Last updated 8 September 2026

Privacy Policy

GLP-1 Simple is built so that the sensitive information you record stays private to your account. This policy explains what we collect, why, how long we keep it, and the control you have over it.

Version 1.0

1. Information you provide

Account details: email address, password (stored only as a secure hash), display name, time zone and preferences.

Health information you choose to record: weight and body measurements, injections and the prescribed dose recorded by you, meals and meal plans, hydration, protein, appetite ratings, symptoms, activity and sleep, goals, weekly reflections and questions for your clinician.

Support messages you send us, and the consents you give when you accept our Terms, Privacy Policy and Medical Disclaimer (recorded with the document version and the date accepted).

You decide what to record. Every health field is optional and can be left blank, edited or deleted.

2. Information collected automatically

Privacy-safe product events, such as which screen was opened or whether a feature was used. These events never contain the contents of your health records.

Technical logs needed for security and reliability, such as request timestamps, device or browser type, approximate region and error reports.

If you arrive from a referral or campaign link, we record the referral code and campaign labels so we can credit the referral. We do not use tracking cookies for advertising.

3. Why we use your information

To operate your account and show your own records back to you; to produce the summaries, charts and reports you request; to process subscription payments; to send service messages such as receipts, security notices and material changes to these documents; to provide support you ask for; and to detect and prevent abuse or fraud.

We do not sell your information, we do not share health records with advertisers, and we do not use your health records to train third-party models.

4. Legal bases (where UK/EU law applies)

We process account data to perform our contract with you; health data on the basis of your explicit consent, which you give during onboarding and may withdraw by deleting your data or your account; payment and record-keeping data to meet legal obligations; and limited security and product-improvement processing on the basis of our legitimate interests.

5. Who can access your records

Your health records are readable only by your own signed-in account. Access rules are enforced at the database level, so other users cannot read your data.

Our staff do not browse health records. Administrative tools expose account and subscription information only. In the rare case where support requires access to diagnose a problem, we will ask for your permission first.

Service providers who process data on our behalf under contract: our cloud hosting and database provider, our payment provider (which handles card details directly — we never receive your full card number), and our transactional email provider. They may act only on our instructions.

We may disclose information if required by valid legal process, or to protect the rights, safety or security of users or the public.

6. Where data is stored and international transfers

Data is stored on managed cloud infrastructure in the United States. If you use the service from outside the United States, your information will be transferred there and protected by appropriate safeguards, including standard contractual clauses with our providers where required.

7. Security

Data is encrypted in transit and at rest. Access is authenticated per user and enforced with row-level security rules. Internal access is restricted, logged and limited to the minimum necessary.

No system is perfectly secure. If a breach affects your personal data, we will notify you and any required regulator without undue delay.

8. How long we keep information

Health records and account data are kept while your account exists. When you delete your data or close your account, records are permanently removed from live systems immediately and purged from encrypted backups within 30 days.

Payment and tax records are retained for as long as accounting law requires. Consent records are kept for as long as needed to evidence the consent, and aggregate de-identified statistics may be kept indefinitely.

9. Your rights and choices

From the Privacy Centre in the app you can export everything you recorded as a file, correct or delete individual entries, delete all your data, or close your account. Deletion is permanent and cannot be undone.

Depending on where you live you may also have the right to access, correct, delete or port your data, to object to or restrict certain processing, to withdraw consent, and to complain to your data protection authority. Contact support@glp1simple.app and we will respond within 30 days.

You can opt out of non-essential email at any time. We will still send essential service messages such as receipts and security notices.

10. Children

GLP-1 Simple is not intended for anyone under 18 and we do not knowingly collect information from children. If we learn that we have, we will delete it.

11. Not a HIPAA covered entity

GLP-1 Simple is a personal tracking application sold directly to individuals. It is not a healthcare provider, health plan or clearinghouse, and does not claim HIPAA covered-entity status. Information you choose to share with your clinician — for example by printing a report — is then governed by their own privacy practices.

12. Changes and contact

If we make a material change to this policy we will notify you in the app or by email before it takes effect, and record your acknowledgement where required.

Privacy questions and requests: support@glp1simple.app.