Privacy policy
Effective date: July 2026
Operated by: Emily Winslager, doing business as "Lantern Chart" ("Lantern Chart," "we," "us," or "our")
Contact: lanternchart@gmail.com
This Privacy Policy explains what we collect, how we use it, and the choices you have. By using Lantern Chart (the "Service"), you agree to this Policy.
1. The short version
We collect the minimum needed to run the Service: your account information, billing details if you subscribe, and any non-identifying patient records you choose to save. The Service is not intended to receive protected health information (PHI) — please leave out anything that identifies a patient (names, dates of birth, record numbers, etc.) and use initials or a number. Drafts you don't save are processed to generate your output and are not retained; patient records you choose to save are stored securely, tied to your account, until you delete them.
2. Information we collect
Account information: your email address, an optional first name, and your password (stored in hashed form by our authentication provider — we never see your actual password).
Billing information (if you subscribe): handled by Stripe; we receive limited details such as a customer ID and subscription status, and do not store your full card number.
Content you enter or dictate: the text you type and the audio you dictate to generate a draft, which is processed to create your output (see Section 4).
Saved patient records (optional): if you choose to save a patient, we store the non-identifying label you enter (such as initials or a number) and the notes and key values (for example PPS, FAST, weight, dates, visit type) you save under it — these must not contain identifying information.
Usage and technical data: basic analytics (which features are used, pages visited, general device/browser information) to improve the Service.
3. No identifying patient information
We do not intend to collect, and ask that you do not enter, any protected health information (PHI) or patient-identifying information anywhere in the Service — including in saved patient records. Saved records should contain only non-identifying data (initials or a number, clinical values, and dates). The Service is not a HIPAA-compliant system; please do not enter information that identifies a patient.
4. How AI drafting and voice transcription work
When you dictate, your audio is sent to a third-party transcription provider to convert it to text. When you generate a draft, your text is sent to a third-party AI provider that produces the draft, which is returned to you. This processing is required for the Service to function. Because this content leaves your device to be processed, it is essential that you never enter information that identifies a patient.
5. How we use information
We use the information we collect to provide and operate the Service, create and authenticate your account, save and display the patient records you choose to keep, process subscriptions and billing, respond to support requests, understand usage and improve the product, and comply with legal obligations. We do not sell your personal information.
6. Service providers we share with
We share limited information with vendors that help us run the Service, only as needed: hosting/backend and authentication (to run the app and store your account and saved records); payment processing (Stripe); voice transcription (to convert your dictation to text); AI provider (to generate your drafts); and analytics (to measure and improve usage). These providers may use the information only to provide their services to us.
7. Cookies and local storage
We use cookies and browser local storage to keep you signed in, remember preferences, and measure usage. You can control cookies through your browser settings.
8. Data retention
We keep your account information and any patient records you save for as long as your account is active or until you delete them. Drafts you don't save are not retained beyond processing your request. You can delete individual saved patient records, or your entire account, at any time.
9. Security
We use reasonable technical and organizational measures to protect the information we hold, including encryption in transit, encryption of saved records at rest, and hashed passwords. No system is perfectly secure, and we cannot guarantee absolute security — another reason not to enter information that identifies a patient.
10. Your choices and rights
You can access, update, or delete your saved patient records and your account information in the app at any time. Depending on where you live, you may have additional rights (such as to access or delete personal data); contact us at lanternchart@gmail.com to make a request.
11. Children
The Service is intended for professional adult users and is not directed to anyone under 18. We do not knowingly collect information from children.
12. Changes to this Policy
We may update this Policy. If we make material changes, we will notify you in the app or by email. The "Effective date" above shows when it was last updated.
13. Contact
Questions about this Policy or your data: lanternchart@gmail.com.