Support Request Data Notice · Effective September 12, 2026

Limited information for a preliminary support request.

This notice covers Paladin’s public support request. The form requests broad, structured information and a short, optional clinical summary. It is the first step in asking whether Paladin may be able to help; it is not a medical-record intake channel.

What we collect

The support request collects an email address, consent record, relationship and age-group categories, country or territory of current care, whether options outside that country are being explored, broad case category, whether an active treating physician exists, the general type and timing of the decision, and whether key records can be obtained. For cancer requests, it also collects a short cancer type and stage or disease-status category. Two optional, 400-character fields may be used for a brief description of current general health and current or recent treatment.

Do not provide patient or family names, phone numbers, addresses, physician or institution details, record numbers, links, gene or variant details, test results, financial information, medication lists, medical records, or pasted reports. The form does not accept uploads.

How we use it

If you arrive through a Paladin referral link, we also save its general placement code with your request to understand which outreach channels help people find us. These codes identify a distribution channel, not an individual visitor. We do not share your request or health information with the referrer or advertising platforms.

We use this information to assess potential operational fit, prioritize human review, plan capacity, assign an intake owner, maintain an approval record, and contact the submitter about fit, timing, and the next step. We do not use this form to diagnose, select treatment, provide medical advice, or make an automated clinical decision.

Access, providers, and advertising

Access is limited to authorized Paladin personnel and infrastructure providers needed to operate the forms, send approved operational notifications, and review requests. Paladin does not sell this information or use advertising pixels, session replay, or form-content analytics in these flows.

Retention and deletion

Unconfirmed requests are scheduled for deletion after 7 days. Confirmed requests remain available while actively reviewed; requests that are closed or withdrawn become eligible for scheduled deletion after 90 days. Minimal audit or security records may be retained longer when necessary to document an action, investigate an incident, meet a legal obligation, or protect rights. An accepted engagement receives a separate retention notice before secure intake.

You may request access, correction, or deletion using the form below. The form creates a request for human privacy review; it does not automatically export, correct, or delete data. Paladin verifies the requester before acting and records completion evidence.

Security and secure record intake

Paladin uses staff access controls, rate limits, server-side allowlists, field-length limits, approval records, and audit events for these flows. The limited clinical summary stays in the protected intake database and authorized reviewer view; it is not placed in operational email, Slack, advertising, or analytics. Do not send medical records by ordinary email. If Paladin accepts an engagement, it will provide a separate secure intake channel and data notice before requesting records.

Make a privacy request

Use the same email address submitted to Paladin. Do not include health information in the request. A person will verify the request and explain the approved next step.

Do not include medical details. Paladin will verify identity before acting.