Skip to main content

Privacy

What this site measures

The pages use Google Analytics 4 to count visits. Its advertising features are off, and it does not load at all if your browser asks not to be tracked.

What Google Analytics records

When a page loads, Google Analytics records a page view: the page's address, the page you came from, your browser, device type and screen size, and an approximate location. Google derives that location from your IP address and says it does not store the address itself. It also records some interactions Google turns on by default, such as scrolling to the bottom of a page, clicking a link that leaves this site, and downloading a file such as dataset.csv.

The page address is sent without its query string, and the page you came from as its site alone, or as its address without a query string when it is a page of this site.

On the compliance bundle pages

The compliance report bundle pages also record three steps toward a purchase: that the plans on sale were shown, that a checkout link was followed, and that Stripe sent a buyer back after paying. Each carries the plan and its price in dollars. The purchase carries an order number made by hashing Stripe's order reference, so the reference itself is never sent. Nothing typed into the setup form is ever recorded. To connect the purchase to the plan chosen, the plan is kept in this tab's session storage under fhir-scorecard:checkout from the checkout click until Stripe sends you back.

It sets two first-party cookies, _ga and _ga_…, which let it tell a returning browser from a new one. They last up to two years. Google LLC receives and stores the data, and this project keeps it for 14 months.

What is switched off

Google signals and ad personalization are off, and the advertising consent settings are denied for every visitor. Nothing collected here is used to show you ads, joined to a Google account, or sold. This project has no ad account and no other analytics tool.

Visitors in Europe, the UK and Switzerland

If you are in the European Economic Area, the United Kingdom or Switzerland, analytics storage defaults to denied. Google Analytics sets no cookie for you, but it still sends Google a cookieless ping for each page view, without an identifier that links one visit to the next.

How to turn it off

Google Analytics does not load at all if your browser sends Global Privacy Control or Do Not Track. You can also use the Opt out of analytics button at the foot of every page. It stores fhir-scorecard:analytics-opt-out in this browser's local storage, not in a cookie, and every page checks it before loading anything from Google. Opting out also removes fhir-scorecard:checkout. It covers this browser on this device only, clearing the site's data clears it, and it does not delete Google cookies already set. The same button reads Opt back in once you have opted out.

What is never tracked

The data files, dataset.csv, scorecards.json and the api/ tree, the Atom feeds and the badge images carry no script. A program or feed reader that fetches them is not counted. A click on a download link from one of these pages may be counted as a download.

Hosting

The site is static files served by GitHub Pages. GitHub receives each request for a page, as any web host does, and its own handling of that is covered by the GitHub General Privacy Statement. This project sees no server log.

The probes are a different thing

This page is about people reading the site. What the project does to the FHIR servers it grades is stated separately, in our probe contract: two public discovery documents per endpoint, never authenticated, and never any patient data.