Privacy Policy
Last updated April 2026
The short version
Your health data belongs to you. We collect only what is necessary to run the app, we don't sell or share it with anyone, and we don't use it to serve you ads. You can delete everything at any time.
What we collect
- Your email address — used only for passwordless sign-in. We send you a one-time code when you log in and nothing else.
- The data you enter — symptom names, daily intensity ratings, context factors, and notes. This is the product; it lives in your account and nowhere else.
- Timezone — detected automatically on sign-in so your calendar days align with your local time. Never used for anything else.
- Subscription status — whether your account is on the free or premium plan. Processed via Stripe; we never see your card details.
What we do not collect
- No advertising trackers or analytics pixels
- No third-party data sharing or data brokering
- No behavioural profiling
- No cookies beyond what is required for your login session
Where your data is stored
All data is stored in Supabase, a managed Postgres database with row-level security. This means your data is protected at the database level — queries can only return rows that belong to your account, even in the event of an application-level bug. Supabase infrastructure is hosted on AWS.
Payments
Premium subscriptions are processed by Stripe. We never see or store your card number. Stripe's privacy policy applies to payment data.
Your rights
- Delete your account — you can delete all your data from the Settings page at any time. Deletion is permanent and irreversible.
- Export your data — you can export a CSV of your log entries from the Settings page.
- Access or correction — contact us by email and we will respond within 14 days.
Changes to this policy
If we make material changes, we will update the date at the top of this page. We will not retroactively weaken the protections described here without giving you the opportunity to delete your account first.
Contact
Questions or requests: hello@painintheapp.ai