Last updated: 2026-09-09
health is a private health and performance application. It brings together data from wearables, training platforms and manually entered health results, and turns them into personal trends, baselines and a daily health State. This policy explains which personal data health processes, why, where it is stored, and how you can remove it.
health is not a medical device. It does not provide diagnoses, treatment or medical advice.
The party responsible for processing personal data in health is:
[Data Controller Name]
[Address]
[Postal Code, City]
[Country]
[Privacy Contact Email]
Values shown in brackets are placeholders and are maintained in one central configuration file of the application.
health only accesses a third-party service after you have explicitly authorised it through that provider's own OAuth consent screen. No data is retrieved before you grant access, and only the permissions health actually needs are requested. You can withdraw the authorisation at any time, in health and in the provider's own account settings.
If you connect WHOOP, health may process the following data, depending on the permissions you grant:
The permissions requested are: read:recovery, read:cycles, read:sleep, read:workout, read:profile and read:body_measurement. WHOOP remains the source of the data; health stores an imported copy so it can calculate trends and personal baselines over time.
If you connect Strava, health may process:
Weight entries, blood test results and performance or lactate diagnostics are processed only because you enter or upload them yourself. Uploaded documents and any values extracted from them are treated as health data and are visible only to your own account.
Health data is processed on the basis of your explicit consent, which you give by creating an account, connecting a service or entering data, and which you can withdraw at any time.
Data is stored in the managed cloud database and storage backing health. Access is restricted per user at the database level, so one account can never read another account's data. Provider access and refresh tokens are stored server-side only and are never sent to the browser or kept in browser storage.
Where you use AI-assisted interpretation, the relevant subset of your data may be sent to a model provider to generate an explanation. This happens only for features you actively use. AI output is an interpretation aid, not a medical statement, and the deterministic health State calculation itself does not depend on a model.
health does not sell personal data and does not share it for advertising. Data is disclosed only to the technical service providers required to run the application (hosting, database, authentication, and — where you use those features — the AI provider), and to the third-party services you have connected, for the purpose of retrieving your own data.
Data is retained while your account exists, so that long-term trends and baselines remain meaningful. Technical logs are kept for a limited period for operational and security reasons. When you delete data or your account, it is removed from the production database.
Traffic is encrypted in transit. Access to your rows is enforced per user at the database level. Provider credentials and webhook secrets exist only in server-side configuration. OAuth flows are protected with a signed, time-limited state value to prevent cross-site request forgery. No online service can be guaranteed to be absolutely secure.
You can disconnect WHOOP or Strava at any time on the Sources page. Disconnecting removes the stored credentials from health and stops all further data retrieval, and the authorisation is revoked at the provider where technically supported. Disconnecting alone does not delete data that has already been imported — that stays available for your history until you ask for it to be deleted.
You can delete individual entries, such as weight measurements or uploaded documents, in the application. To delete imported provider data or your entire account, contact [Privacy Contact Email]. Deletion requests are carried out without undue delay.
Subject to applicable law, you have the right to access your data, to have inaccurate data corrected, to have data deleted, to restrict or object to processing, to receive your data in a portable format, and to withdraw consent at any time with effect for the future. You also have the right to lodge a complaint with your competent supervisory authority.
For any privacy question or request, contact [Data Controller Name] at [Privacy Contact Email].
This policy may be updated as health evolves or as new data sources are added. The current version is always available at https://your-body-signal.lovable.app/privacy, with the date of the last update shown at the top of this page.