Privacy Policy

Last updated: August 2026

1. Introduction

Eetaa Inc (“OnlyRads”, “we”, “us”, or “our”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the OnlyRadsmobile application and website (the “Service”), a private professional community for radiologists and related medical professionals.

2. Information We Collect

We collect the following types of information:

  • Account information: Name, username, email address, phone number, and professional details you provide when you register or update your profile.
  • Identity & credential verification: Images of the government or professional identity documents you submit, and the information contained in them, which we process to verify that you are a qualified medical professional. See Section 4.
  • Content you create: Posts, comments, direct messages, images and other media you upload, poll responses, and the communities (“Circles”) you create or join.
  • Location information: Approximate location associated with a post, derived from your device location (only if you have granted permission), your IP address, or your profile city. See Section 5.
  • Usage & device data: How you interact with the Service, plus device type, IP address, and device identifiers. See “Product Analytics” below.

3. How We Use Your Information

  • To provide, operate, and maintain the Service
  • To verify your identity and professional eligibility
  • To display your profile and content and enable community features (posts, Circles, follows, and messaging)
  • To keep the Service safe — moderation, enforcement of our Terms, and preventing abuse
  • To communicate with you about your account, security, and updates
  • To understand and improve how the Service is used
  • To comply with legal obligations

4. Identity & Credential Verification

Access to OnlyRads is limited to verified medical professionals. When you verify, you submit one or more identity or credential documents. We use Google Gemini (a paid, enterprise tier) to help review these documents automatically. Your verification images and details are used only to confirm your eligibility and are not used to train AI models. Verification images are stored securely and access is restricted; we retain them only as long as needed for verification and compliance, after which they are deleted.

5. Location Information

When you create a post, we record an approximate location for it. This is resolved, in order, from: your device’s location (only if you have already granted the location permission), your IP address (via our geolocation service), or your profile city. We use a third-party service (BigDataCloud) to convert coordinates into a city name. Precise coordinates are stored securely, are not shown to other members beyond the city level, and are never included in analytics. You control the device-location permission through your device settings.

6. Anonymous Posting

Some parts of the Service let you post under an alter-ego identity. The link between your real account and any alter-ego identity is kept private on our servers and is not disclosed to other members.

7. Information Sharing

We do not sell your personal information. We share information only with service providers who process it on our behalf to run the Service, and with authorities where required by law:

  • Clerk — authentication, sign-in, and session management
  • Convex — application backend and database hosting
  • Cloudflare — media storage (R2) and the image and geolocation services that deliver it
  • Google Gemini — automated identity/credential verification (see Section 4)
  • Wabridge — WhatsApp/SMS delivery of one-time sign-in codes
  • Resend — transactional email delivery
  • BigDataCloud — converting coordinates to a city name
  • PostHog — product analytics, EU region (see Section 13)
  • Sentry — crash and error reporting to keep the app stable
  • Legal authorities — when required by law or to protect rights and safety

8. Data Security

We implement appropriate technical and organizational measures to protect your information, including access controls and encrypted connections. User media is served through authenticated, expiring links rather than public URLs. However, no method of transmission or storage is 100% secure, and we cannot guarantee absolute security.

9. Data Retention

We keep your information for as long as your account is active or as needed to provide the Service. When you delete your account, we delete or de-identify your personal information, except where we must retain certain data to comply with legal obligations, resolve disputes, or enforce our agreements. Verification documents are retained only as described in Section 4.

10. Your Rights

Subject to applicable law, you have the right to access, correct, or delete your personal information, and to object to or restrict certain processing. You can:

  • Edit your profile information in the app
  • Delete your account from within the app, which removes your personal information as described in Section 9
  • Opt out of analytics (see Section 13) and of non-essential communications
  • Contact us to exercise any of these rights

11. Children

The Service is intended solely for medical professionals aged 18 and over. It is not directed to children, and we do not knowingly collect personal information from anyone under 18. If you believe a minor has provided us information, contact us and we will delete it.

12. Cookies

On our website we use cookies and similar technologies to enhance your experience. You can control cookies through your browser settings. We specifically use:

  • Authentication cookies (set by Clerk) keep you signed in. Required for the service to function.
  • or_analytics_consent is a first-party cookie storing your analytics consent choice (“allowed” or “declined”). 1-year lifetime. Carries no personal data on its own.
  • Analytics cookies (set by PostHog), only present if you accept analytics. Used to maintain a stable anonymous identifier across page loads. Cleared when you sign out.

13. Product Analytics

We use PostHog (PostHog Cloud EU region, hosted in Frankfurt, Germany) to understand how the product is used so we can improve it. All analytics data is processed and stored within the European Union and never leaves it.

What we collect:structured behavior events — counts, booleans, and short enum values indicating what happened (e.g. post_created, comment_added, page_joined, $pageview, button_pressed) and a small set of non-identifying properties (e.g. whether a post had media, the count of items in a poll, whether the screen was the feed or a profile).

What we deliberately exclude:

  • Post text, comment text, message content, or any free-form content you write
  • Usernames, real names, alter-ego identities, or Circle handles
  • Email addresses, phone numbers, or any contact details
  • Verification documents, ID images, or anything you upload
  • Precise location or coordinates
  • Internal database identifiers that link analytics back to private records
  • Session recordings, screen captures, or video of your activity (disabled)

User identification: When you are signed in, events are linked to a stable internal user identifier so we can build per-user funnels (e.g. did this user complete sign-up?). When you are signed out, events are anonymous. Signing out resets the identifier so the next session starts fresh.

Consent: If we detect that you are visiting from the European Union or United Kingdom, we show an explicit consent dialog before any analytics events are captured. You can decline; we will respect that choice and capture nothing. Outside the EU/UK we treat continued use as implicit consent. You can withdraw at any time by contacting us at the address below.

Retention: Analytics events are retained for up to 24 months and then deleted. You can request earlier deletion by contacting us.

14. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the date above.

15. Contact Us

If you have questions about this Privacy Policy, please contact us at:

Eetaa Inc

Email: support@onlyrads.app