Synk AI Privacy Policy
Last Updated: January 5, 2026
This Privacy Policy applies when you interact with us through the Synk AI mobile application ("App"), our website (if applicable), and/or through any other feature or service owned or controlled by Synk AI ("Synk AI", "we", or "us") that posts, links to, or references this Privacy Policy (collectively, the "Service(s)"). This Privacy Policy informs you of our practices regarding the collection, use, and disclosure of personal information we receive from users of our Services. By accessing or using the Services, you consent to our Privacy Policy and our collection, use, and disclosure of your information as described in this policy, our Terms of Use, and any additional policies and terms you may agree to in connection with the Services.
1. Collection of Information
We and our third-party service providers and business partners may collect information from you directly and/or automatically when you use the App or Services. Some of this information may be considered "personal information" or "personal data" under applicable laws (collectively, "personal information"). We consider information that identifies you as a specific, identified individual (such as your name, email address, and account credentials) to be personal information.
We may, in accordance with applicable law, take your personal information and de-identify or pseudonymize it to make it non-personally identifiable. We maintain and use de-identified or pseudonymized data without attempting to re-identify it, except where permitted by applicable law. We will treat de-identified or pseudonymized information as non-personal to the fullest extent allowed by applicable law.
We may collect the following categories of personal information from or about you:
1.1 Information You Provide Directly
- Account Information: When you create an account, we collect your email address, display name (optional), and authentication credentials. If you choose to sign in through Apple Sign-In, we receive the associated user ID and email address (if you choose to share it).
- Profile Information: You may optionally provide additional profile information such as your age, profile photo, and preferences for notifications and app settings.
- Health and Wellness Data: As a health and goal-tracking application, you may provide us with:
- Goals you create (habits, daily tasks, to-dos, health objectives)
- Progress tracking data (completion status, streaks, check-ins)
- Health metrics you manually enter (weight, mood, custom metrics)
- Notes and journal entries related to your health and wellness journey
- Achievements and milestones
- Payment Information: All payments are handled by our third-party payment providers (Apple App Store or Google Play Store). We do not directly collect or store your payment card information. Our payment providers may collect billing information necessary to complete your transaction.
1.2 Information We Collect Automatically
- Usage Information: We automatically collect information about how you use the App, including:
- Features you use and frequency of use
- Goals and habits you track
- App sessions (duration, frequency, time of day)
- Device information (model, operating system version, device identifiers)
- IP address and approximate location (country/region level)
- Crash reports and error logs for app performance improvement
- Cookies and Similar Technologies: We may use cookies, pixels, and similar technologies for analytics and app functionality. However, our mobile app primarily uses native device identifiers and session tokens rather than web-based cookies.
1.3 Apple Health and HealthKit Data
If you choose to connect Synk AI with Apple Health, we may access and sync the following data types based on your explicit permission:
- Activity data (steps, active energy, exercise minutes)
- Body measurements (weight, body mass index)
- Sleep data (sleep duration, sleep analysis)
- Mindfulness minutes
- Heart rate data
- Nutrition data (water intake, nutrients)
- Any other health data types you explicitly authorize
Important:
- You control which health data types Synk AI can access through iOS Settings
- Health data from Apple Health is stored locally on your device and in your iCloud account (if enabled)
- We do not sell or share Apple Health data with third parties for advertising purposes
- You can revoke Synk AI's access to Apple Health at any time through iOS Settings
1.4 Location Data
We do not collect your precise GPS location. We may collect approximate location information (country/region) through your IP address for analytics and to provide region-appropriate content. You can manage location permissions through your device settings.
1.5 Information We Do NOT Collect
Sensitive Personal Information: We do not intentionally collect:
- Racial or ethnic origin
- Political opinions or religious beliefs
- Genetic or biometric data (unless you explicitly choose to track such metrics)
- Medical diagnoses or treatment information
- Sexual orientation
- Social Security numbers or government-issued identification numbers
If you inadvertently include such information in free-form text fields (notes, journal entries), please know that we treat all user-generated content with appropriate security measures, but we encourage you to avoid sharing highly sensitive medical information within the App.
2. Purpose and Use of Information We Collect
We use the information we collect for the following purposes:
Provide and Improve Services
- Enable you to create, track, and manage your health goals and habits
- Sync your data across your devices
- Calculate streaks, achievements, and progress metrics
- Generate insights and visualizations of your health journey
- Provide personalized recommendations and reminders
- Troubleshoot technical issues and improve app performance
Communication
- Send transactional notifications (reminders, achievement notifications)
- Respond to your support inquiries
- Send important updates about the App or policy changes
- Send optional marketing communications (only with your consent, which can be withdrawn at any time)
Analytics and Research
- Understand how users interact with Synk AI to improve features
- Analyze usage patterns to develop new features
- Conduct aggregated, de-identified research on health tracking behaviors
- Monitor app performance and identify bugs
Security and Compliance
- Detect and prevent fraud, abuse, or security threats
- Comply with legal obligations
- Enforce our Terms of Service
- Protect our rights and the rights of our users
Business Operations
- Process subscription payments
- Provide customer support
- Conduct internal business operations
- In connection with business transitions (merger, acquisition, sale of assets)
3. Health Data and Apple Health Integration
3.1 How We Handle Health Data
Synk AI takes your health data privacy extremely seriously. We comply with applicable health data protection regulations, including HIPAA (where applicable) and Apple's HealthKit guidelines.
