Skip to content

Privacy Policy

Last updated: August 9, 2026

This Privacy Policy explains how PathoDiff (“we”, “us”) collects, uses, and shares information when you use the PathoDiff service at pathodiff.com and related application pages.

Who we are

PathoDiff provides AI-assisted decision support for anatomical pathologists. For privacy questions, contact privacy@pathodiff.com.

Information we collect

  • Account data: email address and authentication credentials or one-time codes when you create or sign in to an account.
  • Case content: clinical and histological text you enter, and related analysis outputs, when you run analyses or save cases while signed in.
  • Guest usage identifiers: limited identifiers used to apply guest analysis limits when you use the service without an account.
  • Billing data: subscription and customer identifiers processed by Stripe when you purchase or manage a paid plan. We do not store full payment card numbers on PathoDiff servers.
  • Technical data: standard request metadata needed to operate, secure, and rate-limit the service (for example session cookies and similar browser storage used for authentication).

How we use information

  • Authenticate users and maintain sessions.
  • Run analyses and return differentials and related decision-support output.
  • Enforce usage limits and entitlements (guest, free, Pro, Team).
  • Provide billing, checkout, and customer portal features via Stripe.
  • Store saved cases for signed-in users who choose to keep them.
  • Respond to support or team-plan requests you submit.
  • Protect the service against abuse and maintain security.

PHI and de-identified use

PathoDiff is intended for professional decision support with de-identified case content. Do not enter protected health information (PHI) or direct identifiers. You are responsible for ensuring inputs comply with your institutional and legal obligations.

Processors and sharing

We use service providers to operate PathoDiff, including:

  • Supabase — authentication, database, and related infrastructure (including row-level security for user data).
  • Stripe — payment processing and subscription management.
  • Model provider (xAI) — case text you submit for analysis may be processed by the configured model provider to generate results.

We do not sell personal information. We may disclose information if required by law or to protect the rights, safety, or integrity of the service and its users.

Logging practices

We design the application to avoid logging case text, PHI, prompts, full model responses, tokens, or secrets. Operational logs are kept minimal and are not used as a product analytics platform.

Retention and deletion

Account and saved-case data are retained while your account remains active and as needed to provide the service, meet legal obligations, or resolve disputes. You may request account or data deletion by contacting privacy@pathodiff.com. Guest analyses are subject to rolling usage limits and are not offered as a long-term case archive.

Cookies and similar

We use cookies and similar technologies as needed for authentication and core session functionality. We do not currently operate a third-party product-analytics or advertising cookie stack on PathoDiff.

International processing

Our providers may process data in Australia and other countries where they operate. By using PathoDiff, you acknowledge that your information may be transferred to and processed in those locations subject to appropriate safeguards used by those providers.

Your choices

You may access or update account details through the product where available, manage billing through the Stripe customer portal when subscribed, and contact us to request deletion or ask privacy questions. Related terms of use are in our Terms of Service.

Changes

We may update this policy as the product evolves. The “Last updated” date at the top reflects the latest revision. Material changes will be reflected on this page.

Contact

Privacy inquiries: privacy@pathodiff.com. Website: https://pathodiff.com.