1. Who we are
ICDwise ("we," "us," or "our") operates the website icdwise.com — a free reference tool for ICD-10-CM medical diagnosis codes. ICDwise is an independent reference site and is not affiliated with the U.S. government, CMS, NCHS, or the American Medical Association.
2. What data we collect
We collect the minimum data necessary to operate the service:
- Search queries — the terms you type into the search box, used to return results and improve search quality. We do not link search queries to individual identities.
- Anonymous usage analytics — pages visited, time on site, browser type, and approximate country (not city or street level). Collected via Cloudflare Web Analytics, which is privacy-preserving and does not use cookies or fingerprinting.
- Feedback submissions — if you submit feedback via the feedback form, we collect your message, the feedback type, and optionally your email address if you provide it.
3. What data we do NOT collect
- Patient names, medical record numbers, or any Protected Health Information (PHI)
- Social Security numbers or government IDs
- Payment or financial information
- Precise location data
- Data from children under 13
ICDwise is a code reference tool only. You should never enter patient-identifiable information into this site. We are not a HIPAA-covered entity and are not designed to handle PHI.
4. Cookies and local storage
ICDwise uses your browser's localStorage (not cookies) to save:
- Your saved/favourite codes
- Your theme preference (light or dark mode)
- Feedback you have submitted (local copy only)
This data stays entirely on your device. It is never transmitted to our servers. You can clear it at any time by clearing your browser's site data for icdwise.com.
We do not use advertising cookies, tracking cookies, or third-party cookies of any kind.
5. How we use your data
- To return search results relevant to your query
- To improve the accuracy and speed of the search function
- To understand which features are used most
- To respond to feedback if you provided an email address
- To detect and prevent abuse (rate limiting, bot protection)
We do not use your data for advertising. We do not sell, rent, or share your data with third parties for marketing purposes.
6. Data sharing
We share data only in these limited circumstances:
- Cloudflare — our hosting and CDN provider processes traffic on our behalf. Cloudflare's privacy policy applies to infrastructure-level data.
- Legal requirement — if required by law, court order, or governmental authority, we may disclose information as required.
We share no data for advertising, analytics resale, or any commercial purpose beyond operating icdwise.com.
7. Data retention
- Search queries — not stored permanently. Cloudflare retains infrastructure logs for up to 30 days for security purposes.
- Feedback submissions — retained until reviewed and actioned, then deleted.
- Local storage data — retained on your device until you clear it.
8. Your rights
Depending on your location, you may have the following rights:
- Access — request a copy of any personal data we hold about you
- Deletion — request deletion of your personal data
- Correction — request correction of inaccurate data
- Objection — object to processing of your data
To exercise any of these rights, contact us at the email below. Because we collect minimal data and do not link it to identities, we may be unable to locate data associated with you specifically without additional information.
9. GDPR (European users)
If you are located in the European Economic Area (EEA), your data is processed under the lawful basis of legitimate interests (operating and improving the service) and consent (for optional feedback submissions). You have the right to lodge a complaint with your local data protection authority.
10. HIPAA
ICDwise is not a HIPAA-covered entity and is not a Business Associate. This site processes no Protected Health Information (PHI). If you are a healthcare provider or covered entity, do not use this site to process, transmit, or store patient data.
11. Children's privacy
ICDwise is not directed at children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, contact us and we will delete it promptly.
12. Security
We implement industry-standard security measures including HTTPS encryption, rate limiting, bot protection via Cloudflare, and parameterized database queries. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
13. Changes to this policy
We may update this policy from time to time. We will update the "Last updated" date at the top of this page. Continued use of ICDwise after changes constitutes acceptance of the updated policy.
14. Contact us
For privacy-related questions, requests, or concerns:
- Email: [email protected]
- Website: icdwise.com
We will respond to privacy requests within 30 days.