Legal

Privacy Policy

Effective date: August 13, 2026

Controller: ObMob, LLC, a Connecticut limited liability company ("ObMob," "we," "us," or "our")

Service: The ObMob websites, web application, and any related application launched in the future (the "Service")

Contact: hello@obmob.ai

This Privacy Policy explains the information ObMob collects, how it is used, the providers that process it, the periods for which it is retained, and the choices available to you.

1. Key points

  • ObMob is an educational exam-preparation service for physicians and physicians-in-training.
  • Users may provide only case information de-identified under the HIPAA Safe Harbor method. ObMob does not want or authorize the submission of Protected Health Information ("PHI").
  • ObMob stores session transcripts, scorecards, and study records. ObMob does not persist voice-session audio in its own storage.
  • ObMob does not sell personal data, share it for cross-context behavioral advertising, or use third-party advertising trackers.
  • ObMob uses identified providers for authentication, hosting, database, payments, voice transport, speech recognition, language-model processing, text-to-speech, retrieval, and email.
  • You may request access, correction, export, or deletion by using available account controls or contacting hello@obmob.ai.

2. Information we collect

2.1 Account information

When you sign in with Google, ObMob receives your name, email address, and Google account identifier. ObMob uses this information to create, authenticate, secure, and support your account. ObMob's use of information received from Google APIs follows the Google API Services User Data Policy, including the Limited Use requirements.

2.2 De-identified case content

ObMob processes case material you upload or enter, including case stems, context, medical categories, case-list fields, and generated examiner follow-ups. The launch workflow requires case information to be de-identified under the HIPAA Safe Harbor method.

The source case-list PDF is parsed in transient processing and is not stored as an uploaded file by ObMob. Structured case rows are stored after parsing.

2.3 Voice and transcript data

During a voice practice session, your microphone audio passes through four providers in sequence:

  1. a real-time transport provider carries the audio from your browser to the examiner bot;
  2. a speech-to-text provider transcribes your spoken answers;
  3. an AI model provider processes the running transcript and de-identified case context to produce examiner responses and grading; and
  4. a speech synthesis provider converts examiner text into synthetic speech.

ObMob stores the text transcript, scorecard, and related session results. ObMob does not write or persist the voice-session audio in its own storage. The providers may process or temporarily retain information under their account settings and terms.

ObMob does not create a voiceprint, identify a speaker, authenticate a user by voice, or clone a user's voice. Examiner voices are synthetic provider voices unrelated to the user.

2.4 Study and performance information

ObMob collects practice results, scores, progress, study-plan state, streaks, badges, topic performance, usage allotments, and related learning information to provide and personalize the Service.

2.5 Payment and subscription information

Stripe processes payment-card information and billing. ObMob receives transaction identifiers, plan and subscription status, purchase history, and limited card metadata such as brand and last four digits. ObMob does not store full payment-card numbers.

2.6 Usage, device, and security information

ObMob may collect IP address, browser and device type, access times, pages or features used, error events, diagnostic logs, and security signals. These records are used to operate, secure, debug, and improve the Service.

2.7 Communications

ObMob keeps emails and support messages you send, plus records of account, billing, lifecycle, legal, and security communications sent through Zoho Mail or Resend.

2.8 Agreement evidence

ObMob records agreement version, document hashes, timestamp, account email, IP address, user agent, and assent event to preserve evidence of acceptance. When an account is deleted, the direct user identifier may be removed or nulled while the acceptance record is retained.

2.9 Information ObMob does not request

Do not provide patient names, contact details, full dates, medical record numbers, facility names, or other HIPAA Safe Harbor identifiers. Do not speak them during a session. If ObMob discovers possible PHI, it may quarantine, delete, or restrict the affected content and cooperate in remediation.

3. How ObMob uses information

ObMob uses information to:

  • authenticate accounts and provide the Service;
  • parse de-identified case lists and generate practice materials;
  • run voice and text sessions, grading, scorecards, feedback, and study plans;
  • process payments, subscriptions, cancellations, refunds, and Credit Packs;
  • provide support and transactional communications;
  • secure, debug, monitor, and improve the Service;
  • prevent fraud, abuse, and prohibited use;
  • preserve agreement and transaction evidence;
  • comply with law and enforce agreements; and
  • protect users, ObMob, and third parties.

ObMob does not sell personal data. ObMob does not share personal data for targeted or cross-context behavioral advertising. ObMob does not authorize third-party foundation-model providers to train their general models on user content.

4. AI and automated processing

AI providers process the running transcript, de-identified case context, and physician-validated reference material to conduct the exam simulation, generate feedback, and grade performance. ObMob does not use AI to make a legal, employment, credit, insurance, licensing, or patient-care decision about you.

AI output may be incorrect or nonunique. The Terms and Educational Use Disclaimer require independent verification and prohibit patient-care reliance.

Voyage AI is reserved for embeddings and reranking of physician-validated knowledge-base text. The retrieval feature will remain inactive until ObMob completes the applicable training-data opt-out.

5. Service providers and disclosures

ObMob shares information with providers acting for the functions identified below: