CaseLoggr

Privacy Policy

Last updated 19 August 2026

CaseLoggr is a private notebook for medical device sales representatives. This policy describes what it stores, where, and who can see it. It is written to be read rather than to be technically complete.

The short version

Everything you enter is yours and visible only to you. We do not sell it, we do not advertise against it, we do not share it with your employer, and we do not use it to train AI models. The only time your information leaves your account is when you deliberately share it with someone.

What we store

  • Your account: email address, and a password held only as a cryptographic hash.
  • Your profile: name, company, role, specialty, territory and years of experience, if you provide them.
  • What you record: facilities, contacts, products, cases and account visits, including any notes and photographs you add.
  • Usage needed to run the service: a count of documents you have imported, so we can apply fair limits.

Patient information

CaseLoggr is not a HIPAA-covered platform and must not be used to store patient information. Do not enter patient names, dates of birth, medical record numbers, diagnoses, or procedure details tied to an identifiable patient. When you import a document, it is checked and refused if it appears to contain patient information.

Where it is held

Data is stored with Supabase on infrastructure in the United States, encrypted in transit and at rest. Every record is protected by row-level security, enforced by the database itself, so one account cannot read another's data. Photographs are held in private storage and served through short-lived signed links.

Encrypted in transit and at rest is not the same as end-to-end encrypted, and we would rather say so than let you assume otherwise: we hold the keys, which is what makes a password reset possible. What that protects you against is someone getting at the disks or the network. What protects you from everyone else — your employer included — is that nobody has an account that can read yours.

When information leaves your account

  • Document import. If you photograph or upload a document to import it, that file is sent to Anthropic to be read, and the text is returned to you. It is processed for that request only and is not used to train models — ours or theirs. This is the only feature that sends anything you have written to another company, it happens only when you start an import, and it never includes your cases, contacts or notes: only the document you chose.
  • Coverage briefs. If you send a brief, the details you selected are placed on a page reachable by anyone holding the link. You choose field by field what is included; account numbers, contract and competitive information are excluded unless you turn them on. Briefs expire and can be revoked.

Nothing else is shared with anyone.

Search inside the app runs on your device against your own records. It makes no network request, it involves no AI provider, and nothing you type into it leaves the phone.

Deleting your account

You can delete your account from inside the app, in Settings or Profile. Deletion removes your records and your stored photographs. It cannot be undone, and we do not keep a copy.

Children

CaseLoggr is a professional tool and is not intended for anyone under 18.

Changes

If this policy changes materially, the date above changes and the app will tell you.

Contact

Questions about your data: get in touch.

HomeTermsSupport

© CaseLoggr