Self Help Doctor Corporation ("Company," "we," "us") operates the website at selfhelp.doctor, a self-guided CBT-based educational course, and automated AI study and support tools (together, the "Service"). This Privacy Policy explains what data we collect, how we use it, and your rights.
Account information: When you register, we collect your name, email address, and a hashed password. We also store your language preference and course progress.
Health-related information: During onboarding and throughout the course, you may share information about mental health challenges you are working on (e.g., anxiety, OCD, phobias). You may also complete symptom questionnaires that produce a numerical score.
Conversation data: Your chat messages with our AI assistant Diana are stored to maintain conversation continuity and track your course progress. Chat transcripts are retained for a limited period and may be reviewed by authorized staff to improve AI accuracy.
Payment information: Card and international payments may be processed by Stripe; certain Israeli or Hebrew-course payments may be processed through iCount/PayMe. We store provider and transaction identifiers, document references, payment status, and relevant dates needed to operate purchases, refunds, and legally required records. We do not intentionally receive or store the full payment-card number entered on a provider-hosted payment page.
Automatically collected data: We collect IP addresses, browser type, and browsing patterns through cookies and server logs for site operation, Analytics as permitted by the applicable regional policy and your Privacy Choices, and security. Marketing measurement is disabled on pages and URLs that can reveal selected conditions, questionnaire activity, or Diana chat activity.
Customer-service messaging data: When you message our customer-service bot on the website or a social platform, message text and reply identifiers may be stored locally in encrypted form. The AI provider receives only the redacted current message and approved support information with provider storage disabled. If the website bot cannot answer, you may optionally provide an email address so authorized support staff can reply; that address is encrypted, is not sent to the AI, and is used only for the support follow-up. When media support is available, supported images, voice notes or audio, videos, and PDF documents may be downloaded after authenticated receipt, encrypted in a private local store, and made available only to authorized support staff. The support AI does not receive, open, transcribe, or analyze that media. The local media copy is deleted within 7 days; the messaging platform may retain its own copy under its policy.
Our Service uses a third-party AI provider so the automated Diana study assistant can provide course-related explanations and educational practice support. When you chat with Diana, the following data is sent to the AI provider:
Sent to AI: Your first name only, your stated problem areas (e.g., "anxiety"), your conversation messages, your course progress, and your language preference.
Account fields not intentionally sent to AI: We do not intentionally include your last name, email address, phone number, or payment information in AI requests. Free-text messages may contain information you choose to enter; automated redaction reduces, but cannot guarantee removal of, identifiers in free text.
The AI provider processes your data solely to generate responses within our application. We do not permit the AI provider to use your data for training their models, and we limit the identifiers sent to AI systems wherever possible.
For the public website support tool, the AI provider receives only the redacted current message and approved knowledge excerpts. No client-supplied history, name, handle, platform identifier, or channel metadata is sent, and provider storage is disabled. This messaging mode is not described as HIPAA-compliant.
We use your information for:
3.1. Providing the CBT-based educational course and automated study support;
3.2. Tracking your course progress and delivering personalized content;
3.3. Processing payments and managing your subscription;
3.4. Sending service-related communications (e.g., password resets, payment receipts);
3.5. Improving the Service through aggregated, anonymized analytics;
3.6. Complying with legal obligations;
3.7. Periodically reviewing chat transcripts to monitor and improve AI response quality and accuracy. Reviews are conducted by authorized staff only and are subject to strict confidentiality obligations.
We share your data only with:
AI provider: To power Diana and the limited public product-support tool (limited data as described in Section 2);
Payment providers: To process payments and maintain legally required payment records;
Hosting, email, analytics, and error-monitoring providers: To operate the Service, send service messages, measure usage, and diagnose technical errors. We limit these providers to the data needed for their function and avoid sending chat content to advertising platforms;
Optional public analytics and marketing measurement: These tools require the administrator to enable both the master measurement control and the specific provider. In ordinary jurisdictions where optional Analytics and Marketing are permitted, enabled purposes start on by default. A one-time, nonblocking notice explains this, and a persistent Privacy Choices control lets you turn either purpose off at any time. In strict opt-in regions, those purposes remain off until you choose them. In prior-notice jurisdictions, they remain off until the notice is acknowledged. Prohibited or unresolved locations remain off without offering an optional choice. Global Privacy Control turns off Marketing only; it does not turn off separately permitted first-party or processor Analytics. We limit events to generic signup and verified-purchase facts, never send chat, questionnaire, exercise, contact-form, condition, or other health-related payloads, and block browser loaders on sensitive routes and health-related URLs;
Legal requirements: When required by law, court order, or to protect our legal rights.
