Privacy Policy
How The Medicine Check handles information.
Last updated August 11, 2026. This policy explains what the website collects, what it does not collect, and how subscriber, paid-tool, AI, and coaching information is handled.
Scope
This Privacy Policy applies to The Medicine Check website and related newsletter and coaching workflows. It does not replace the privacy policies of third-party services used for scheduling, payment, forms, analytics, email delivery, hosting, or document storage.
Information the site collects
Newsletter signup forms may collect your email address, optional name, a short signup-source label, consent timestamps and notice version, Age Well Brief preference, confirmation status, and welcome status. Delivery records may also include unsubscribe, bounce, complaint, and suppression status. The newsletter system is configured not to record opt-in IP addresses or individual open/click tracking. Server logs and hosting providers may still process routine technical information such as IP address, browser type, pages requested, and error logs to operate and secure the service.
Coaching workflows may collect information you choose to provide through third-party scheduling, payment, form, email, or document tools. Examples may include name, email, appointment details, payment status, intake responses, and documents you voluntarily submit.
Calculator and Planner Companion privacy
The calculators, including the paid Life Planner, are intended to run locally in your browser. Planner inputs and results are not intentionally sent to The Medicine Check or Stripe in the current browser-local path. The current newsletter endpoint does not intentionally receive calculator inputs, medication lists, health metrics, retirement assumptions, savings data, or Age Well Score results. Any separate email, save, or share flow must be clearly presented as an opt-in feature with its own data notice.
Annual members may choose to save dated Life Planner check-ins in browser storage. A saved check-in contains selected planning outputs and action items, not every form field. The current public release defaults to this browser-local path. Saved history is not automatically transmitted to The Medicine Check, Stripe, the newsletter provider, analytics, or the AI provider. It remains available only in that browser unless the member exports a JSON backup and imports it elsewhere. Clearing browser data or using a different device can remove or hide local history. Members can delete it from the workspace and should protect exported files because they contain derived financial-planning information.
When a member requests a PDF report, the selected allowlisted check-in summaries are sent to the protected application server to generate the file. The report endpoint does not store the submitted report payload. The downloaded PDF remains under the member's control and may contain derived financial-planning information.
When optional encrypted backup is available in the member workspace, a member must separately consent before selected check-in history is sent for cross-device continuity. Only allowlisted check-in summaries are encrypted by the application before storage; raw form fields are not copied into the member database. Members can continue locally, restore or combine histories explicitly, revoke sync, export the authorized history, delete the server copy, and request account deletion. The encryption key is stored separately from the database. If backup is unavailable, the browser-local path and JSON export remain available.
Member access may require an internal account identifier, an encrypted email address, Stripe customer and subscription references, entitlement status, and short-lived authentication/session metadata. Authentication tokens are stored as hashes. These records are used to provide access, recovery, entitlement checks, security, and support; they are not newsletter subscribers or analytics events. Stripe remains responsible for payment-card and billing records under its own policies.
Questions entered into the paid Planner Companion are sent to The Medicine Check's server and an AI service provider to generate a response. Do not include account numbers, Social Security numbers, payment-card details, passwords, medical records, exported plan files, or other sensitive personal information in a companion question. The companion is designed for definitions, form-completion guidance, and review preparation. It cannot see saved browser history or review a household's private records.
Health information
This site is educational and is not intended to be a medical record, patient portal, pharmacy system, or emergency communication channel. Do not submit urgent medical information through website forms. If future workflows collect consumer health information, The Medicine Check should handle it conservatively and avoid selling, sharing, or using it for targeted advertising.
How information is used
- To send newsletters or educational updates you requested.
- To respond to coaching, scheduling, intake, or service requests.
- To operate, secure, debug, and improve the website.
- To meet bookkeeping, tax, legal, fraud-prevention, or compliance obligations.
- To measure broad product operations with categorical events that exclude scores, answers, health information, financial amounts, free text, email addresses, and account identifiers.
Third-party services
The Medicine Check may use third-party providers for hosting, email newsletters, appointment scheduling, payment processing, artificial intelligence, forms, spreadsheets, cloud storage, bookkeeping, analytics, and security. Stripe processes paid-tool checkout and payment information under its own terms and privacy policy; The Medicine Check does not receive full payment-card details. Those services process information under their own terms and privacy policies.
The Age Well Brief uses a privately hosted Listmonk service and dedicated database on Render for subscriber management, with Resend for email delivery and delivery-event processing. Newsletter credentials are separate from member-access email credentials. Newsletter forms do not send full page referrers, URL query strings, calculator entries, planner records, or payment information to Listmonk or Resend.
Email and unsubscribe choices
New Age Well Brief subscribers must confirm by email before routine newsletter delivery. Newsletter emails include links to manage preferences or unsubscribe. An unsubscribe, hard bounce, complaint, or provider suppression prevents future campaign delivery unless a valid request is reviewed and the underlying suppression reason permits a change. Signed subscriber links may also provide data-export or deletion controls.
Data retention
Active newsletter records are retained while you are subscribed and as needed to operate the newsletter. Unsubscribe, bounce, complaint, and suppression records may be retained to honor your choice and prevent unwanted email. Expired authentication tokens and sessions are removed according to the service's cleanup process. Optional encrypted member snapshots are retained only while the approved member-storage policy permits and can be deleted through the member controls; the final retention period, backup retention, and recovery policy must be approved and published before that path is enabled. Coaching, payment, and bookkeeping records may need to be retained longer for business, tax, legal, or dispute-resolution reasons. Stripe and other providers may retain records under their own policies and legal obligations.
Security
The newsletter database and administrative service are not exposed directly to the public internet. Administrative access requires protected hosting-account access and separate Listmonk authentication. Credentials are kept in server-side secret storage, and the public signup and delivery-event endpoints use validation, rate limits, size limits, timeouts, and signed-webhook verification. No website or online service can guarantee absolute security.
Children
This website is intended for adults and is not directed to children under 13. Do not submit information about a child through the site unless a specific future workflow clearly asks for it and explains how it will be handled.
Changes
This policy may be updated as the website, hosting stack, newsletter platform, coaching workflows, or legal requirements change. The updated date at the top of the page shows when the policy was last revised.
Contact
Use the preference, unsubscribe, export, or deletion controls in a newsletter you received. You may also reply to a newsletter or use the contact method in a booking, coaching, or payment communication for a privacy request. Requests involving an email address may require verification that you control that address.