Little C ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our breast cancer care companion application and related services.
Last updated: September 18, 2026
When you create an account, we collect your name, email address, and date of birth. If you choose to sign in through a third-party provider (such as Google), we receive your name and email address from that provider.
To provide our core services, we collect health information that you voluntarily enter, including:
When you use the AI Navigator or other AI-powered features, we collect the content of your conversations, including questions you ask and the context provided to generate responses. This may include health data you have entered elsewhere in the app that is used to personalize AI responses.
We automatically collect certain technical information, including your device type, operating system, browser type, IP address, general location (city/region level), pages viewed, features used, and timestamps. This data helps us understand how the app is used and improve performance.
We use your information to operate Little C and deliver its core features, including symptom tracking, medication management, appointment preparation, emotional wellness tools, nutrition logging, and document translation.
Your health data and conversation content are used to power AI-driven features such as the Navigator (conversational assistant), symptom analysis and pattern detection, treatment tracking insights, and plain-language translation of medical documents. To generate these responses, your data is sent to third-party AI providers as described in Section 3.
We record operational information such as request timestamps, errors, AI usage, and performance to operate and improve the app. These records can include account identifiers and are not necessarily anonymous. The anonymous data sharing preference in Settings does not control this operational processing. We will not use identifiable health data for research without your consent.
We may use your email address to send service-related communications (such as security alerts or account changes). We will only send marketing or educational communications with your opt-in consent, and you can unsubscribe at any time.
Little C does not sell personal or health information. We disclose information to service providers to operate the app, to recipients through sharing features you use, and for the legal and safety reasons described below. These are distinct from selling data.
Important: To provide AI-powered features, your messages, attachments, document content, and relevant health context are sent to third-party AI providers for processing. This can include your name, diagnosis, treatment status, care team details, and health records used by the feature. Specifically:
Document analysis sends document text to both OpenAI and Anthropic. Data is not automatically anonymized; depending on the feature it can also include date of birth, menopausal status, ZIP code, and identifiers in submitted content. See the feature-by-feature data and storage inventory.
Published API training defaults: OpenAI and Anthropic state that API inputs and outputs are not used to train their models by default. Opt-ins or voluntary submissions such as provider feedback can change this. These published defaults do not verify Little C's account settings or agreements.
OpenAI retention: Its API documentation describes abuse-monitoring logs that may include prompts and responses, normally kept for up to 30 days, with longer retention for legal or safety reasons. The Responses API used by several Little C features also stores response data for at least 30 days by default. This is separate from abuse-monitoring logs. See OpenAI's API data controls.
Anthropic retention: Its standard API policy describes deletion of inputs and outputs within 30 days, with exceptions including legal obligations, policy enforcement, submitted feedback, and different agreements or services. Flagged content and related safety records can be kept longer. See Anthropic's retention policy and commercial-product training policy.
Little C's account-specific arrangements: We have not verified account-specific enterprise agreements, Data Processing Addenda (DPAs), Business Associate Agreements (BAAs), training opt-ins, or special retention settings for Little C. Published vendor policies are not confirmation of those arrangements. We do not promise zero retention or that providers use data only to generate a response. Deleting data in Little C does not itself delete provider-held copies.
Official vendor documentation reviewed September 18, 2026.
The Navigator AI setting applies to the Navigator on your device; it does not disable other AI features. Using those features still sends data for AI processing.
In the current web app, chat content, document analyses, symptom insights, and appeal drafts stay in page memory. Generated appointment questions and recipes are saved to your account; after-visit notes and action items are saved when you save the visit. Navigator actions you confirm can also save health records. We separately store AI usage and performance records, and ratings and comments you submit to Little C. That feedback is stored in our database; the feedback feature does not forward it to OpenAI or Anthropic. Error logs may include request or response details. These application records and provider-held copies have separate retention periods.
Your data is stored and processed through the following infrastructure providers:
Medical-term and clinical-trial searches send search terms and filters to National Cancer Institute and ClinicalTrials.gov services. Search terms may reflect health information.
We may disclose your information if required by law, regulation, legal process, or governmental request, or to protect the rights, safety, or property of Little C, our users, or the public.
