Legal draft

Privacy Policy

A plain-language privacy draft for the Phase 1 website.

Data we expect to collect

Account details, intake answers, daily health scores, supplement tracking, notes, chat messages, and billing identifiers once payments are enabled.

Health data boundary

The product should not accept real protected health information until Supabase, vendor agreements, audit logging, and legal review are complete.

Data controls

The product roadmap includes export and delete-account controls in settings. Those controls are required before a public launch with real users.

Analytics

Analytics should avoid health details, medical text, symptom notes, supplement notes, or any other sensitive user content.

This is implementation copy for Phase 1, not a substitute for attorney-reviewed launch documents.