Last updated: September 27, 2026
Privacy Policy
PaidTrail ("PaidTrail," "we," "us") helps you organize receipts and paperwork for TRICARE Overseas and VA Foreign Medical Program (VA FMP) claims. This page explains what we collect, why, who we share it with, and what we deliberately never touch. It's written in plain language on purpose; if anything here is unclear, contact us using the details at the bottom.
PaidTrail is an independent tool. We are not affiliated with, endorsed by, or operated by TRICARE, the Department of Defense, or the Department of Veterans Affairs.
What we collect
When you create an account and use PaidTrail, we collect:
- Account information: the email address you sign in with (or your Google account, if you choose that), and a display name.
- The people on your claims: a patient's name, date of birth, sex, relationship to the sponsor, address, phone number, and (for a veteran) a VA claim file number; a sponsor's name and address; other insurance details if you add them.
- Claim and receipt details: dates of care, billed and paid amounts, currency, provider name, address and phone, what the care was for, and the receipt or bill files themselves.
All of it is stored in a private database (hosted by Supabase, in Frankfurt, Germany) and a private file storage bucket, both protected by row-level security: the database itself refuses to let one account read or change another account's rows, not just the app's own checks.
What we never collect
Your Social Security Number and DoD Benefits Number never reach our servers, period. Typing one into a form fills it directly into a PDF built in your own browser; nothing is sent anywhere. If you choose to "remember" one on a device, it's encrypted on that device with a passkey (Windows Hello, Face ID, fingerprint, or similar) that only you hold — we could not read it even if we wanted to, and you're asked to confirm with that passkey every time it's used.
We also don't use analytics or advertising trackers of any kind, and we don't log the contents of what you type into a form.
Automatic receipt reading
If you turn it on (it's off until you say yes), uploading a bill can send that file — the picture or PDF, or the text of a Word document — to Anthropic, the company behind the Claude models, to read the printed provider, date, amount and currency for you. Nothing else goes with it: no patient name, no account ID, no email. A receipt can itself show a patient's name and what care they received, and that is naturally part of the picture; the consent notice inside the app says so before you turn this on.
Anthropic's published terms say it deletes what it receives through this service within 30 days and does not use it to train its models. PaidTrail's own servers store neither the picture nor what was found in it — only what you confirm and save ends up in your account. You can turn this off in Settings at any time and type every field by hand instead.
Who else sees your data
We use a small number of service providers to run PaidTrail, each only for what they're named for below:
- Supabase — our database, authentication, file storage and server functions, hosted in the EU.
- Resend — sends the email sign-in code and account emails. It does not see your claims or receipts.
- Anthropic — reads a receipt's printed fields, only if you've opted in, one file at a time (see above).
- Error monitoring — if we use a tool such as Sentry to catch bugs, it's configured to never collect what you typed into a form, a request's contents, or anything that would identify which account hit the error.
We do not sell your data, and we do not share it with anyone else, other than as required by law or to protect PaidTrail's or someone else's rights or safety.
How long we keep it, and how to delete it
A receipt's file is deleted the moment you delete that receipt. A person can't be removed while they still have claims, so their information stays until those claims are resolved and removed. If you'd like your account and everything in it deleted, contact us at the address below — this is currently a manual process, since PaidTrail doesn't yet have a self-service "delete my account" button.
Your data, your access
You can see, edit or delete almost everything PaidTrail holds about you directly in the app: your people, claims, receipts, and saved files. For anything you can't reach in the app itself — a full copy of your data, or a correction we haven't given you a way to make — contact us and we'll help.
Children
PaidTrail accounts are for adults managing their family's claims. A patient on a claim is often a minor child — that's normal for this kind of paperwork — but we don't knowingly let a minor create or control an account themselves.
Changes to this policy
PaidTrail is under active development, and this policy will change as the product does — most notably once billing exists. We'll update the date at the top when it does; if a change is significant, we'll make that clear here rather than let it slide by quietly.
Contact
Questions about this policy, or a request about your data: privacy@paidtrail.app.