Privacy policy
Plain language about what we collect, what we never collect, and the choices you have.
Effective September 14, 2026
PayClear Health, Inc. ("PayClear", "we") is a Delaware corporation. This policy covers payclear.health and the PayClear application. Questions about anything here reach a person at michael@payclear.health.
What we collect
Account information. Name, work email, and for physicians the National Provider Identifier (NPI) and professional identifiers such as ORCID. The NPI is already a public federal identifier.
Disclosure and engagement records. The product record: which company, what amount, what kind of payment, when. Much of this originates in the public CMS Open Payments file and other public federal registries; the rest is entered or confirmed by you.
Support messages and email. What you send us when you ask for help, and documents you forward to your PayClear ingestion address.
Technical data. Log and error telemetry needed to run and secure the service.
What we deliberately do not keep
Uploaded documents are not stored. When you upload or forward a document, it is parsed in memory and discarded. The extracted values you confirm are stored; the file is not.
Raw bank details are never stored.If you link a payout account, PayClear receives a tokenized reference and the last four digits, never your account or routing numbers. PayClear never holds money and never touches a physician's honorarium.
No patient data. PayClear holds no patient and no clinical data.
How we use information
To provide the service: building your payment record, generating the reports you ask for, sending the notifications you choose, and answering support. We do not sell personal information, and we do not use your data to advertise to you.
Document processing and AI
When a document you submit is read by an AI model to extract its terms, the text passes a redaction step first that strips Social Security numbers and bank account details, and the document itself is never persisted. Nothing enters your record without your confirmation.
Who processes data on our behalf
A short list of United States subprocessors runs the service: hosting and compute (Vercel), database and authentication (Supabase on AWS), document extraction (Anthropic, after redaction), email (Resend), identity verification and billing (Stripe), error telemetry (Sentry), and bank-account linking (Plaid). We use the United States regions of these providers. The current register is available on request.
Public data sources such as CMS Open Payments, NPPES, ClinicalTrials.gov, ORCID, NIH RePORTER, and SEC EDGAR are queried for public records. We send them lookups, not your data.
Security
Encryption in transit, per-person logins with multi-factor authentication, authorization enforced at the database layer and tested on every change, and an append-only audit log. A physician's records are not visible to any company or institution until the physician shares them.
Retention
A disclosure record is evidence that a legal duty was met, and duties around physician disclosures reach back years. We therefore keep disclosure records for an extended period rather than deleting them on a short clock, because a record that vanishes early is useless to the person it protects. Transient artifacts, such as ingested email content and error telemetry, are kept briefly and discarded.
Your choices
You can read and correct your own record in the product at any time. You can close your account and request deletion at the address above; records that a third party has already relied on may be retained where a legal duty requires it, with your identifiers severed where possible. You control what is shared: nothing in your record reaches an institution or a company until you share it.
Changes
When this policy changes we will update this page and its effective date. Material changes to how we handle your data will be announced to account holders by email.