End-to-End Encrypted

Your Health Data Is Yours Alone

AllCharts is built on a simple principle: your medical records should be readable by you and you alone. Not even we can decrypt them.

256-bit
Encryption
Zero
Knowledge
100%
Your Control

How End-to-End Encryption Works

Your records are encrypted on your iPhone before they ever leave your device. Here's exactly how we protect your privacy.

1

Your Device Encrypts

When you add a record, AllCharts encrypts it on your iPhone using a unique encryption key that only you possess. The key never leaves your device.

2

We Store Ciphertext

Our servers receive and store only the encrypted ciphertext—mathematically unreadable scrambled data. Without your key, it's impossible to decrypt.

3

Only You Decrypt

When you open AllCharts, your device downloads the encrypted data and decrypts it locally using your key. Your records never exist unencrypted on our servers.

4

Sharing Stays Encrypted

When you share records, they're re-encrypted specifically for the recipient. Shares are bound to their email—forwarded links are useless to anyone else.

Our Privacy Guarantees

We Cannot Read Your Records

Your encryption key never reaches our servers. Without it, your records are mathematically impossible to decrypt—even for us.

We Cannot Sell Your Data

We only see encrypted ciphertext. There's no readable data to sell, share with advertisers, or monetize. Your privacy is our business model.

Breaches Can't Expose Your Data

Even in the unlikely event of a server breach, attackers would only get encrypted data they cannot decrypt. Your records remain secure.

No Warrants Can Force Access

Law enforcement or legal demands cannot compel us to hand over readable records because we don't have access to them. Zero-knowledge means zero access.

You Can Delete Everything

Delete your account at any time. All encrypted data is permanently removed from our servers within 30 days. No backups, no retention.

No Analytics Tracking

We don't use third-party analytics or tracking. Your usage patterns, browsing behavior, and health patterns stay private.

Additional Security Layers

Beyond encryption, AllCharts includes multiple security features to protect your records.

Face ID / Touch ID Lock

Require biometric authentication to open the app. Your records stay locked even if someone has your phone.

Recovery Code

A one-time recovery code (shown at signup) lets you regain access if you lose your device. Store it somewhere safe.

Device Management

See all devices with access to your account. Sign out remotely or revoke access from lost devices.

Secure Authentication

Sign in with Apple, Google, or a strong passphrase. No SMS-based authentication—resistant to SIM-swap attacks.

Email-Bound Shares

Shared records are cryptographically bound to the recipient's email. Forwarded or leaked links are useless to others.

Automatic Timeout

The app locks automatically after a period of inactivity. Customize the timeout in settings or disable it entirely.

Technical Implementation

For the security-minded: here's what's under the hood.

Encryption Standards

Algorithm AES-256-GCM
Key Derivation PBKDF2 (100,000+ iterations)
Key Storage iOS Keychain (hardware-backed)
Transport Security TLS 1.3

Data Handling

What We Store (Encrypted)

Medical records, document files, user notes, sharing permissions—all encrypted with your key before storage.

What We Store (Unencrypted)

Your email address, account creation date, device identifiers (for multi-device sync), and encrypted-data metadata (file sizes, timestamps).

What We Never Store

Unencrypted medical content, your encryption key, biometric data (Face ID is local), or usage analytics.

Third-Party Services

AllCharts relies on a minimal set of trusted infrastructure providers:

  • Cloud Infrastructure: Managed cloud hosting (encrypted data only, no medical content visible)
  • Authentication: Apple Sign-In, Google OAuth (handled by platform providers)
  • AI Processing: Records are decrypted locally, sent to AI provider over TLS, and responses are re-encrypted before storage. AI providers don't retain data.

Transparency & Accountability

Our Commitments

  • We will never sell or share your medical data with third parties
  • We will notify you immediately if our privacy model ever changes
  • We will give you 90 days notice and an export option before any service shutdown
  • We will publish a transparency report on any legal data requests (spoiler: we can't decrypt)

Questions?

We believe in radical transparency about privacy. If you have questions about how we protect your data, we're here to answer.

Contact Privacy Team

Your Health, Your Privacy, Your Control

Join thousands who trust AllCharts to keep their medical records truly private.

Download AllCharts