Radish Group, LLC Privacy Policy

Version 1.6 | October 2025

1. Introduction

The Radish mobile application, operated by Radish Group, LLC, respects your privacy. This Privacy Policy explains how we collect, use, disclose, and protect your user data when you use the Radish Group, LLC radiology collaboration app ("Site"). User data includes personal information (e.g., name, email, licensure details), anonymized radiology images, and usage data (e.g., comments/star activity). Contact us at support@radish.org for questions.

2. User Data We Collect

Personal Information

Name, email, mailing address, licensure details (e.g., NPI, license number, photo identification), and demographics provided during registration.

Non-PHI/PII Images

Anonymized radiology images (e.g., X-rays) without patient identifiers (e.g., names, dates, medical record numbers).

Usage Data

Comments, star and mobile app interactions.

3. How We Use User Data

  • • To provide and improve the Site (e.g., case-sharing, star)
  • • To verify eligibility (e.g., licensure via CMS NPI Registry or medical boards).
  • • To contact you (e.g., updates, notifications).
  • • To comply with laws (e.g., HIPAA, CCPA, CPRA, CIPA, CMIA, NY SHIELD Act, NY HIPAA).

4. User Data Sharing

We do not share user data except with service providers (e.g., Supabase for database, hosting and storage) under strict data processing agreements or as required by law (e.g., law enforcement requests).

Images are not shared and are deleted in accordance with New York state law.

Supabase infrastructure complies with industry-standard security practices and data protection requirements.

5. User Data Security

User Responsibility

You are responsible for ensuring images are free of patient identifiers (e.g., names, dates, medical record numbers) via in-app warnings, visual prompts, and training.

Security Measures

We utilize Supabase's security infrastructure, including database-level security policies, row-level security (RLS), encrypted connections, and access controls to protect user data.

Data Breach Notification

In case of a data breach, we will notify affected users and relevant authorities without undue delay, in accordance with applicable laws. Notifications involving PII/PHI breaches will occur in accordance with HIPAA and, if applicable, state requirements. Notifications will use your registered email or in-app notifications.

Shared Responsibility

While we take reasonable measures to secure user data, no system is completely immune to breaches. You are responsible for maintaining the confidentiality of your login credentials.

6. Changes to Privacy Policy

We may update this Privacy Policy notified by email or in the App. Your continued use of the App constitutes your consent to the terms of the Privacy Policy.

7. Contact

In the event you need to contact us, please contact us at:

Radish Group LLC

254 Chapman Rd, Ste 208 #24081
Newark, Delaware 19702 US

Questions About Your Privacy?

Our privacy team is here to help. Contact us anytime with questions or concerns about how we protect your information.