. We share information only in these cases:
- Your public profile is visible to other members and visitors
- Posts, comments, and research you mark as public are visible to other users
- Payment data is shared with our payment processor for transaction processing
- We may disclose information if required by law or to protect our rights
5. Data Storage and Security
Your data is stored securely on Supabase (hosted on AWS). We use encryption in transit (HTTPS/TLS) and at rest. Authentication tokens are stored securely using HTTP-only cookies on the web and encrypted storage on mobile devices.
We implement Row-Level Security policies at the database level to ensure users can only access data they are authorized to see.
6. Your Rights
You have the right to:
- Access your personal data through your profile
- Edit or update your information at any time
- Delete your posts, comments, and research papers
- Permanently delete your account and all data from Security Settings
- Export your data by contacting us
7. Cookies and Tracking
We use essential cookies for authentication and session management. We do not use advertising cookies or third-party tracking. The mobile app uses secure local storage for authentication tokens.
8. Push Notifications
If you enable push notifications on the mobile app, we send alerts for activity on your content (likes, comments, follows, messages). You can disable notifications at any time in the app settings or your device settings.
9. Children's Privacy
Allied Health Alliance is designed for allied health professionals and students. We do not knowingly collect information from children under 13. If you believe a child has provided us with personal data, please contact us to have it removed.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated via email or a notice on the Platform. Continued use after changes constitutes acceptance.
11. Contact
For privacy questions or data requests, contact us at technology@alliedhealthalliance.net.