Privacy notice
What this is
This service takes a DWP decision letter and medical evidence that you upload, plus answers you give about a typical day, and produces draft letters for you to check and send yourself.
The data we handle
Medical evidence and what you tell us about your health is special category data under article 9 of the UK GDPR. We handle it only on your explicit request, to produce the documents you asked for, and only for as long as that takes.
The service runs in test mode: we ask you to black out your name, National Insurance number and address before uploading. National Insurance numbers are removed from the text on your own device before anything is sent to us, and again on our server.
What we store, and for how long
- The files you upload, in a private store: 30 days.
- The text we read from them, your answers and your drafts: 60 days.
- Your email address, if you give one: for the life of the case, then erased.
- Your IP address is not stored. Where we need to count abuse we store a one-way hash of it with a secret salt.
You can delete everything at any moment with the “delete” link in your email and on the results page. That is immediate and cannot be undone.
Who else sees it
- Cloudflare, Inc. (USA/EU) — hosting.
- Sendinblue SAS, 9-17 rue Salneuve, 75017 Paris, France (trading as Brevo) — sends the one email with your link.
- Supabase (EU) — the database and the private file store.
- OpenRouter, Inc. (USA) — reads your documents. Text from a PDF or Word file, and photographs of documents, are sent to a model through OpenRouter so that the dates and the points table can be pulled out of them. Nothing is sent that you have not uploaded, and National Insurance numbers are removed before anything leaves your device. Every request asks OpenRouter to use only providers that do not retain the data. That is what we ask for and what our code sends; it is not a promise we can make on their behalf.
- PostHog EU cloud (Germany) — counts of how the tool is used. No cookies, no profile, and never anything about your health or identity.
Where data is transferred outside the UK or the EEA, the basis is the standard contractual clauses.
Analytics
We count page views and which buttons are used. We set no cookies and store nothing on your device, we do not build a profile of you, and event properties carry only categories and numbers — never your name, your email, your address or anything about your condition. That is why there is no cookie banner: there is nothing to consent to.
Your rights
You can ask for a copy of your data, ask us to correct it, or delete it. The delete link does the last one instantly. You can complain to the Information Commissioner’s Office (ico.org.uk).
Who is responsible
Data controller: Armen Sarkisian, Komitas 57, 0032 Yerevan, Armenia.
Questions about your data: privacy@vitersoft.com.