Privacy Policy
Last updated: August 12, 2026
1. What we collect
Account data (name, email, institution, country, role) that you provide at sign-up; identity-verification results from Stripe Identity for qTrace Compliance subscribers (qTrace never stores your ID document images — see Stripe's privacy policy); and the content of .qtrace sidecar files you choose to upload — analysis provenance metadata, never the underlying microscopy images.
2. How we use it
To operate your account, the validation registry, and the Cloud Workspace; to verify and anchor your certified identity; to bill qTrace Compliance subscriptions; and, only with your separate AI-training consent (see below), to improve qTrace's models.
3. AI-training consent
At sign-up, and adjustable at any time from account settings, you decide whether qTrace may use anonymized metadata from your .qtrace files — analysis steps, parameters, classifier structure — to train and improve qTrace's models. This never includes images, patient data, or information that could identify you or a patient. On the free plan, this consent is included as part of the free offering; a paid qTrace Compliance subscription lets you opt out. Withdrawing consent stops future use immediately; it does not retroactively affect models already trained.
4. Who we share it with
Sub-processors used to operate the Service: Clerk (authentication), Stripe (billing and identity verification), Supabase (database and file storage). We do not sell personal data. Anonymized, aggregated metadata used under an AI-training consent never leaves the boundaries described in Section 3.
5. Your rights
You can access, correct, or delete your account data, and withdraw AI-training consent, at any time from the qTrace portal, or by writing to privacy@qtrace.ca.