Privacy Policy
Last updated: May 2026
The short version
How your data is handled depends on how you access OncoMatch:
- Web app (oncomatch.org): your health profile is processed in your browser and never sent to our servers.
- ChatGPT app: your queries are sent to our API to retrieve matching trials, but we do not store them.
We do not create user accounts, profiles, or persistent identifiers. We do not sell data.
Web app — what we collect
Patient profile — browser only
Your patient profile (cancer type, biomarkers, ECOG, stage, prior therapy, and all other eligibility details) lives only in your browser. The matching engine runs locally in your browser tab. We never receive or store this information, and it is cleared when you close or navigate away from the page.
Extraction feedback (optional)
If you click a thumbs-up or thumbs-down on a trial's extracted criteria, or use the "Flag issue" button, we store:
- The trial's public NCT ID
- Which field you rated (e.g., biomarkers, stage)
- Your verdict (correct / incorrect)
- An optional free-text note, if you choose to write one
We do not intentionally associate feedback with identifying information — no user account, session ID, or profile is linked to it. Our hosting infrastructure (Vercel, Supabase) may retain server-level logs including IP addresses as part of standard operations; we do not use these logs to identify feedback submitters.
Anonymous feedback is retained to improve system performance and extraction accuracy.
Please do not include personal health information in feedback notes. Feedback notes are reviewed by the OncoMatch team and are not suitable for sharing protected health information.
Saved trials
If you bookmark trials using the save button, that list is stored in your browser's local storage only. It never leaves your device.
Page analytics
We use Vercel Analytics, which records anonymous page view events. No personally identifiable information is collected. See Vercel's privacy policy.
ChatGPT app — what we collect
When you use OncoMatch through the ChatGPT app, your queries — including cancer type, biomarkers, and clinical profile details — are sent from OpenAI's servers to our API. We use this information only to retrieve matching trials and return results. We do not store, log, or retain these queries on our side.
Data is transmitted over secure HTTPS connections. OpenAI processes the data you submit through ChatGPT according to their own policies. We do not control how OpenAI processes or retains data once it is submitted through ChatGPT. See OpenAI's privacy policy.
Third-party services
- Supabase — hosts our trial database and stores anonymous feedback. Data is stored in the US.
- Vercel — hosts the OncoMatch application and collects anonymous analytics. Standard server logs may include IP addresses.
- OpenAI — processes queries when you use the ChatGPT app. Subject to OpenAI's privacy policy.
Children
OncoMatch is not directed at children under 13. We do not knowingly collect information from children.
Medical disclaimer
OncoMatch is a trial discovery tool, not a medical device or clinical decision support system. It does not provide medical advice, diagnose conditions, or determine eligibility for any trial. Always discuss trial options with your oncologist before contacting a study site.
Contact
Questions about this policy: info@oncomatch.org