Skip to main content

Privacy Policy

Effective September 9, 2026

Who we are

Bedside is a product of NurseKind AI LLC (“NurseKind,” “we,” “us”). We make voice-based clinical practice software for nursing students. Bedside is available on iOS (App Store) and Android (Google Play). This policy applies to both platforms. Our contact email is support@hellobedside.com.

What we collect

When you create an account and use the app:

  • Account data — email address and birth year (required for COPPA compliance). If you use Sign in with Apple, we receive only what Apple chooses to share.
  • Session audio — voice audio recorded during practice sessions is processed in real time by OpenAI GPT-4o Realtime and is not retained by OpenAI after the session ends. On Android, the operating system displays a persistent notification while a session is active to indicate that the microphone is in use; this is required by Android and does not mean audio is stored.
  • Session transcripts and feedback — after each session, the text transcript is sent to Google’s Gemini API to generate your graded feedback. Graded results are stored so you can review past sessions in the app. Transcripts are not used to train AI models.
  • Purchase records — pass type and expiry, processed by Apple and RevenueCat. We do not receive or store payment card details.
  • Usage data — scenarios attempted, session durations, scores, and in-app navigation events. Used for product improvement.
  • Screen replay (onboarding only) — we record on-screen interactions during account setup, including the quiz, demo, account creation, consent, and paywall screens, so we can find and fix confusing steps. Any text you type, including your email and account details, is masked and never captured. Practice sessions are not recorded this way.
  • Device identifiers — anonymous device ID used for crash reporting (Sentry) and analytics (PostHog). Not linked to real-world identity.
  • Push notification token — stored if you grant permission, used only to send pass-expiry reminders.
  • Approximate location (US state only) — at the time you create your account, our server infers your US state from your IP address solely to determine whether additional age-verification requirements apply under Utah or Louisiana law. We do not store your IP address, and location is not used for advertising or tracking.

What we do not collect

  • We do not collect health or medical records.
  • We do not access your contacts, camera, or photos, and we do not use your device’s location services.
  • We do not sell your data to third parties.
  • We do not use your data to train AI models.

How we use your data

  • To run the app and deliver practice sessions
  • To verify your pass entitlement and session credits
  • To generate and display your coaching feedback
  • To send pass-expiry reminders (if you opted in)
  • To diagnose crashes and fix bugs
  • To understand how students use the app so we can improve it

Third-party AI providers

Two third-party AI providers process your session content. Both operate under enterprise API terms that prohibit using your data for model training, and both are contractually required to protect your data on the same terms described in this policy. Before your first session, we tell you which providers will receive what; you can revoke that consent at any time by revoking microphone permission in your device’s Settings (iOS: Settings → Privacy → Microphone; Android: Settings → Apps → Bedside → Permissions → Microphone) or by deleting your account.

  • OpenAI GPT-4o Realtime — receives live voice audio during practice sessions over a direct WebRTC connection so it can generate the AI patient’s spoken replies. OpenAI does not retain session audio and does not use it to train models. Subject to OpenAI’s Privacy Policy.
  • Google Gemini API — receives the text transcript at the end of each session to generate your graded feedback. Google does not retain transcripts for model training. Subject to Google’s Privacy Policy.

Other third-party services

Bedside also uses the following supporting services. Each has its own privacy policy and is contractually required to protect your data.

  • Google Firebase — authentication, push notifications, crash reporting
  • Google Cloud SQL — session and account data storage
  • RevenueCat — in-app purchase management
  • Sentry — crash and error reporting
  • PostHog — product analytics (PostHog Cloud, US region; no third-party ad networks). See “Website analytics” below for how it runs on the website.

Website analytics

This covers the hellobedside.com website, which is separate from the app. Website analytics are cookieless and do not identify you.

  • Page-view counts — when you open a page we send its path, the page you came from, your browser language, your screen size, and any campaign tags in the link (utm_*) to our own server. No cookies, no account, no name or email.
  • PostHog on the web — runs cookieless: no autocapture, no session recording, and no personal profile unless you are a signed-in app user. Client IP addresses are discarded.

Student Advocate program

If you apply to the Student Advocate program, whether or not you already have a Bedside account, we collect:

  • Your name, school, and graduation year
  • Your school email and, if different, the email on your Bedside account
  • Any social handles you provide and why you’re applying
  • Your payout method and handle
  • The IP address you applied from

We use this to review applications, pay approved advocates, and prevent abuse. If you’re approved and paid, we retain payment records after you delete your Bedside account, as required for our own financial and tax recordkeeping.

Data retention

We retain your account and session data for as long as your account is active. When you delete your account, all data is deleted within seconds. Session transcripts and feedback are deleted permanently and cannot be recovered.

Children’s privacy (COPPA)

Bedside is intended for nursing students aged 18 and older. At signup, you confirm you are 18 or older; we do not collect a birth date. On supported devices, we also check Google Play Age Signals (Android) or Apple’s Declared Age Range (iOS). Bedside is not directed to children, and we do not knowingly allow anyone under 18 to create an account. If you believe a minor has created an account, contact us at support@hellobedside.com and we will delete it promptly.

Your rights

You can:

  • Delete your account — Settings → Privacy → Delete Account. All data is deleted immediately.
  • Request a copy of your data — email us at support@hellobedside.com.
  • Opt out of analytics — Settings → Privacy → Analytics.
  • Revoke push notification permission — iOS: Settings → Bedside → Notifications. Android: Settings → Apps → Bedside → Notifications.

Changes to this policy

If we make material changes, we will notify you in the app before the change takes effect. Continued use after notice constitutes acceptance.

Contact

NurseKind AI LLC
support@hellobedside.com