Last updated: July 2026
MiOLO.AI is operated by Dr. Bruno L. Miolo, MD, M.Sc. (UNIFESP), responsible for data processing decisions in accordance with the Brazilian General Data Protection Law (Lei Geral de Proteção de Dados — LGPD, Law 13.709/2018).
This platform does not collect, store, or transmit any patient names, dates of birth, or other patient identifiers. Patient identification used in the PDF export and in the Surgeon Area (“My Surgical Cases”) is processed and stored exclusively on your own device, inside an encrypted local vault in your browser. It is never sent to our servers, never stored in any database, and never logged. This architectural guarantee means patient identity physically cannot be accessed by MiOLO.AI.
MiOLO.AI employs a privacy-by-design architecture with suppression-based anonymization. Patient-identifying information entered in the PDF export feature exists only in the browser's volatile memory during PDF generation and is immediately discarded. No Named Entity Recognition (NER) or re-identification is possible because identifying data never leaves the user's device. Biometric measurements submitted to the public calculators are processed in real time and are not stored, logged, or associated with any individual.
If you opt in to the Surgeon Area, the platform stores, linked to your professional account, an anonymized clinical record of each case you choose to save: biometric measurements (e.g., axial length, keratometry, anterior chamber depth), the clinical class of the cornea (e.g., virgin cornea, post-refractive surgery, keratoconus), the implanted IOL and calculation snapshot, post-operative refractive outcomes, and non-identifying demographic attributes limited to sex and age band (e.g., “60–69”). The patient's date of birth is used only inside your browser to derive the age band and is never transmitted.
The patient's identity (name, date of birth, external record number) is stored only in an encrypted vault on your device, under your control, and maps to the anonymized record through a random identifier. MiOLO.AI cannot re-identify any patient from the data it stores.
Anonymized clinical records are used to (a) provide your case management, post-operative tracking and personal SIA analytics, and (b) improve and develop the platform's calculation models. Legal basis: your consent (Art. 7, I, LGPD), given on first access to the Surgeon Area and revocable at any time. Records you archive are excluded from model development thereafter.
The processing of personal data on this platform is based on: (a) consent, for account creation and for the Surgeon Area; (b) legitimate interest, for providing clinical decision support tools to qualified healthcare professionals; and (c) compliance with legal obligations, where applicable.
If you create an account, only your email address and optional display name are collected for authentication purposes via Supabase Auth. We do not share this information with third parties. Account data is stored on Supabase infrastructure (United States) with encryption at rest and in transit.
In accordance with the LGPD, you have the right to: (a) confirm the existence of data processing; (b) access your data; (c) correct incomplete, inaccurate, or outdated data; (d) anonymize, block, or delete unnecessary or excessive data; (e) request data portability; (f) delete personal data processed with your consent; (g) obtain information about entities with which your data has been shared; (h) be informed about the possibility of denying consent and its consequences; and (i) revoke consent at any time. To exercise these rights, contact us at the email address provided below.
This site uses only essential cookies required for authentication (Supabase session cookies) and user preference storage (language, theme) via localStorage. The Surgeon Area additionally uses your browser's local database (IndexedDB) to hold the encrypted patient-identity vault on your device. No tracking, analytics, or third-party cookies are used. See our Cookie Policy for details.
Patient identity is never retained by MiOLO.AI — it never leaves your device. Anonymized clinical records in the Surgeon Area are retained while your account is active or until you archive them. User account data (email, display name) is retained for as long as the account is active. Upon account deletion, account data and the link between your account and its anonymized records are permanently removed.
All data transmission is encrypted using HTTPS/TLS. Clinical records are protected by per-user row-level security: each surgeon can only access their own records. The backend API employs security headers, rate limiting, CORS whitelisting, and input validation. We do not sell, share, or monetize any data.
Authentication data is processed by Supabase (hosted in the United States). The calculation API is hosted on Railway (United States). No patient-identifying data is transmitted to or stored on any server. Anonymized clinical records of the Surgeon Area are stored on Supabase infrastructure with encryption at rest and in transit.
This platform is designed to comply with the LGPD (Brazil), GDPR (EU), and HIPAA (USA) by architecturally preventing the collection or processing of patient-identifying health information. The privacy-by-design approach ensures compliance regardless of jurisdiction.
For privacy inquiries, data subject rights requests, or to contact the Data Protection Officer: