Last updated: May 2026

Privacy Policy

Your health data is deeply personal. This policy explains exactly what we collect, how we use it, and the controls you have over it.

The short version: We collect only what we need to operate AI Lab Result. We never sell your data. Your blood test results are encrypted and private. You can delete everything at any time.

1. Information we collect

We collect information you provide directly to us when you create an account (name, email address), upload blood test documents, and interact with our services. When you upload a PDF, we process it using Google Gemini AI to extract blood marker data. The extracted data is stored securely in our database. We also collect standard usage data such as log files, browser type, IP address, and pages visited.

2. How we use your information

We use the information we collect to: provide, maintain, and improve our services; process and display your blood test results; send transactional emails such as account confirmations and health reminders you have requested; respond to comments and questions; and monitor usage patterns to improve the user experience. We do not sell your personal or health data to third parties.

3. Data storage and security

Your data is stored on Supabase infrastructure with encryption at rest (AES-256) and in transit (TLS 1.3). Blood test PDFs are stored in private Supabase storage buckets — they are never publicly accessible. Access to your data requires authentication. We enforce row-level security policies so that users can only access their own data.

4. Third-party services

We use the following third-party services to operate AI Lab Result:

• Supabase — database and file storage (EU region) • Google Gemini AI — OCR and health insights processing • Stripe — payment processing (we never store card details) • Resend — transactional email delivery

Each of these services has its own privacy policy and data handling practices. Google Gemini processes your blood test images but does not retain them for training purposes under our enterprise agreement.

5. Your rights (GDPR)

If you are located in the European Economic Area, you have the right to: access the personal data we hold about you; request correction of inaccurate data; request deletion of your account and all associated data; object to or restrict processing of your data; and data portability (export of your data in machine-readable format). To exercise any of these rights, email us at privacy@ailabresult.com.

6. Data retention

We retain your account data for as long as your account is active. If you delete your account, we will delete all associated data within 30 days, except where we are required to retain it for legal purposes. Blood test PDFs are stored for the duration of your subscription and deleted within 30 days of account closure.

7. Cookies

We use strictly necessary cookies to maintain your authentication session. We use optional analytics cookies (which you can decline via the cookie banner) to understand how users interact with the service. We do not use advertising or tracking cookies. You can clear cookies at any time through your browser settings.

8. Children's privacy

AI Lab Result is not directed at children under 16 years of age. We do not knowingly collect personal information from children under 16. If we become aware that a child under 16 has provided us with personal information, we will delete it promptly.

9. Changes to this policy

We may update this Privacy Policy from time to time. We will notify you of any significant changes by email or by displaying a prominent notice on the service. The "last updated" date at the top of this page reflects when the policy was last revised.

10. Contact

If you have any questions about this Privacy Policy or how we handle your data, please contact us at:

AI Lab Result privacy@ailabresult.com