Privacy

Last updated 2 September 2026. This page describes amyneion.com as it is deployed today, not as it is intended to work later.

The short version. This site sets no cookies, runs no analytics, has no accounts, and makes no third-party requests of any kind. Nothing you do here is recorded by us. The one thing you must not do is send us real patient information — see the warning below, and the Terms.

1. What this site does not collect

Stated as a list because a policy that only says what is collected leaves the reader guessing about the rest. This site has:

2. What happens on each page

Every page on this site is static HTML. Nothing below is inferred; it is what the code does.

PageWhat it loadsWhat leaves your browser
/Text and two locally drawn canvas animationsNothing
/demo/A synthetic dataset baked into the page itselfNothing — it makes no network calls after loading
/navigator/A local data.json of synthetic patientsNothing leaves; see localStorage below
/workbench/A local data.json of public trial criteriaNothing leaves; see localStorage below
/trials/Live trial listings via /api/trialsThe disease and region you select
/about/Text and one photograph, served from this domainNothing

Browser storage

Two pages remember what you were doing, using your browser's localStorage. This data is written by your browser, stays on your device, and is never transmitted anywhere:

Both hold only synthetic demonstration content. To remove them, clear site data for amyneion.com in your browser settings, or use a private window.

3. The public API

Four endpoints are served from this domain. What each one receives, and what becomes of it:

EndpointReceivesWhat happens to it
GET /api/health Nothing Returns a status line.
GET /api/protocols Nothing Returns the criteria of the demonstration protocols.
POST /api/match A JSON object of clinical attributes you choose to send Evaluated in memory and discarded. It is not written to any database, cache, log or file. There is no storage attached to this endpoint. The response is computed and the request object ceases to exist.
GET /api/trials A disease term and optional region Forwarded to the public ClinicalTrials.gov API. The result is cached at the edge for six hours so that repeat visitors do not re-query.

What ClinicalTrials.gov sees

The request to ClinicalTrials.gov is made by this site's server, not by your browser. Your IP address, user agent and referring page are not disclosed to them. What they receive is a search term and an identifying user agent for this site.

Do not send real patient information to this API. It is a public demonstration endpoint. It is not a HIPAA-covered service, no Business Associate Agreement covers it, and it is not an appropriate destination for protected health information — even though nothing sent to it is stored. The problem is the transmission, not the retention. Use the synthetic examples in the documentation instead.

4. What our host necessarily sees

This site is served by Cloudflare Pages. Like any web host, Cloudflare processes the network requests required to deliver a page to you, which includes your IP address, and it operates its own network-level logging and security controls. We do not add analytics on top of that, do not export it, and do not combine it with anything else. Cloudflare's handling of that data is governed by its own privacy policy.

This is disclosed because it is true of every website, and a claim to collect nothing at all would be misleading without it.

5. Patient data and the wider system

The Amyneion software is designed so that patient records are read, normalised and matched inside a clinic's own network, with only results leaving. Nothing on this website is part of that path. This site publishes synthetic demonstrations only, and no real patient record has ever been processed by anything reachable from this domain.

When the software is deployed at a clinical site, that deployment is governed by an agreement with the clinic and by its research protocols, not by this page.

6. Children

This site is aimed at clinicians, researchers and trial sponsors. It is not directed at children, and it collects no personal information from anyone, including children.

7. Your choices

Because nothing is collected, there is nothing to request, correct, export or delete. If you want to remove the two browser-local keys described above, clearing site data does it. If you have written to us by email, you can ask us to delete that correspondence.

8. Changes

If this changes — if analytics are ever added, or the API ever stores a request — this page will be updated before that happens, and the date at the top will change. Material changes will be described rather than silently substituted.

9. Contact

Questions about this policy: [email protected].