Effective date: April 2026 | Controller: raresurgicalcases.com (operated by Suncoast Escapes SRL)
1. What data we collect
Account data: name, email address, profession — provided when you register.
Payment data: processed by Stripe. We do not store card numbers.
Usage data: pages visited, cases viewed — collected via standard web analytics.
Communications: emails you send us.
2. Why we use it
To provide your subscription, process payments, improve the platform, and communicate with you about your account.
3. Legal basis (GDPR)
Contract performance (subscription), legitimate interests (platform improvement), and your consent (marketing).
4. Data sharing
We share data only with service providers needed to operate the platform: Supabase (database, EU region), Stripe (payments), Vercel (hosting), Cloudflare (CDN). We do not sell your data.
5. Your rights
Access, correction, deletion, restriction, portability, and objection. Contact: [email protected]
6. Retention
Account data is kept while your account is active and for 2 years after closure. Payment records are retained per legal requirements.
7. Patient case data
All clinical case content has been de-identified before publication. We do not publish personal health information. See our Editorial & Patient Consent Policy and Medical Disclaimer.
Last updated: April 2026