Privacy
What GearDock collects on this website and inside a private beta workspace, why we hold it, and how to ask us to change or remove it.
Last updated
What This Covers
This page covers two different things, and they behave differently. The first is this public website. The second is a GearDock private beta workspace, which is the authenticated product and is only available to organizations we have set up directly.
GearDock is a product catalog system for medical equipment. It is not a system for patient data. Do not send us patient records, clinical notes, or any protected health information, through this website or inside a workspace.
This Website
Google Analytics 4 is optional on this website and loads only after you choose Allow Analytics. If you decline, the Google tag is never loaded and any analytics cookies already present are deleted. If you allow it, Google Analytics records page views, a small allow-list of commercial link clicks, and standard browser and device information. We do not send form answers, names, email addresses, patient information, or private workspace data to Google Analytics.
Your choice is stored in your own browser so the site can remember it, and you can change or withdraw it at any time through Analytics Preferences. This website loads no advertising tags, no session recording, no chat widget, and no third-party advertising embeds.
The website does include an assistant you can ask questions about GearDock; what you type there is covered in the section below.
Our hosting provider records ordinary server request logs, including IP address, user agent, and the URL requested. Those logs exist to keep the site available and to investigate abuse. We do not use them to build a profile of you.
The Assistant on This Website
The website assistant answers questions using published GearDock material only. It has no connection to any customer workspace, catalog, document, or private beta account, and it cannot look anything up about you.
What you type into it is sent to an AI provider so an answer can be written. It is not used to build a profile of you or added to a marketing list. Do not type patient information or anything confidential. Treat it as a public help desk rather than a private channel.
The Contact and Access Forms
When you submit a form on this site, your answers are sent to a GearDock server and delivered to our team inbox. We hold what you wrote: typically your name, business email address, company, role, and whatever you told us about your catalog.
We use it to reply to you about GearDock. We do not sell it, we do not share it for advertising, and there is no marketing automation, CRM, or lead-scoring system connected to it. Your submission is an email we read, not a record in a pipeline.
Your IP address is used briefly to rate-limit submissions so the form cannot be used to send bulk mail. It is not stored alongside your message and is not used to profile you.
Inside a Private Beta Workspace
A workspace holds the material your team puts into it. That includes product records, spreadsheets you import, source documents you upload, the content GearDock drafts from them, and the review decisions your team records.
It also holds the account information needed to operate the workspace, and an operational history of governed actions: who imported, who reviewed, who approved, who released, and who exported.
- Each organization's records are scoped to that organization. Customer users do not see another organization's data.
- Permissions then control what each member of your organization may see and do.
- Source documents stay attached to the claims they support, which is what makes evidence traceable.
How Long We Keep Things
Workspace content is kept for as long as your organization has a workspace, and we remove it on request when the workspace closes. Correspondence is kept for as long as it is useful for supporting you.
One limitation is worth stating plainly rather than burying. The operational history of governed actions is append-only by design: records of review, approval, release, and export cannot be edited or deleted, including by us. That is the property that makes the audit trail worth anything. If we could quietly rewrite it, it would not be evidence.
Who Else Processes Data
GearDock runs on third-party infrastructure: cloud application hosting, a managed database, and AI providers used for optional content generation. Those providers process data on our instructions in order to run the service.
We will give the current list of providers, and what each one handles, to any organization that asks before or during a private beta. We publish it on request rather than as a static list here so that it cannot silently go out of date on a page nobody revisits.
How It Is Protected
Access to a workspace requires authentication, records are scoped to the owning organization at the database level, and permissions govern what each member can do.
This describes the architecture we have built. It is not a claim of HIPAA compliance, SOC 2 certification, FDA clearance, or any other certification, and you should not read it as one. GearDock holds none of those, and we will say so plainly rather than imply otherwise.
Asking Us to Show, Correct, or Delete Something
Use the contact form on this website and tell us what you want. We will confirm who you are before acting, because acting on an unverified deletion request is its own kind of data incident.
We will tell you what we hold, correct it if it is wrong, and delete it where we are able. Where we cannot delete something, and the operational history described above is the main case, we will tell you that directly instead of quietly ignoring that part of the request.
Changes to This Page
GearDock is in private beta and this page will change as the product does. The revision date at the top of this page reflects the last substantive change. If a change materially affects an organization with a workspace, we will tell that organization directly rather than relying on them to re-read this page.