Privacy Policy
Effective March 30, 2026
1. Information We Collect
We collect the following types of information:
- Account information: Email address and name, provided during registration
- Health data: Daily steps, sleep duration and stages, resting heart rate, and blood oxygen (SpO2) readings collected from your parent's smartwatch
- Family relationship data: Caregiver and parent profiles, family group associations
- Medical baseline: Health conditions and medications entered during onboarding
2. How We Use Your Information
- Generate weekly health insight emails for caregivers
- Improve our service and health analysis
- Communicate with you about your account and service updates
3. Data Storage & Security
Your data is stored in a cloud-hosted PostgreSQL database. All data is encrypted in transit using TLS. Access is restricted to authorised services only. We follow industry-standard security practices to protect your information.
4. Third-Party Services
We use the following services to operate CoNucleus. Each processes only the minimum data necessary to provide its function:
- Clerk — authentication and account management
- Resend — email delivery
- Vercel — application hosting
5. Data Sharing
We do not sell, rent, or share your personal or health data with third parties for marketing or advertising purposes. We may share data if required by law or to protect the rights and safety of our users.
6. Data Retention & Deletion
Your data is retained for as long as your account is active. You may request deletion of your account and all associated data at any time. Upon deletion, your data will be permanently removed within 30 days.
7. Your Rights
You have the right to:
- Access your personal data
- Correct inaccurate data
- Request deletion of your data
- Withdraw consent at any time
8. Changes to This Policy
We may update this policy from time to time. If we make significant changes, we will notify you via email.
9. Contact
For privacy inquiries, please get in touch.