Your record is yours.
Plumm is an early prototype operated by Kushal. Updated 16 September 2026.
We store your username, a salted password hash, and the migraine information you choose to save, including prior versions of corrected records. Cloudflare hosts the service and database. OAuth tokens authorize the assistants you connect.
Requested records are returned to your connected assistant. Its own data policy applies to that copy. We do not sell your data, serve advertising or use your records to train models. We do not deliberately log symptom text or credentials in application logs.
Records remain until you delete them. Minimal write receipts (random IDs and request hashes, without symptom text) remain to prevent delayed retries from recreating deleted records. Ask Plumm to export your history, delete an episode (including its revisions), or delete all health records. Disconnecting an assistant does not delete stored records. Previously issued access tokens expire within one hour; ask support to revoke account access if needed. Deletion cannot remove copies already included in an assistant conversation. Cloudflare recovery backups can persist for up to 30 days.
For account deletion, first delete your health records through the connector, then contact support with your username. Do not email health information or your password. This prototype has no password-recovery service.
Use Plumm for your own self-reported observations. Do not upload provider records or other people's health information.