← Back to app

Privacy Policy

Last updated: April 23, 2026

P28 Inventory Tracker ("the Service," "we," "us") is an inventory-management tool for medical device field representatives distributing Paragon 28 products. This policy describes what information we collect, how we use it, and your choices.

1. Information we collect

We collect only what is needed to operate the Service:

  • Google account information (name, email address, profile picture) when you sign in with Google. We use this to identify your account and display who is signed in.
  • Inventory data you enter — kits, serial numbers, locations, quantities, sterilization status, and similar operational information.
  • Usage and audit metadata — timestamped records of changes you make inside the Service (who changed what, and when), used for team accountability and troubleshooting.
  • Session cookies and local storage set by our authentication provider to keep you signed in.

We do not request, collect, or want any protected health information (PHI) or patient-identifiable medical data. You agree not to enter any such information into the Service.

2. How we use your information

Your information is used only to:

  • Provide the Service — authenticate you, show your inventory, synchronize across your devices, and share data with teammates you have invited.
  • Maintain security and integrity — detect and prevent abuse, unauthorized access, or misuse.
  • Communicate with you about the Service — for example, invites you initiate, account-related emails, or material changes to this policy.

We do not sell your information. We do not use it for advertising. We do not share it with third parties for their marketing.

3. Where your information is stored

Inventory and account data is stored in a PostgreSQL database hosted by Supabase (AWS US region). Web hosting and content delivery are provided by Cloudflare. Authentication is handled by Google (OAuth). Each of these providers has its own privacy practices, which we rely on to keep your data secure in transit and at rest.

4. Who can see your data

The Service enforces per-distributor data isolation. You can see only the kits and inventory belonging to distributorships you are a member of. Owners of a distributorship can see all members, all inventory, and all audit records for that distributorship. No other users — including users from other distributorships — have access to your data.

Service operators (Anthropic's Claude is not involved; the human maintainer of this Service) may access your data only as strictly necessary to diagnose outages or investigate suspected abuse.

5. How long we keep your information

We keep your account and inventory data as long as your account is active. If you or your distributorship owner remove you, your membership record is deleted immediately. Inventory data belonging to the distributorship remains with the distributorship. On request, we will delete your account and any data you personally contributed; contact us at the address below.

6. Your choices

  • Access and export. Contact us and we will provide a copy of the data associated with your account in a portable format.
  • Correction. You can correct any inventory data you have permission to edit directly within the Service.
  • Deletion. Contact us to request deletion of your account.
  • Revoking Google access. You can revoke this application's access to your Google account at any time from your Google Account permissions page.

7. Children

The Service is intended for professional use by adults (18+). We do not knowingly collect information from children.

8. Changes to this policy

If we make material changes to this policy, we will update the "Last updated" date above and, where appropriate, notify you by email. Continued use of the Service after changes take effect constitutes acceptance of the updated policy.

9. Contact

Questions or requests about this policy or your data: shoffman.eng@gmail.com.

Terms of Service  ·  Back to app