Privacy Policy

Last updated: September 9, 2026

This Privacy Policy describes how TravelNurse Rate ("we", "us") collects, uses, and discloses your information when you use the TravelNurse Rate web application.

1. What we collect

  • Information you provide: nurse profile, contract details, and analysis inputs you enter into the app.
  • Account information (Pro only): a unique user identifier from Firebase Authentication, created when you upgrade so that your subscription has something to attach to. Upgrading does not require an account — if you choose not to add one, that identifier is all we hold and it stays in your browser. If you do add an email address, we also store it along with the authentication provider you used (Google, Apple, or email link).
  • Subscription information (Pro only): a Stripe customer identifier and subscription status. We do not store your credit-card numbers — Stripe processes and stores them directly.
  • Contract photos (Pro only): if you use contract scanning, the photo of the offer you upload is held only while the scan runs — it is sent to an AI model to be read, and deleted as soon as that model has read it. We do not keep it. The record of what the scan extracted is then deleted automatically as well, typically within a day or two.
  • Usage analytics: anonymous metrics about how the app is used — page views and feature interactions such as analyses run, onboarding progress, and Pro upgrades — collected through PostHog to help us improve the product. Your IP address is discarded and no cookies are set. Only the specific interactions listed above are recorded — nothing is captured automatically from the pages you view, and the figures you enter are never sent.
  • So that we can tell how many people use the app rather than only how many visits it receives, PostHog keeps an anonymous profile against a random identifier stored in your browser. That profile holds only your browser and device type, an approximate location, and how you first reached the site (for example, which link or campaign referred you). It is never linked to your name, email address, or account, and signing in for Pro does not connect your account to it. Clearing your browser storage discards the identifier and starts a new, unconnected profile.
  • Error diagnostics: anonymous crash and error reports collected through Sentry. When an error occurs, Sentry records a replay of that session to help us reproduce the bug, with all text, form inputs, and images masked and without your IP address.

2. How we store and process it

  • If you do not create an account, the contracts and profile details you enter are stored only in your browser via localStorage and never leave your device — apart from the anonymous usage analytics and error diagnostics described above.
  • If you upgrade to Pro, your saved contracts are synced to Google Cloud Firestore so you can access them on other devices. Where you upgraded without adding an email address, that synced copy is reachable only from the browser you upgraded in.
  • Payment processing is handled by Stripe, Inc., subject to Stripe’s privacy policy.
  • Authentication is handled by Google Firebase Authentication, subject to Google’s privacy policy.
  • Cost-of-living estimates (Pro): to estimate what housing costs in a contract’s location, we send that contract’s city and state — and nothing else — to Apify, which collects prices from public furnished-rental listings for that city. No figures from your contract, no account identifier, and no personal details are included. What comes back are city-level averages, which we cache and reuse for anyone who looks up the same city.
  • AI features (Pro): AI insights sends the contract details you entered, and contract scanning sends the photo you uploaded, to OpenRouter, which passes the request to the model that answers it — Anthropic for insights, Google for scanning. These requests carry no account identifier, email address, or payment information. We require OpenRouter to route them only to providers that do not retain the request beyond answering it and do not train on it; providers that would are excluded from handling them. They remain subject to the privacy policies of OpenRouter and of the provider that answers them.

3. Sharing and disclosure

  • We do not sell your personal information.
  • We share information with subprocessors that operate the service: Google Cloud / Firebase for hosting and authentication, PostHog for usage analytics, Sentry for error monitoring, and Stripe for payments.
  • Two Pro features involve further subprocessors, and only when you use them: Apify, for the public rental-listing prices behind cost-of-living estimates; and OpenRouter, which routes AI requests to the model that answers them — Anthropic for AI insights, Google for contract scanning.
  • We may disclose information if required by law or to enforce our Terms.

4. Your choices

  • You can delete your account by signing out and contacting us at marc@digimarktech.com.
  • If you upgraded without adding an email address, you can add one at any time from your account page, or leave it as it is — Pro works either way.
  • You can clear all locally-stored data using your browser’s clear-site-data option, or by resetting the app from your profile.
  • Our usage analytics and error diagnostics are anonymous; you can additionally block them with your browser’s privacy settings or an analytics-blocking extension.
  • You can cancel your Pro subscription at any time via the Stripe Customer Portal accessible from your account page.

5. Children

  • The service is intended for adults 18+. We do not knowingly collect information from children.

6. Changes

  • We may update this policy. We will note the new "Last updated" date at the top of this page.

7. Contact

  • Questions or requests: marc@digimarktech.com.