We do not sell your personal information to third parties.
For more detail about mental-health and course-related data, including inferences, recipients, advertising limits, and request and appeal options, see our Consumer Health Data Privacy Notice.
We retain account data while your account is active. When you delete your account, sign-in is disabled and your original name and email are deleted from the active account and replaced with deletion placeholders. We also delete conversations, notes, course questions, warnings, and lesson-delivery records; clear free-text exercise, feedback, error, request, and payment-event fields; delete active authentication credentials; and revoke access. Account deletion does not erase every record connected with the account.
We maintain course progress and progress ratings—including questionnaire answers and scores—to evaluate product quality. These quality records remain linked to an internal user identifier. Other retained records may include age and gender, selected topic or symptom categories, security/refund/deletion audit records, and legally required financial records. Financial records may include the customer name and email used for the transaction, provider and document identifiers, amounts, statuses, and dates. The deletion audit entry does not store the prior email address; an operational email may contain it when an iCount cancellation or refund requires manual action. Payment providers and other third parties keep records under their own policies. We do not represent the retained records as anonymous.
Customer-service message text, encrypted reply identifiers, and an optional encrypted website handoff email are retained for up to 90 days; encrypted customer-service media for up to 7 days; webhook deduplication hashes for up to 7 days; failed-send payloads for up to 24 hours; and encrypted backups for up to 30 days. A verified messaging deletion request removes active local data immediately. The messaging platform retains its own copy under its policy.
We implement reasonable security measures to protect your data, including secure HTTPS connections, hashed passwords, field-level encryption for sensitive chat/profile/questionnaire data, audit logging for sensitive actions, and passkey-based two-factor protection for admin accounts where configured. However, no system is completely secure, and we cannot guarantee absolute security against unauthorized access.
Account deletion: You may delete your account at any time from your account page. The active account is disabled; identifying information on that account, such as your original name and email, is removed and replaced; and user-authored content is deleted as described in Section 5. Course progress and progress ratings are maintained to evaluate product quality, while some operational, payment, and audit records are retained. These retained records remain linked to an internal user identifier and are not represented as anonymous.
Data access: You may request a copy of your personal data by contacting us.
Consent withdrawal: You may withdraw your consent for AI processing at any time by deleting your account.
Cookie preferences: You may manage optional Analytics and Marketing at any time through the persistent Privacy Choices control on our site.
Messaging-data deletion: You may request deletion of local messaging data. Deletion is immediate after the request is verified and does not delete the messaging platform's copy.
We use cookies for:
Necessary cookies: Required for site functionality (authentication, preferences);
Public-site analytics cookies: Available only while PostHog public analytics is enabled. In ordinary jurisdictions where Analytics is permitted, it starts on by default and can be turned off through Privacy Choices. In strict opt-in regions it starts off until chosen; in prior-notice jurisdictions it stays off until the notice is acknowledged; and in prohibited or unresolved locations it stays off. Analytics remains blocked on sensitive routes;
Marketing measurement cookies: Available only while at least one supported advertising provider is enabled. In ordinary jurisdictions where Marketing measurement is permitted, it starts on by default and can be turned off through Privacy Choices. In strict opt-in regions it starts off until chosen; in prior-notice jurisdictions it stays off until the notice is acknowledged; and in prohibited or unresolved locations it stays off. Events are limited to generic signup and verified purchase.
Geo affects only optional Analytics and Marketing choices; the adult-use, Terms/Privacy, educational-AI, and consumer-health account acknowledgments apply to everyone. Global Privacy Control turns off Marketing only; it does not turn off separately permitted first-party or processor Analytics. Geo is an operational signal and may be inaccurate; an unresolved result disables optional measurement.
Self Help Doctor is a self-guided educational course. Diana and the limited public product-support tool are automated AI software, not people or clinicians. They do not diagnose, assess, treat, prescribe, provide psychotherapy or medical care, or coach public visitors through course exercises. Use does not create a clinician-patient or therapist-client relationship. The Service is not monitored in real time and cannot provide crisis intervention.
For an emergency or mental health crisis, stop using the Service and contact local emergency services or visit findahelpline.com. See AI Safety & Intended Use for details.
We may update this Privacy Policy from time to time. Significant changes will be communicated via email or a notice on our website. Continued use of the Service after changes constitutes acceptance of the updated policy.
For privacy-related inquiries, data access requests, or complaints, please contact us:
SELF HELP DOCTOR CORPORATION
2093 PHILADELPHIA PIKE #6423
CLAYMONT, DE 19703
Or send an email via our contact form.
All rights reserved. Last updated: August 2026