Data & privacy

Local by default. Stored only with permission.

The architecture separates browser inference from optional server storage. This page describes the intended behavior of the provided package; update the policy before public launch if you add analytics, accounts, or external services.

Browser inference

The pneumonia model and Lite sentiment demo run on the visitor’s device. Input is not sent to the server for prediction.

Optional archive

A separate checkbox is required before an image is sent to the optional Flask API for storage.

Research consent

Permission to store a file is separate from permission to consider it for research use.

Private storage

The included API stores images outside the public web root with generated UUID filenames.

Before going public

Replace this starter policy with your final legal/privacy wording. Define retention, deletion, access control, research governance, and a contact channel. Do not invite uploads containing patient identity, names, dates of birth, hospital identifiers, or visible record numbers.

Medical images may contain sensitive information. Public deployment should accept only de-identified JPG, PNG, or WebP images. DICOM requires a dedicated metadata-removal process and is not enabled in this package.