Privacy
What happens to your data
Plain-language summary of how this tool stores patient information.
Where data is stored
Everything you enter is saved only in your browser’s local storage on the device you are using. Nothing is sent to a server, no account is created, and no third-party analytics, telemetry, or tracking pixels run on this site.
Why this matters for HIPAA
Browser local storage is not encrypted. If a workstation is shared, anyone with access to the same browser profile could open this site and resume your draft. To stay HIPAA compliant:
- Do not enter direct patient identifiers (name, date of birth, medical record number) into form fields. Print the document and write those by hand.
- On shared devices, use “Clear all saved data” from the footer when you finish a session, or use a private/incognito window.
- The service worker may cache pages for offline use, but it does not cache form data.
What we collect
Nothing. No names, no emails, no IPs, no usage analytics. The hosting platform may log standard request metadata for service operation; that data is not used for tracking or product analytics.
Cookies and storage
This site uses:
localStorage— for your in-progress consent drafts and your theme preference.- No cookies. No session storage. No third-party trackers.
Print and PDF artifacts
When you print or save the form as PDF, that artifact is generated entirely on your device. It is your responsibility to direct the print job to a secure printer at your facility.
Questions
For any privacy question, email hillary@dysphagiaoutreach.org. This is an open-source project from the Dysphagia Outreach Project; source code lives at github.com/kdeverett918/consent.