Privacy Policy

Last updated: December 20, 2025

1. Introduction

Perkily ("Company", "we", "us", or "our") operates AskFleming ("Service"), an AI-powered medical assistant. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our Service. We are committed to protecting your privacy and handling your data with care, especially health-related information.

2. Information We Collect

2.1 Information You Provide

  • Account Information: Email address, display name, profile image (if provided)
  • Health Information: Health context, medical conditions, medications, allergies, family history, lifestyle factors (optional, provided by you)
  • Chat Messages: Conversations, questions, and interactions with the AI assistant
  • API Keys: Third-party API keys you provide for "Bring Your Own Key" (BYOK) functionality (encrypted and stored securely)
  • User Preferences: Settings, model preferences, and application configurations
  • File Uploads: Documents, images, or other files you upload for analysis

2.2 Automatically Collected Information

  • Usage Data: How you interact with the Service, features used, time spent
  • Device Information: Browser type, device type, operating system, IP address
  • Log Data: Access times, pages viewed, error logs
  • Cookies and Tracking: We use cookies and similar technologies to enhance your experience

3. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve the Service
  • Process your requests and deliver AI-powered responses
  • Personalize your experience and provide relevant health information
  • Send you service-related communications
  • Monitor and analyze usage patterns to improve the Service
  • Detect, prevent, and address technical issues and security threats
  • Comply with legal obligations and enforce our Terms of Service
  • Protect the rights, property, or safety of Perkily, our users, or others

4. Data Anonymization and Third-Party AI Services

IMPORTANT: We take your privacy seriously, especially regarding health information.

  • Anonymization: Before sending your messages to third-party AI providers (such as OpenAI, Anthropic, Google, etc.), we automatically remove personally identifiable information (PII) and protected health information (PHI), including names, email addresses, phone numbers, medical record numbers, and other identifiers.
  • Third-Party AI Providers: Your anonymized messages may be processed by third-party AI services. These providers have their own privacy policies and terms of service.
  • No Health Data Sharing: We do not share your identifiable health information with third-party AI providers. Only anonymized, de-identified content is sent for processing.

5. Data Encryption and Security

We implement industry-standard security measures to protect your data:

  • Encryption at Rest: All sensitive data, including messages and health information, is encrypted using AES-256-GCM encryption before storage in our database.
  • Encryption in Transit: All data transmitted between your device and our servers is encrypted using HTTPS/TLS.
  • API Key Protection: Your API keys are encrypted before storage and never exposed in plain text.
  • Access Controls: We implement strict access controls and authentication mechanisms to prevent unauthorized access to your data.
  • Regular Security Audits: We conduct regular security assessments and updates to maintain the highest security standards.

6. Data Storage and Retention

  • Storage Location: Your data is stored on secure servers, which may be located in different geographic regions.
  • Retention Period: We retain your data for as long as necessary to provide the Service and comply with legal obligations. You can request deletion of your data at any time.
  • Account Deletion: When you delete your account, we will delete or anonymize your personal information, subject to legal retention requirements.

7. Information Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

  • Service Providers: We may share information with trusted third-party service providers who assist us in operating the Service (e.g., cloud hosting, analytics), subject to strict confidentiality agreements.
  • Legal Requirements: We may disclose information if required by law, court order, or government regulation.
  • Protection of Rights: We may disclose information to protect our rights, property, or safety, or that of our users or others.
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity.
  • With Your Consent: We may share information with your explicit consent.

8. Your Rights and Choices

You have the following rights regarding your personal information:

  • Access: You can access and review your personal information through your account settings.
  • Correction: You can update or correct your information at any time.
  • Deletion: You can request deletion of your account and associated data.
  • Data Portability: You can request a copy of your data in a portable format.
  • Opt-Out: You can opt out of certain data collection and processing activities.
  • Cookie Preferences: You can manage cookie preferences through your browser settings.

To exercise these rights, please contact us at support@perkily.io.

9. Children's Privacy

Our Service is not intended for children under the age of 18. We do not knowingly collect personal information from children under 18. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have data protection laws that differ from those in your country. We take appropriate measures to ensure your information receives adequate protection in accordance with this Privacy Policy.

11. HIPAA and Health Information

While we implement security measures and data protection practices, AskFleming is not a HIPAA-covered entity. However, we are committed to protecting your health information and implementing security measures that align with healthcare data protection best practices, including:

  • Encryption of health data at rest and in transit
  • Anonymization of data before transmission to third-party services
  • Access controls and authentication
  • Audit logging and monitoring
  • Data minimization and retention policies

12. Cookies and Tracking Technologies

We use cookies and similar tracking technologies to track activity on our Service and hold certain information. You can instruct your browser to refuse all cookies or to indicate when a cookie is being sent. However, if you do not accept cookies, you may not be able to use some portions of our Service.

13. Changes to This Privacy Policy

We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Last updated" date. You are advised to review this Privacy Policy periodically for any changes.

14. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us at:

Perkily
Email: support@perkily.io
Website: https://askfleming.perkily.io

Privacy Policy - AskFleming