Alberta Ethics Navigator

Privacy Policy

Effective March 1, 2026

1. Overview

Alberta Ethics Navigator (“we,” “our,” or “the Service”) is committed to protecting your privacy. This policy describes what information we collect, how it is used, and the choices you have. We comply with the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable Alberta privacy legislation.

2. What We Collect

Account information

When you sign in with Google, we receive your name, email address, and profile photo. This is stored in our secure database solely to identify your account and manage your subscription.

Subscription and billing information

Payments are handled entirely by Stripe. We do not store your credit card number or banking details. We retain a Stripe customer identifier and subscription status to verify your access and manage your plan.

What we explicitly do not collect

Consultation content is not stored. The questions you ask and the responses you receive exist only in your browser session. When you close or refresh the tab, that conversation is gone. We have no access to the content of your consultations.

We do not collect client information, clinical records, or any identifying information about third parties.

3. How We Use Your Information

We use the information we collect only to:

  • Authenticate your identity and maintain your session
  • Verify your subscription status and grant access to the Service
  • Process billing and communicate subscription changes
  • Respond to support requests you initiate

We do not use your information for advertising, profiling, or any purpose beyond operating and supporting the Service.

4. Third-Party Services

The Service relies on the following trusted third-party providers, each with their own privacy policies:

Google (Authentication)

Used for sign-in. Google may log authentication events per their own privacy policy. We only receive name, email, and profile photo.

Stripe (Payments)

Handles all payment processing. Stripe stores and processes your card details under their own PCI-DSS compliant infrastructure.

Supabase (Database)

Stores account and subscription records. Data is encrypted at rest and in transit.

Anthropic (AI Responses)

Powers the AI assistant. Your consultation queries are sent to Anthropic's API to generate responses. We do not store these queries, but Anthropic may process them per their own usage policies. We recommend you do not include identifying client information in your queries.

5. Data Retention

We retain your account and subscription records for as long as your account is active or as required to manage billing and resolve disputes. Consultation content is never stored and is therefore not subject to retention.

You may request deletion of your account and associated data by contacting us. We will fulfill deletion requests within 30 days, except where retention is required by law.

6. Security

We implement industry-standard security measures including encrypted connections (TLS), encrypted data storage, and access controls. No method of transmission or storage is 100% secure. We encourage you to exercise caution regarding what information you include in any online tool.

7. Your Rights

You have the right to access, correct, or request deletion of personal information we hold about you. To exercise these rights, contact us at the address below. We will respond within a reasonable timeframe and in accordance with applicable law.

8. Changes to This Policy

We may update this Privacy Policy from time to time. We will post the revised policy with an updated effective date. Continued use of the Service after changes are posted constitutes your acceptance of the updated policy.

9. Contact

For privacy inquiries, data access requests, or concerns, please contact us through the Google account associated with your subscription.