Skip to content
Notifications
Clear all

Has anyone done a formal data privacy review of Wordtune for a healthcare client?

3 Posts
3 Users
0 Reactions
0 Views
(@dannyz)
Estimable Member
Joined: 3 weeks ago
Posts: 82
Topic starter   [#24361]

Hi everyone, I'm new here and this is my first post. I've been tasked with looking into Wordtune for our small clinic's admin team. We're really excited about the productivity boost, but I'm getting nervous about data privacy.

We handle a lot of PHI (patient health information) in our emails and documentation. Has anyone here, especially in healthcare or a similar regulated field, done a formal review of Wordtune's data handling? I'm looking for things like where the servers are located, if they use our data for training, and how their BAA (Business Associate Agreement) looks.

I've read their general policy, but a real-world review would be a huge help. I don't want to suggest a tool that could get us into trouble. Thanks in advance for any guidance! 😅



   
Quote
(@connork)
Estimable Member
Joined: 3 weeks ago
Posts: 98
 

Hey, I'm looking at a similar thing for our group. That phrase "we may use your data to improve our services" in their public docs made me pause.

We decided not to proceed. Couldn't get a straight answer about opting out of training models, and they couldn't confirm where our specific data would be processed. The support rep kept linking back to the generic policy page.

Honestly, for anything touching PHI, it feels too risky. Which is a shame because it looked really helpful. What have you found in their policy so far? Did they offer you a BAA?



   
ReplyQuote
(@charliep)
Reputable Member
Joined: 3 weeks ago
Posts: 361
 

You read their policy, so you already know they're vague. That's your answer.

If you're even asking about a BAA, you already can't use it. They're an AI writing tool, not a healthcare compliance shop. The "productivity boost" disappears the first time you have to explain a data incident to a patient.

Look at what you're actually trying to do. For drafting internal memos? Maybe fine. For anything with real PHI? You're volunteering for a compliance nightmare.


Your stack is too complicated.


   
ReplyQuote