Who I am
Seen. (seencare.org) is a symptom-tracking tool for people with complex, under-recognized invisible illness. It is built and run by one person, Nicole, in the United States. This policy covers the seencare.org website and the Seen. app.
Last updated July 27, 2026.
Your health record never reaches me
Everything you log in Seen. (your symptoms, medications, daily entries, profile, notes) is stored on your own device, in your browser's or the app's local storage. By default it is never sent to my servers: no cloud copy, no sync service, and no database of patient records anywhere. The one exception is opt-in and encrypted, and I still cannot read it (see Encrypted cloud backup, below).
This is the design, not a side effect. I cannot see your health data, I cannot sell it, I cannot lose it in a breach of my systems, and I cannot be compelled to produce what I do not have.
Because your record lives only on your device, backups are in your hands too. Seen. builds backup files and physician-ready PDF exports on your device, and they go only where you choose to send them. If you ask me to email you a backup or an export, that file passes through my email provider once, to be delivered to you, and is not stored by me afterward.
Encrypted cloud backup. If you turn on Encrypted cloud backup, an encrypted copy of your record is stored on my server so you can recover it on a new device. It is sealed on your device with a key only you hold, unlocked by your Face ID or a recovery phrase. I cannot open it, and I could not hand over anything readable if asked. It is off by default, and the copy on your device is always the record; the cloud backup is only a copy.
What I do hold, and why
Running a subscription requires holding a small amount of account information. All of it together:
- Your email address. Used to sign you in (a sign-in link or code, never a password) and to send the emails you ask for: backups, receipts through Stripe, and reminders you have turned on.
- Your subscription status. Stripe processes payments and holds your billing details; I never see or store your card number. What I hold is the subscription metadata Stripe reports: active, trialing, past due, or canceled.
- A session token. When you sign in, a token is stored on your device so the tracker tools unlock. It contains your email and subscription status. It contains none of your health data.
That is the complete list. There are no advertising trackers, no analytics scripts, no behavioral profiling, and no third-party cookies on seencare.org or in the app. The only cookie is the session token described above.
The services I rely on
Three companies process limited data on my behalf, each for one job:
- Stripe handles payments and billing. Your card details go to Stripe directly, under Stripe's privacy policy.
- Resend delivers transactional email: sign-in links and codes, receipts, and the backup or export files you ask to have emailed to you.
- Cloudflare hosts the website and the small sign-in service. Like any host, it processes IP addresses and request logs to serve pages and prevent abuse.
None of these companies receives your health record. I do not sell or share personal information with anyone, for any purpose.
Your choices and your rights
- Export anytime. Your record exports to a backup file or a PDF on your device whenever you want, subscribed or not.
- Erase your device's data. Sign out offers an erase option that removes everything Seen. stored on that device. I never delete your local data myself; it is yours.
- Delete your account. The Account page has a Delete my account control, on the web and in the app. It cancels your subscription immediately and deletes your account record, including your billing record at Stripe. Your on-device data stays untouched, because it was never mine to delete.
- Ask me anything. Questions, corrections, or a copy of what little I hold about you: email support@seencare.org and I will answer personally.
A note on HIPAA
HIPAA applies to "covered entities" like clinics, hospitals, and insurers, and to vendors handling records for them. Seen. is neither: it is a tool you use directly, and your data stays with you. The protection here is structural rather than regulatory. Your record is not on my servers, so the risks HIPAA regulates cannot arise from my side.
Children
Seen. is not directed at children under 13, and I do not knowingly collect personal information from them. If you believe a child has created an account, email me and I will delete it.
Changes to this policy
If this policy ever changes in a way that matters, I will say so plainly on this page and update the date at the top. The core commitment will not change: your health record stays on your device, period.