Preview: this environment is not live yet. Do not rely on it — your data may be reset or not kept permanently.
← Back

Privacy Policy for Pawfile

Last updated: August 5, 2026

This Privacy Policy explains how Pawfile ("we", "us"), operated by Daniel Baez (baezdaniel.cl), collects, uses and protects your data when you use our website at https://www.pawfile.ai (the "Service"). We process personal information in line with applicable United States privacy laws. If you are a consumer elsewhere (for example Chile or the EEA), mandatory local protections may also apply.

1. Where we store data

Pawfile is hosted in the United States (application hosting, managed PostgreSQL database, and document storage). Your data is processed by the service providers listed in section 5, which are also primarily based in the United States. We do not claim EU data residency.

2. Data we collect

  • Account data: name, email, profile picture (if provided by your OAuth provider).
  • Pet data: name, species, breed, date of birth, microchip number, photos and any other detail you choose to record.
  • Documents: emails forwarded to your dedicated pet inbox and files you upload directly (PDFs, images, text).
  • Extracted health events: structured data produced by our AI pipeline (vaccines, weights, treatments...).
  • Billing data: Stripe customer ID, subscription status. We do not store credit-card numbers; payments are processed by Stripe.
  • Technical data: IP address, browser type, error logs, AI usage counters, used for security and to operate the Service.
  • Optional integrations: if you connect Google Calendar, we store a refresh token to sync your pending reminders to your calendar. You can disconnect anytime in Settings.

3. How we use your data

  • Operate the Service: store and display your pet records, run AI extraction on your documents, send reminders.
  • Process payments and manage your subscription.
  • Send transactional emails (magic link, billing receipts, reminders, contact form replies).
  • Detect abuse, debug errors and improve quality (we monitor extraction accuracy and error rates).

We do not use your pet documents to train AI models. We only send the minimum content needed to extract the requested information to our AI provider, under a no-training / zero-data-retention configuration (see Service providers below).

We do not sell your personal data. We share data only with the processors needed to run Pawfile, under their terms and our instructions.

4. Why we process your data

  • To provide the Service: storing pet records and running extraction is necessary to deliver the product you signed up for.
  • Legal and tax requirements: we keep billing records as required by applicable law.
  • Security and reliability: fraud prevention, abuse detection, and keeping the Service stable.

5. Service providers

We use the following providers under their standard service terms and security practices:

  • Vercel (United States) — application hosting.
  • PostgreSQL (managed database in the United States, e.g. Neon) — primary data store.
  • Amazon S3 (United States region) — encrypted document storage.
  • Stripe (United States) — payment processing.
  • Mailgun (United States) — inbound email forwarding.
  • Resend (United States) — transactional email delivery.
  • OpenAI (United States) — AI extraction. Configured with the OpenAI API zero-data-retention business policy: prompts and responses are not stored beyond processing and are not used to train models.
  • Google (United States) — optional Sign in with Google and optional Google Calendar reminder sync (only if you connect it).
  • Sentry (United States) — error monitoring (technical diagnostics; may include limited request context).
  • Google Analytics (United States) — website usage analytics, loaded only after you accept analytics cookies in our consent banner.

6. Cookies and analytics

We use a cookie consent banner before loading Google Analytics. Analytics cookies are optional: if you decline, we do not load Google Analytics on your browser. Your choice is stored for up to 12 months and can be changed anytime via "Cookie settings" in the site footer.

Essential cookies (for example your sign-in session) are required to operate the Service and are not used for advertising.

7. Data retention

  • Your data is kept for as long as your account is active. Canceling a subscription revokes access but does not delete your pet records. You can resume later.
  • When you delete your account, deletion begins immediately. All pet data, documents, reminders and files are permanently removed from our database and S3 storage within 30 days.
  • Anonymized billing records may be kept for up to 10 years for accounting compliance.
  • Aggregated, non-identifying usage statistics may be kept indefinitely.

8. Your choices

You can:

  • Access or download your data — use the export feature on the pet edit page or request a full export by email.
  • Correct inaccurate data — edit it directly in the app.
  • Delete your data — use the "Delete my account" button in Settings.
  • Download a copy — ZIP of all data per pet from the app.
  • Manage analytics cookies — use "Cookie settings" in the footer to accept or decline Google Analytics.
  • Disconnect Google Calendar — from Settings, if you previously connected it.
  • Contact us — for questions about your information or additional choices that may apply where you live, use the email in section 12 below or the in-app contact form.

9. Children

Pawfile is not intended for users under 16. We do not knowingly collect personal data from children.

10. Security

All data is transferred over HTTPS. Documents are encrypted at rest in S3 (AES-256). Database credentials, API keys and webhook secrets are stored as environment variables and rotated when necessary.

11. Changes

We may update this Privacy Policy. We will notify you by email of any material change.

12. Found-pet portal (microchip alerts)

If you mark your pet as lost, its microchip number may be used to match anonymous "found pet" alerts submitted on our public portal. The number is not searchable by default: capturing or saving a chip only stores it on the pet's profile. We do not expose your name, email, phone, address, or health records to finders. Finders provide a short message (max 500 characters), an email address (required so you can reply), an optional phone number, and an approximate area. That information is stored on your pet's alert inbox, emailed to your account address, and can be closed by you at any time. We rate-limit submissions and enforce a 24-hour blackout between delivered alerts. Closed alerts may be purged after a retention period (typically 90 days). This community feature is not an official microchip registry.

13. Contact

For any privacy-related question or to exercise your rights, email support@pawfile.ai or use the contact form on the site.