✅ PRIVACY POLICY
Effective Date: April 9, 2025

This Privacy Policy explains how the Healthye mobile application ("Application") developed by Healthye Vibe LLC ("Company", "we", "us", or "our") collects, uses, and protects user information. We are committed to protecting your privacy and ensuring transparency in our data practices.

1. GENERAL PRINCIPLES
The Application does not require users to register, log in, or provide any personal information such as names, email addresses, or health records. No personal, biometric, or medical data that can identify an individual is collected or transmitted. All health-related information is processed locally on the user’s device and never leaves the device unless explicitly stated below.

We adhere to international data protection laws, including the General Data Protection Regulation (GDPR) and California Consumer Privacy Act (CCPA). You have the right to access, rectify, or request deletion of any data associated with your randomly generated UUID. To exercise these rights, contact us at support@healthye.co.

2. DATA WE COLLECT
We do not collect any information that directly identifies you. The only data we collect is anonymous and limited to the following:
- A randomly generated UUID (Universal Unique Identifier) created by Firebase Analytics upon first launch. It is used only for anonymous internal analytics and is not linked to your identity.
- Non-personal usage metrics such as screen views and feature usage (via Firebase and Amplitude).
- Subscription status — stored locally and not shared externally.
All data is anonymized and processed in aggregate.

3. USE OF DEVICE HARDWARE AND SERVICES
3.1. Camera and Flashlight
Used for heart rate and stress measurements. No photo or video is recorded or transmitted.

3.2. Bluetooth Access
You can connect third-party heart rate monitors. Data stays on the device.

3.3. Apple HealthKit
With your permission, HealthKit data is accessed and used only within the Application. It is never transmitted externally.

3.4. Remote RR Interval Processing
Anonymous RR intervals may be temporarily sent to Firebase Cloud Function for real-time HRV/stress analysis:
- No user identifiers (including UUID) are included.
- Data is transmitted over encrypted connections (HTTPS/TLS).
- Each request is processed in isolation—technically impossible to link to a user or device.
- Data is not stored or logged—it is deleted immediately after processing.
- The serverless function does not implement logging or caching mechanisms.
- Results are returned to your device and stored locally.

3.5. Realm and Local Storage
All health and measurement data is stored locally using the Realm database. Nothing is transmitted unless explicitly required and permitted by you.

Health metrics (e.g., pulse, HRV) are calculated using PPG and other algorithms for general wellness purposes only. The Application is not a medical device and does not provide diagnostic capabilities.

4. THIRD-PARTY SERVICES
- Firebase – analytics, crash logs, RR function processing.
- Amplitude – anonymous usage tracking (e.g., session counts, feature engagement).

We use Firebase and Amplitude solely for aggregated analytics (e.g., crash reports, feature usage). No personally identifiable information (PII) or health data is shared with these services. No ads or behavioral tracking. All communication is encrypted.

5. DATA STORAGE AND SECURITY
All locally stored data is protected by your device’s built-in security features. We do not store personal or health data on external servers, except for temporary RR interval processing as described in Section 3.4.

Firebase employs industry-standard encryption and security measures for data transmission. However, no method of electronic storage is 100% secure—we cannot guarantee absolute security but implement best practices to protect your information.

6. CHILDREN’S PRIVACY
The Application is not intended for children under 13. If you believe a child is using it, contact us.

7. USER RIGHTS
You can delete all collected data by uninstalling the Application. If you wish to request deletion of your anonymous analytics UUID, visit https://healthye.co/deletion or contact us at support@healthye.co.

8. COOKIES AND TRACKING
We do not use cookies, advertising IDs, or web tracking.

9. CHANGES TO THIS POLICY
We may update this Privacy Policy. Continued use implies acceptance.

10. CONTACT US
Healthye Vibe LLC
Email: support@healthye.co
Website: https://healthye.co

Your use of the Application is also governed by our Terms of Use.
Made on
Tilda