Caregiver invitations and updates share information through the Guardian Portal. Anyone with a guest portal link can access the information available to that link. Community profiles, posts, and messages are visible to their audiences. Matching profiles can include health details, hospital, ZIP code, bio, and a display name that may default to your full name. Enabled public pages are accessible without signing in. Recipients may copy or redistribute information you share; deleting it in Little C does not recall their copies. If you export records or open an appointment in an external calendar service, information in that export or calendar link is shared with the destination you choose.
Your data is stored in a Supabase-hosted PostgreSQL database with row-level security (RLS) policies that restrict access to records. Sharing features and administrative services also access records to operate the app. These controls do not mean that only you can access your information.
Your browser stores a small set of interface preferences on your device — theme, text size, and notification settings. These are not encrypted, but they do not include health information.
Earlier versions of Little C stored some health data directly in browser storage. Little C now checks for this automatically every time the app loads, before you can use it: if any is found, it is never loaded into your account, and you must save a private backup or discard it before continuing.
People with access to your device or browser may be able to see locally stored information; you can also clear it yourself in your browser settings.
All data transmitted between your device and our servers is encrypted using TLS (Transport Layer Security). This includes data sent to third-party AI providers.
Little C is an independent, direct-to-consumer breast cancer companion. We do not claim HIPAA compliance or that your use of Little C is covered by a Business Associate Agreement (BAA). Little C is not your healthcare provider's patient portal.
| Cookie Type | Purpose | Required |
|---|---|---|
| Authentication | Supabase session cookies to keep you signed in securely | Yes |
| Preferences | Theme preference (light/dark mode), sidebar state, and other UI settings | No |
| Local storage | Browser storage for app data and saved preferences; operational logging is described in Section 2.3 | Used by app features |
We do not use third-party tracking cookies, advertising cookies, or social media tracking pixels. We do not participate in cross-site tracking or retargeting.
The cookie banner records your preference on this device. It does not disable service-provider processing or operational logging. You can control cookies and clear local storage through your browser settings. Disabling authentication cookies prevents signing in.
You have the following rights regarding your personal information:
You can view records in the app and download a JSON export of supported account and health records from Settings. The export does not include every category of information, such as operational logs. Contact us for information not included in the export.
You can request account deletion through Settings. Account deletion does not guarantee immediate removal of every record, backup, or copy held by service providers, and does not recall information shared with other people. See Section 10 for retention details and contact us about data that remains after deletion.
You can edit your profile information, health records, and other personal data directly in the app at any time. If you need assistance correcting data that is not directly editable, contact us at privacy@littlec.health.
You can export your data in JSON format through the Settings page. This includes supported saved health and profile records in a machine-readable format. Content held only in the current web page, such as the current Navigator chat, is not saved account history.
The anonymous data sharing and community visibility preferences in Settings are saved on your device. They do not change current service-provider processing or your community matching profile. Manage your matching profile in Community and caregiver roles in the Guardian Portal.
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):
To exercise these rights, contact us at privacy@littlec.health or use the data management tools in your account Settings. We will respond to verifiable consumer requests within 45 days.
Little C is not intended for use by children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected personal information from a child under 13, we will take steps to delete that information promptly. If you believe we have inadvertently collected information from a child under 13, please contact us at privacy@littlec.health.
Little C is available in the United States only. The service is operated from the United States. Where service providers store and process information depends on their services and account configuration; we do not promise that all processing stays within the United States.
Your use of the service is governed by United States federal and state data protection laws, including the California Consumer Privacy Act (CCPA) where applicable. See Section 7 for details on your California privacy rights.
We retain your personal and health information for as long as your account is active and as needed to provide you with our services. Retention considerations:
We may update this Privacy Policy from time to time. When we make material changes, we will notify you by email and/or by posting a prominent notice in the app at least 30 days before the changes take effect. We will update the "Last updated" date at the top of this page. We encourage you to review this policy periodically.
Your continued use of Little C after the effective date of a revised Privacy Policy constitutes your acceptance of the updated terms. If you do not agree with the changes, you may delete your account before the effective date.
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
We will respond to all privacy-related inquiries within 30 days.
We're committed to transparency. If anything in this policy is unclear, or if you want to exercise your data rights, we're here to help.