Skip to content
MoonlightMD

Privacy

Designed to collect as little as possible.

The calculator and comparison work without an account. If you create one, MoonlightMD stores only what you enter to plan and track side income. Here is exactly how that works.

Never enter patient information or PHI into MoonlightMD.

MoonlightMD needs compensation, time, and expense figures — never clinical cases or patient details. Free-text fields are screened for obvious patient identifiers, but that is a safeguard, not a guarantee. MoonlightMD is not a medical records system and does not claim HIPAA compliance.

Without an account

The calculator and comparison run entirely in your browser. What you type is not sent to a MoonlightMD server and is never placed in page URLs. To avoid losing work, entries are saved in your browser's localStorage on your device; use Reset or Start New Comparison to clear them. On a shared computer, reset when you're done.

With an account

Accounts are optional. Signing in uses a one-time email link or code — there is no password. We store:

  • Your email address, used only to sign you in.
  • Your profile: training stage, specialty, optional PGY level, the state(s) where you'd work, work-type and schedule preferences, available hours, and income goal.
  • Saved opportunities and scenarios, exactly as you enter them (including any notes or source URL you add).
  • AI planning history: the structured inputs sent and the plan returned, so you can revisit it.
  • AI usage records: the feature used, time, model, token counts, and outcome — for cost control and rate limits. Not the content.
  • Feedback you choose to send, linked to your account if you're signed in.

Signed-in sessions use essential authentication cookies. Each account's data is protected in the database by row-level security, so it is readable only by that account.

What MoonlightMD never asks for

  • NPI number, Social Security number, or date of birth
  • Home address or employer
  • Patient information, medical records, or any protected health information (PHI)
  • Bank or other financial account information

AI features

AI runs only when you press a button such as Build My Plan or Analyze Opportunity. MoonlightMD then sends the minimum needed to an AI provider (currently OpenAI):

  • Planning: your profile fields, goal, available time, and saved opportunities' figures and categories — labelled “Opportunity 1”, “Opportunity 2” rather than by the names you gave them — plus any optional note you add. Not your email, notes, or source URLs.
  • Import: the text you paste, after email addresses and phone numbers are removed. MoonlightMD does not store the pasted text; only what you review and save is kept.

Requests ask the provider not to store responses for later retrieval; the provider processes data under its own API terms and policies. Text that appears to contain patient identifiers is blocked before sending.

Compensation contributions

Contributing is voluntary and requires your consent each time. A contribution stores only the structured fields on the form (such as specialty, state, category, compensation, and time estimates) and an optional short note — never your name or email. It is linked to your account internally, only to prevent abuse and let you delete it; that link is never shown to anyone.

Contributions are used only in aggregate. Statistics are shown only for groups of at least 10 submissions, and below that the count is not shown either. You can delete any of your contributions at any time.

Deleting your data

You can export all of your account data (JSON, or opportunities as CSV) from your profile. Deleting your account immediately removes your sign-in, profile, opportunities, scenarios, AI history, AI usage records, and feedback linked to your account. Your contributions are deleted too, unless you choose to keep them — in which case they are unlinked from any account and remain in the aggregated dataset.

Deleted data may persist in our database provider's encrypted backups for a limited period until those backups expire.

Analytics, cookies, and advertising

This deployment of MoonlightMD does not load an analytics service.

MoonlightMD does not show advertising and does not sell personal information.

Service providers

Like any website, MoonlightMD runs on third-party infrastructure: a hosting provider serves the site and may process standard request information (such as IP address and browser type) in operational logs; Supabase provides authentication and the database; and OpenAI processes AI requests you initiate. Each operates under its own privacy terms. MoonlightMD does not add calculator entries to page requests.