Skip to content

Privacy

Not medical advice. MedSearch is a research and literature-organisation tool only. It does not provide medical advice, diagnosis, or treatment. Always rely on qualified clinical judgement and primary sources for patient care.

MedSearch is a tool for finding and organising medical research literature. This page describes what we store about you and which third-party services we rely on.

What we store about you

  • Account data. The email address and password hash you sign up with, managed via Supabase Auth.
  • Saved papers and collections. The metadata snapshot of any paper you save, the collection and section it belongs to, and your custom sort order.
  • Uploaded PDFs. If you attach a PDF to a saved paper, the file is stored in a private Supabase Storage bucket scoped to your user id.
  • Notes, highlights, and annotations. Paper-level notes, highlight bullets, and per-PDF annotations you create.
  • Search activity. Search queries are sent to PubMed/NCBI as part of executing the search; we do not maintain a long-term per-user search log beyond short-lived caches and server logs used for debugging and rate-limiting.

Services we rely on

  • Supabase — authentication, Postgres database, and PDF storage.
  • Vercel — application hosting and edge networking.
  • PubMed / NCBI E-utilities — primary medical literature index.
  • Crossref — DOI metadata enrichment.
  • Unpaywall — legal open-access PDF lookup.
  • Europe PMC — full-text and PMC links.

When you run a search, the query text is sent to the above APIs as needed. We do not share your account information with these services.

Access and deletion

You can request deletion of your account and all associated data at any time — see the Delete account page.

Contact

Questions about privacy: TODO_SUPPORT_EMAIL@example.com