Privacy Policy
Last updated July 23, 2026
Recerta is an invite-only tool for tracking professional licenses and continuing education (CE). This policy explains what we collect, how we use it, who it's shared with, and the choices you have.
Information we collect
- Account — your name, email address, and a securely hashed password.
- Professional details — your profession or credential type, state, license numbers, and issue / expiration dates.
- CE records — the courses you log: titles, hours, categories, completion dates, and any certificate links or files you add.
- Technical — an encrypted session cookie that keeps you signed in, and basic device / browser information sent with your requests.
How we use your information
To track your licenses, calculate CE progress, flag missing state requirements, send you renewal reminders and completion summaries, and answer your questions through the in-app assistant. We do not sell your personal information.
Service providers
We share data only with the providers that help us operate Recerta:
- Hosting — Vercel.
- Database — a managed database provider (Neon / Postgres).
- Email — Resend delivers your reminder and completion emails.
- AI assistant & accuracy checks— Anthropic (Claude). When you use the Cera assistant, or when the requirement-accuracy agent runs, the relevant text — your question and recent chat, or the requirement being checked — is sent to Anthropic to generate a response, which may include a web search. Please don't enter anything you wouldn't want processed this way.
How we protect your information
Passwords are stored hashed, never in plain text. Two-factor authentication is required on every account. Sessions use encrypted, HTTP-only cookies. New accounts require administrator approval before they can access anything. In production the service is served over HTTPS. No method of storage or transmission is perfectly secure, but we use measures appropriate to the information we hold, and we collect only what we need.
HIPAA
Recerta stores professional licensing and CE information — not patient records or other protected health information (PHI). Storing this information does not make Recerta a HIPAA business associate. Please do not enter patient information into Recerta.
Your choices
You can request a copy, correction, or deletion of your information at any time by contacting your administrator or privacy@recerta.net. Administrators can update or delete accounts and their associated records.
Data retention
We keep your information while your account is active and delete it on request or when your account is removed.
Changes to this policy
We'll post any changes on this page and update the date above.
Contact
Questions about your privacy? Email privacy@recerta.net.