Privacy Policy

Last updated: 9/2/2025

This privacy policy describes how Speaking Assist handles your information when you use our medical translation service.

Information We Collect

Speaking Assist is designed with privacy by design principles:

  • Room Codes: We store only the room access codes provided to medical practices
  • Session Data: Temporary session information stored in your browser only
  • Usage Analytics: Aggregated, anonymized usage statistics for service improvement
  • No Personal Data: We do not collect, store, or process any personal information, medical records, or conversation content

Data Minimization

We follow strict data minimization practices:

  • No email addresses, names, or contact information collected
  • No conversation transcripts or audio recordings stored
  • All translation processing happens in real-time without storage
  • Sessions are cleared when you close your browser

GDPR Compliance

As a service designed for UK medical practices, we comply with GDPR requirements:

  • Lawful Basis: Legitimate interests for medical communication assistance
  • Data Subject Rights: Since we don't store personal data, there's no personal data to access, rectify, or delete
  • Data Protection by Design: Built with privacy as the default setting
  • No International Transfers: All processing within the EU/UK region

Medical Data Handling

Special provisions for healthcare environments:

  • No medical information is stored or logged
  • Translations are processed in real-time and discarded immediately
  • Each session is isolated and contains no persistent patient data
  • Service designed to assist, not replace, professional medical interpretation

Security Measures

  • End-to-end encryption for all communications
  • Secure HTTPS/WSS connections required
  • Regular security audits and monitoring
  • Access controls for medical practice administrators

Cookies and Local Storage

We use minimal browser storage:

  • Session Storage: Temporary room access codes (cleared on browser close)
  • No Tracking Cookies: We do not use advertising or tracking cookies
  • Essential Cookies Only: Required for service functionality

Third-Party Services

We work with carefully selected partners:

  • LiveKit: Real-time communication infrastructure
  • OpenAI: AI translation processing (no data retention)
  • Railway: Hosting infrastructure (EU/UK based)

Contact Information

For privacy-related questions about this service, please contact your participating medical practice administrator.

Proof of Concept Notice

This service is currently with limited access. Privacy practices are designed for full compliance but may be updated based on evaluation feedback.