Data Protection & GDPR Article 9Last Updated & Clinically Reviewed: September 2026

Patient Privacy Policy & Security Charter

Your medical privacy is paramount. Learn how CBPM Registry protects special category health data, enforces cryptographic 48-hour document purges, and rejects commercial data tracking.

Our Commitment to Patient Anonymity

In the United Kingdom, being a medical cannabis patient constitutes Special Category Personal Data under Article 9 of the UK General Data Protection Regulation (UK GDPR) and the Data Protection Act 2018. Due to residual social stigma and sensitive clinical considerations, CBPM Registry is engineered around privacy-by-design and strict data minimisation principles.

We do not require real legal names for patient accounts, we encourage pseudonymity across all forum discussions, and we strictly refuse to monetize or broker patient behavioral data.

The 48-Hour Automated Document Purge Protocol

To unlock verified patient privileges (such as high-weight stock quorum voting and verified medication reviews), users may voluntarily submit proof of their valid UK prescription (e.g. an FP10 prescription copy or clinic confirmation letter).

1. KMS In-Transit Encryption

All uploaded documents are encrypted using AWS Key Management Service (KMS) with AES-256-GCM before writing to secure object vaults.

2. Manual Vetted Review

Documents are inspected solely by authorized clinical moderators to verify clinic legitimacy and active prescription dates.

3. Hard Purge Within 48h

An automated BullMQ background purge daemon permanently deletes the physical file and shred metadata within 48 hours of review.

Data Minimisation Scope

Data We Collect (Strict Minimum)
  • Pseudonymous Account Data: Username, encrypted password hash (bcrypt salt rounds ≥ 12), and optional email address used for password recovery.
  • Patient Telemetry: Public community thread posts, strain review ratings, formulary watchlist selections, and inventory stock reports.
  • Security Logs: Transient IP address logs retained for up to 7 days strictly for rate-limiting, DDoS mitigation, and brute-force prevention.
Data We NEVER Collect or Store
  • Government IDs & NHS Numbers: We never request National Insurance numbers, NHS digital IDs, or physical home addresses.
  • Financial or Payment Credentials: All access to CBPM Registry is completely free; no credit card or banking details are ever captured.
  • Cross-Site Marketing Trackers: No Meta Pixel, no Google Ads re-targeting, and no behavioral profiling brokers.

Cookies & Local Storage Policy

In compliance with the Privacy and Electronic Communications Regulations (PECR), CBPM Registry employs only strictly necessary functional cookies and client-side storage:

Cookie / KeyTypePurposeLifespan
cbpm_session_tokenHttpOnly, SecureCryptographically secure session token maintaining logged-in state.30 Days
theme_modeLocalStorageRemembers UI dark mode preferences across browser tabs.Persistent
formulary_filtersSessionStoragePreserves your active strain filter settings while navigating directory.Session

Your Rights & Immediate Erasure

Under UK GDPR, you maintain comprehensive rights over your data, including the Right to Erasure ("Right to be Forgotten"). If you decide to terminate your membership:

  • Instant Self-Deletion: From your user profile settings, you can initiate immediate deletion of your account.
  • Cascade Scrubbing: All personal profile records, watchlist associations, session tokens, and encrypted credentials are immediately wiped from our production database.
  • Forum Anonymization: Public community posts are permanently disassociated from your user ID and attributed to an anonymous pseudonym to preserve thread continuity without retaining personal identity.
Data Protection Officer Contact
For formal Subject Access Requests (SAR) or privacy inquiries:
privacy@cbpmregistry.com