Privacy Policy
Last updated: April 12, 2026
1. Who we are
WhatsTheDx ("we", "us", or "our") operates the website at whatsthedx.com โ a daily clinical reasoning game for healthcare students and professionals. This policy explains what personal data we collect, why we collect it, and how it is used.
2. Data we collect
- Account data: email address and hashed password when you create an account.
- Game data: your guesses, session state, clues revealed, and game outcomes.
- Subscription data: billing status managed through Stripe. We do not store your full payment card details.
- Usage data: pages visited, time spent, and interactions collected via standard server logs and analytics.
3. How we use your data
- To operate your account and authenticate you securely.
- To save your game history and streak progress.
- To process subscription payments via Stripe.
- To improve the platform and fix bugs.
- To send transactional emails (account confirmation, password resets).
We do not sell your personal data to third parties.
4. Third-party services
We use the following services to operate the platform:
- Supabase โ database, authentication, and storage (servers in the US).
- Stripe โ payment processing. Stripe's privacy policy applies to payment data.
- Vercel โ hosting and CDN.
5. Data retention
We retain account and game data for as long as your account is active. If you delete your account, your personal data is removed within 30 days, except where we are required by law to retain it (e.g., billing records).
6. Your rights
Depending on your location you may have rights to:
- Access and export your personal data.
- Correct inaccurate data.
- Delete your account and associated data.
- Object to or restrict certain processing.
To exercise any of these rights, email us at contact@whatsthedx.com.
7. Cookies
We use only necessary cookies for authentication sessions. We do not use advertising or tracking cookies.
8. Children
WhatsTheDx is intended for healthcare students and professionals aged 18 and older. We do not knowingly collect data from children under 13.
9. Changes to this policy
We may update this policy from time to time. When we do, we will revise the "last updated" date at the top. Continued use of the service after changes constitutes acceptance of the updated policy.
10. Contact
Questions about this policy? contact@whatsthedx.com