Privacy Policy
The Breast Cancer Portal of Bangladesh (BCPBD), hosted by the Department of Genetic Engineering and Biotechnology (GEB) at the University of Dhaka, is committed to safeguarding the privacy and security of researchers, clinical contributors, and public users.
De-identified Data
No directly identifiable personal health information (PHI) is ever exposed or distributed through the platform.
Strict Access Control
Dataset uploads and raw cohort records require verified researcher authorization and authenticated sessions.
Transparent Processing
Third-party authenticators (such as Google OAuth) are solely utilized for identity verification and account creation.
1Information We Collect
When you interact with the BCPBD platform, we may collect and process the following categories of information:
- User Profile Details: When you register an account or sign in with Google OAuth, we receive your basic profile data: your full name, institutional/personal email address, and unique account identifier.
- Research Metadata & Cohorts: Metadata uploaded by authorized researchers, including clinical variables (e.g., tumor stage, ER/PR/HER2 status), sample accession codes, and statistical parameters.
- Technical Log Data: Standard server logs, including browser type, IP address, request timestamps, and referring URLs, used strictly for system security and audit trails.
2Clinical and Patient Data Protection
The BCPBD platform adheres to rigorous international and national bioethics protocols:
All clinical records imported or deposited into BCPBD undergo strict de-identification before integration. Names, national ID numbers, hospital registration numbers, and phone numbers are stripped or replaced with anonymous study identifiers.
Data contributors are required to affirm that clinical cohorts were collected under appropriate institutional ethical clearances (e.g., BMRC or institutional review board approvals) with informed participant consent.
3Third-Party Services & Google OAuth
BCPBD supports Single Sign-On (SSO) via Google Identity Services to streamline access for researchers and academic personnel:
- We only request read-only access to your basic identity scopes (
openid,email, andprofile). - We do not access your Google Drive, Gmail, contacts, or any other personal Google services.
- Your Google authentication token is securely verified against Google’s public key infrastructure on our Django server, and is never sold, traded, or transferred to third-party commercial entities.
4Data Retention & Security Measures
We implement industry-standard security practices, including TLS/HTTPS encryption in transit, strict database session controls, parameter sanitization, and isolated storage for private datasets. Information is retained for as long as your academic account remains active or as required to fulfill scientific reproducibility mandates.
5Contact and Inquiries
If you have any questions, concerns, or requests regarding this Privacy Policy or your personal information, please contact the Principal Investigator:
Dr. Jesmin (Professor & Principal Investigator)
Department of Genetic Engineering and Biotechnology
Faculty of Biological Sciences, University of Dhaka, Dhaka-1000, Bangladesh
Email: [email protected] | Telephone: 9661900-73/7819

