1. Overview
We build PlanVoyager to help people understand health insurance and related costs. We collect only what we need to provide the service, improve reliability, and—when you explicitly choose AI-assisted features—send limited personal information to a third-party AI provider as described below. We do not sell your personal information.
2. Information we collect
Depending on how you use PlanVoyager, we may process:
- Account and session data. If you sign in (for example via email magic link), we store identifiers needed for authentication and session management (such as email address, user id, and session records) using our database and auth infrastructure.
- Plan and coverage details you provide. When you save “My plan” or similar features, we store the fields you enter or confirm (for example issuer, plan name, plan year, premiums, deductibles, out-of-pocket limits, phone numbers, and related plan metadata).
- Images you upload for plan capture. If you use Quick capture (or similar) on web or mobile, you may upload a photo of an insurance card or benefits document. The image may contain sensitive information visible on the document (for example name, member id, group number, and plan identifiers).
- Chat messages for Ask Voyager / AI assistant. When you use conversational assistance, we process the text you send and prior messages in that conversation to generate a reply.
- Technical and usage data. We collect standard server logs and, where enabled, product analytics events to understand feature usage and diagnose errors.
3. How we collect information
- Directly from you when you create an account, complete forms, upload files, or send chat messages.
- From your device when you grant permissions (for example camera or photo library on mobile) solely to perform the action you initiated.
- Automatically through cookies or similar technologies where we use analytics on the website.
4. How we use information
- To operate core features: saving your plan profile, showing estimates, and linking the mobile app.
- To run AI-assisted features you request: for example extracting plan fields from an uploaded image or answering questions in chat using the context you provide.
- To secure the service, prevent abuse, and troubleshoot issues.
- To improve the product in aggregate (for example understanding which flows need clearer copy).
5. Third-party AI (Google Gemini)
Certain features send personal information to Google LLC for processing by Google’s Gemini family of models (a third-party AI service). This processing happens on Google’s systems and is governed by Google’s policies in addition to this notice.
What may be sent to Google.
- Ask Voyager / chat: the message you submit, prior messages in the same conversation, and —if you are signed in and have saved My plan—summarized plan fields we already store for your account (for example deductible, copays, and out-of-pocket limits) so answers can reference your coverage.
- Plan image extraction: the image file you upload for Quick capture (or equivalent), so text and numbers visible in the image can be interpreted into structured plan fields for your review.
Why we use it. To generate plain-language explanations, comparisons, or structured extractions you explicitly request—not to make medical decisions, determine eligibility for government programs, or replace your insurer’s official documents.
Your consent. On supported clients we ask you to review who receives the data, what categories may be sent, and to confirm consent before we transmit personal information to Google for those features. If you do not agree, you can still use non-AI parts of the service where available (for example manual plan entry).
Processor practices. Google maintains its own privacy program and terms for AI and cloud services. We rely on Google’s commitments applicable to the Gemini API and related services; you should review Google’s documentation to understand how Google processes content sent to its models. Helpful starting points:
6. Other service providers
We may use subprocessors to run the site and deliver email—for example:
- Database and hosting providers to store accounts, sessions, and plan records.
- Email delivery (for example magic-link sign-in messages).
- Analytics (where configured) to measure product usage in aggregate.
Those providers process data under contractual terms and only for the purposes we instruct, consistent with this policy and applicable law.
7. Retention
We retain account and plan information for as long as your account is active and as needed to provide the service, comply with law, resolve disputes, and enforce agreements. You may request deletion of your account subject to legal exceptions.
8. Security
We use industry-standard safeguards (including encryption in transit and access controls) appropriate to the nature of the data. No method of transmission or storage is 100% secure; we encourage you to use strong passwords and protect your devices.
9. Your choices and rights
Depending on where you live, you may have rights to access, correct, delete, or export personal information, and to object to or limit certain processing. To exercise these rights, contact us using the channel shown on the site. We will verify your request as required by law.
10. Children’s privacy
PlanVoyager is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
11. Changes
We may update this policy from time to time. We will post the new effective date at the top of this page and, when changes are material, provide additional notice as appropriate.
12. Contact
Questions about this policy or requests to exercise privacy rights: email privacy@planvoyager.com. For general background on the project, see our About page.