Privacy Policy
Last updated: 18 September 2026.
1. What Clinical Chronicle is
Clinical Chronicle is a private reading log for doctors. It lets you save clinical webpages, generate summaries, add reflections and CPD hours, and export a portfolio-ready PDF. The service is hosted on Lovable Cloud infrastructure.
2. What data we collect
We collect only the data needed to run the service:
- Account data: email address, and optionally your full name, role/grade, and GMC number if you enter them for your exported PDF.
- Reading entries: URLs you save, the extracted page text, AI-generated summaries, key points, tags, your personal reflections, CPD hours, and the date you visited the page.
- Extension token: if you use the browser extension, a hashed token is stored so the extension can save pages to your account. The plain token is shown only once and is not stored readable.
- Technical data: standard server logs generated by the hosting platform for reliability and security, and an authentication session cookie/localStorage entry to keep you signed in.
3. How we use your data
- To authenticate you and keep your log private.
- To fetch and summarise webpages you choose to save.
- To store your entries, reflections, and CPD hours.
- To generate the PDF export you request.
- To keep the service secure and fix errors.
4. AI processing
Page text is sent to the Lovable AI gateway, which currently uses Google's Gemini model, to produce a title, summary, key points, specialty tags, and a suggested CPD time estimate. The model does not retain your data between requests; it processes the text only to return the summary.
5. Who we share data with
We do not sell your data. It is stored and processed by Lovable Cloud (the backend, authentication, and database hosting platform). No other third parties receive your clinical reading entries or personal details.
6. Cookies and local storage
We use a session cookie/localStorage entry to keep you signed in, and a local offline cache so your entries remain viewable when you do not have an internet connection. These are first-party only and essential to the service.
7. How long we keep your data
Your entries and profile are kept for as long as your account exists. If you delete your account, your personal data and reading entries are deleted immediately. You can also delete individual entries from your dashboard at any time.
8. Your rights
Under UK data protection law you have the right to access, correct, or delete your personal data. The easiest way is through the app: you can edit your profile and delete entries directly. For account deletion or other requests, email us.
9. Security
The app requires login for all personal data. Your entries are separated from other users by row-level security in the database. Extension tokens are stored as hashes. No system is completely secure, and we rely on the platform provider for infrastructure security.
10. Your responsibility
You control what pages you save and what you paste or type into the app. Do not save or share patient-identifiable information, confidential clinical details, or any content you are not entitled to record.
11. Changes to this policy
We may update this policy as the service changes. The latest version will always be available at this page with the updated date at the top.
12. Contact us
For privacy questions, deletion requests, or to exercise your data rights, please email: