# HearMeDoc Privacy Policy **Effective date:** 2026-05-23 (initial release). Updated 2026-09-29 (hosting and logs, browser storage list, contact address). **Operator:** Honeycutt AI Labs LLC, Princeton, TX, USA **Product:** HearMeDoc, a private, encrypted, patient-side medical vault at `hearmedoc.com` and any future native-app distribution of the same software. ## The short version **We never receive your vault contents.** HearMeDoc runs in your browser. Everything you put into your vault stays on your device, encrypted with a key derived from a passphrase only you know. No copy is sent to us, to any cloud, or to any third party. There is no account to sign up for. There is no analytics. There is no telemetry. Website connection information and email correspondence are described below. ## What we store, and where | Where | What | Encrypted? | |---|---|---| | Your browser's IndexedDB (on your device) | Your medical-record entries, profile, conditions, medications, allergies, lab results, symptoms, timeline events, appointments, providers, complaints, intake-staging | Yes, every record is AES-256-GCM encrypted with an HMAC envelope | | Your browser's localStorage (on your device) | A salt, a verification envelope, your preference settings, the date of your last backup, the Pro-unlock flag, never any PHI | The salt is not secret; the verification envelope is encrypted; settings are not secret; no PHI | | Your browser's sessionStorage (on your device) | A counter of failed passphrase attempts and the time of the next allowed attempt, cleared when the tab closes or the vault unlocks | No; no PHI | | Your browser's cache (on your device) | The app's own files, kept by the service worker so the app opens offline | No; no PHI | | Honeycutt Ai Labs servers | No vault contents. Connection information and email correspondence are described below. | N/A | ## What our server does `hearmedoc.com` (and `mymedlock.com`, which redirects to it) serves the application code (HTML, JavaScript, CSS, fonts, bundled public data) over HTTPS. The server is nginx on a Honeycutt Ai Labs server hosted on Amazon Web Services. The web server is configured with its access log turned off for this site, so page requests are not written to an access log. The server's error log and the hosting provider's network infrastructure can still record connection information such as an IP address, as with any website. None of it can contain your medical data, because your medical data is never sent. ## What we don't do - We don't use analytics: no Google Analytics, Plausible, Fathom, PostHog, Sentry, Mixpanel, or anything equivalent. - We don't set cookies. The site sets none, and the app never reads or writes one. It uses browser storage (IndexedDB, localStorage, sessionStorage and the app cache) **only** to hold your encrypted vault and its settings on your own device. - We don't fingerprint your browser or device. - We never receive your vault contents, so we cannot sell, rent, lease, or share them. - We don't have an account system, an email collection form, or a newsletter. ## What you control - Your passphrase: only you know it. We can't reset it. We can't recover your data if you lose it. - Your data: every record can be edited or deleted directly from the app. - Your backup: you can export an encrypted `.vault` file at any time and keep it wherever you like. You can also export a plain-JSON file if you accept the risk (an explicit warning fires before that download). - Vault destroy: a single "Destroy Vault" button wipes IndexedDB, localStorage, caches, and the service worker registration on your device. Browser-level storage erasure cannot guarantee disk-level erasure on SSDs with wear-leveling, if that matters for your threat model, also run your OS's secure-erase tools. ## When you contact us If you click **Request a feature** in the app, your browser's email client opens with a message you typed. **No data from your vault is included.** When you send the message, it goes through your own mail provider (Gmail, iCloud, whatever you use) to `hello@honeycuttailabs.com`, a normal email account read by humans. You can also reach us there directly. ## When you pay HearMeDoc v1 has no paid features. There is no payment flow to disclose. If we add an optional supporter unlock later, this section will be updated. ## Children HearMeDoc is not directed at children under 13. Parents who want to track a child's care should use their own vault and add the child as a person in the vault profile, not give the child their own vault account (there are no accounts). ## Regulatory posture HearMeDoc stores Protected Health Information (PHI) **on your own device**. Honeycutt AI Labs is **not** a HIPAA-covered entity and **not** a business associate, because no PHI is transmitted to, received by, maintained by, or stored by us. We build to HIPAA Security Rule standards as a design principle (encryption, access control, integrity controls, audit controls), not because we are legally required to, but because the data deserves it. Keeping vault contents on your device does not by itself determine which privacy laws apply. Website connection information and email correspondence are separate from your vault. For a request concerning information you have sent us, contact `hello@honeycuttailabs.com`. ## Changes If this policy changes, the **Effective date** at the top will change. Material changes will be announced on the home page of `hearmedoc.com` with at least 30 days notice. ## Contact Honeycutt Ai Labs LLC, Princeton, TX, USA. Reach us through the **Request a feature** flow in the app, or directly at `hello@honeycuttailabs.com`. --- *Pending review by a licensed attorney. This document is the operator's plain-English description of the product's privacy posture, not legal advice.*