This privacy policy describes how Speaking Assist handles your information when you use our medical translation service.
Information We Collect
Speaking Assist is designed with privacy by design principles:
- Room Codes: We store only the room access codes provided to medical practices
- Session Data: Temporary session information stored in your browser only
- Usage Analytics: Aggregated, anonymized usage statistics for service improvement
- No Personal Data: We do not collect, store, or process any personal information, medical records, or conversation content
Data Minimization
We follow strict data minimization practices:
- No email addresses, names, or contact information collected
- No conversation transcripts or audio recordings stored
- All translation processing happens in real-time without storage
- Sessions are cleared when you close your browser
GDPR Compliance
As a service designed for UK medical practices, we comply with GDPR requirements:
- Lawful Basis: Legitimate interests for medical communication assistance
- Data Subject Rights: Since we don't store personal data, there's no personal data to access, rectify, or delete
- Data Protection by Design: Built with privacy as the default setting
- No International Transfers: All processing within the EU/UK region
Medical Data Handling
Special provisions for healthcare environments:
- No medical information is stored or logged
- Translations are processed in real-time and discarded immediately
- Each session is isolated and contains no persistent patient data
- Service designed to assist, not replace, professional medical interpretation
Security Measures
- End-to-end encryption for all communications
- Secure HTTPS/WSS connections required
- Regular security audits and monitoring
- Access controls for medical practice administrators
Cookies and Local Storage
We use minimal browser storage:
- Session Storage: Temporary room access codes (cleared on browser close)
- No Tracking Cookies: We do not use advertising or tracking cookies
- Essential Cookies Only: Required for service functionality
Third-Party Services
We work with carefully selected partners:
- LiveKit: Real-time communication infrastructure
- OpenAI: AI translation processing (no data retention)
- Railway: Hosting infrastructure (EU/UK based)
Contact Information
For privacy-related questions about this service, please contact your participating medical practice administrator.
Proof of Concept Notice
This service is currently with limited access. Privacy practices are designed for full compliance but may be updated based on evaluation feedback.