Skip to content

Legal

Privacy Policy

How ORTHONOVA collects, uses, and protects your information.

Last updated: July 2026

Your learning activity is private to your account

Saved procedures, progress, and planned cases are visible only to you. Community posts are visible to other members of this instance.

1. Information We Collect

Account details you provide at registration (name, professional email, mobile number, professional role, and institution), and activity generated as you use the platform — procedures saved, progress recorded, planned cases, assessment attempts, and questions or answers you post.

2. How We Use Information

To operate your account, record your learning progress, issue completion certificates and CME credit, verify professional credentials where required, and maintain the safety and integrity of community discussion. We do not sell personal information, and we do not use your content to train models.

3. Self-Hosted Deployments

This platform is self-hosted. Your data resides in infrastructure operated by the institution running this instance — its database, object storage, and search index. Retention, backup, and access policies are set by that institution's administrators, not by ORTHONOVA.

4. Sharing and Visibility

Saved procedures, progress, and planned cases are private to your account. Questions, answers, and poll responses you post are visible to other members of this instance; poll results are shown in aggregate. Content shared into a cohort is visible to that cohort's members.

5. Patient Information

Never post patient-identifiable information. Community posts are screened for common identifiers and reports of patient-identifiable content hide the post immediately pending moderator review, but screening is not a substitute for your own care.

6. Your Rights and Controls

You can review and correct your account details, export your learning record and CME transcript, and request deletion of your account. Deletion removes your account, progress, and saved items; posts you contributed to community discussion may be retained in anonymised form to preserve thread integrity.

7. Security

Passwords are stored using bcrypt. Media is held in private object storage and served only through authenticated, per-request access checks — never via public or long-lived shareable URLs. Administrative actions are recorded in an audit log.