UNID Personal
Privacy policy
This page explains how the UNID Personal portal handles data. The current Terms and the accepted version are managed separately.
Account and contact details
Firebase authenticates the account by email or phone. The portal asks for the complementary contact detail to recover and identify the same account, but it does not treat that detail as clinical information.
Health information
The card and index help locate authorized information. A card identity does not grant data access by itself: clinical operations require the profile, subject authorization and the applicable SMART and consent controls.
Contacts, relationships and permissions
A contact or RelatedPerson records a relationship but grants no clinical access. Invitations must be accepted, and each permission is evaluated for the exact actor, subject, purpose, section, resource and action through Consent, policy and SMART authorization.
Protection
The PIN is neither the sign-in password nor attached to one card: together with service protection it unlocks an authorized profile and its linked subjects. Profiles use PIN-plus-service envelope encryption; confidential documents use a fresh AES-256-GCM key whose key is protected for the profile with ML-KEM-768. The browser stores no PIN, private keys or tokens. The authorized process temporarily decrypts data in memory while the protected session is unlocked, so this is not a zero-knowledge service.
Online storage
Firebase retains account, acceptance and operational-state data in environment-separated collections. Confidential profiles, documents, communications and queues must be persisted encrypted and scoped to the exact owner and subject. Minimal lookup and audit metadata remains separate from content; pending status is not presented as confirmed integration.
Retention
Data is retained according to its purpose, environment and applicable policies. Pending work remains separate from confirmed information and is not presented as saved until the service confirms it.
Individual control
The individual can review the current Terms, manage permissions per card and request information or exercise applicable rights. Signing out does not automatically delete the account or authorized records.
For privacy questions or requests concerning your data, contact contact@unid.foundation