Apple Health Data:
- Is accessed only with your explicit permission for specific data types
- Is stored primarily on your device and in your personal iCloud account
- Is encrypted both in transit and at rest when synced to our servers
- Is NOT sold, shared with advertisers, or used for marketing purposes
- Can be deleted at any time through the App settings
User-Entered Health Data:
- Data you manually enter in Synk AI (goals, habits, metrics, notes) is stored in our secure database
- This data is used solely to provide Services to you
- You can export or delete your data at any time
3.2 Data Sharing Limitations
We do NOT:
- Sell your health data to third parties
- Share your health data with advertisers
- Use your health data for purposes other than providing Services to you
- Share identifiable health data without your explicit consent
We MAY share aggregated, de-identified health statistics for research purposes, ensuring no individual can be identified.
4. Service Providers
We work with trusted third-party service providers who assist us in operating the App. These providers have access to your personal information only to perform specific tasks on our behalf and are obligated to protect your information.
| Service Provider | Purpose | Data Access |
|---|---|---|
| Supabase | Database and authentication | Account info, user data, health metrics |
| Apple iCloud | Data sync and backup | All app data (encrypted) |
| Apple App Store | Payment processing | Payment and subscription info |
| Google Play Store | Payment processing (Android) | Payment and subscription info |
| Sentry/Crashlytics | Error tracking and monitoring | Device info, crash logs (no personal data) |
| Email Service Provider | Transactional emails | Email address, name |
| Analytics Provider | Usage analytics | Device ID, usage patterns (anonymized) |
All service providers are contractually obligated to handle your data securely and only for the purposes we specify.
5. Security
We implement industry-standard security measures to protect your personal information:
Technical Safeguards:
- End-to-end encryption for data transmission (TLS 1.3)
- Encryption at rest for stored data (AES-256)
- Secure authentication protocols
- Regular security audits and vulnerability assessments
Organizational Safeguards:
- Access controls limiting employee access to personal data
- Regular security training for team members
- Incident response procedures
However, no method of electronic storage or transmission is 100% secure. While we strive to protect your information, we cannot guarantee absolute security. You use the Services at your own risk.
6. Data Retention
We retain your personal information for as long as your account is active or as needed to provide Services to you.
Retention Periods:
- Account Data: Retained while your account is active and for up to 90 days after account deletion
- Health and Goal Data: Retained while your account is active; deleted within 30 days of account deletion request
- Analytics Data: Aggregated, anonymized data may be retained indefinitely for research and improvement purposes
- Backup Data: Deleted from backups within 90 days of account deletion
- Legal Compliance: We may retain certain data longer if required by law or for legitimate business purposes (fraud prevention, resolving disputes)
Your Rights: You can request deletion of your account and data at any time through the App settings or by contacting us at privacy@synkapp.com.
7. Children's Privacy
Synk AI is intended for users aged 13 and older (or 16 and older in the European Economic Area). We do not knowingly collect personal information from children under these age limits.
If we become aware that we have collected personal information from a child under the applicable age limit without parental consent, we will take steps to delete that information promptly.
If you believe we have collected information from a child under the applicable age limit, please contact us immediately at privacy@synkapp.com.
8. Consent to International Transfer
Synk AI is based in the United States and our service providers may be located in various countries. If you access our Services from outside the United States, your information may be transferred to, stored, and processed in the United States or other countries where our service providers operate.
By using the Services, you consent to the transfer of your information to countries outside your country of residence, which may have different data protection laws. We take appropriate measures to ensure your information receives adequate protection wherever it is processed.
9. Your Choices
9.1 Account Information
You can update your account information at any time through the App settings.
9.2 Health Data Access
You can control which health data Synk accesses through:
- iOS Settings > Privacy > Health > Synk AI
- Revoking permissions for specific data types at any time
9.3 Notifications
You can manage notification preferences through:
- App Settings > Notifications
- iOS Settings > Notifications > Synk AI
9.4 Marketing Communications
You can opt out of marketing emails by:
- Clicking "unsubscribe" in any marketing email
- Adjusting preferences in App Settings
Note: You will still receive transactional emails (account notifications, security alerts)
9.5 Data Export
You can export all your data from Synk AI in a machine-readable format (JSON/CSV) through App Settings > Privacy > Export Data.
9.6 Account Deletion
You can delete your account and all associated data through App Settings > Account > Delete Account. This action is irreversible and will permanently delete:
- Your account information
- All goals, habits, and tracking data
- Progress history and achievements
- Notes and journal entries
10. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors. When we make changes, we will:
- Update the "Last Updated" date at the top of this policy
- Notify you through the App or via email (for material changes)
- Request your consent if required by applicable law
We encourage you to review this Privacy Policy periodically. Your continued use of the Services after changes are posted constitutes your acceptance of the updated Privacy Policy.
11. Jurisdiction-Specific Rights
Depending on your location, you may have additional privacy rights:
11.1 European Economic Area (GDPR)
If you are in the EEA, you have the right to:
- Access your personal data
- Rectify inaccurate data
- Erase your data ("right to be forgotten")
- Restrict or object to processing
- Data portability
- Withdraw consent at any time
- Lodge a complaint with your local data protection authority
Legal Basis: We process your data based on:
- Your consent (for health data and optional features)
- Contract performance (to provide Services)
- Legal obligations
- Legitimate interests (app improvement, security)
11.2 California (CCPA/CPRA)
California residents have the right to:
- Know what personal information we collect, use, and disclose
- Delete personal information (with certain exceptions)
- Opt out of the sale or sharing of personal information
- Correct inaccurate personal information
- Limit use of sensitive personal information
- Non-discrimination for exercising your rights
Note: We do NOT sell your personal information. We do NOT share health data for cross-context behavioral advertising.
11.3 Other Jurisdictions
If you reside in other jurisdictions with applicable privacy laws (Brazil's LGPD, Canada's PIPEDA, etc.), you may have similar rights. Please contact us to exercise any applicable rights.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Email: app@synkapp.com
Support: support@synkapp.com
Address: 123 Health Way, San Francisco, CA 94107
For privacy-related inquiries, please include "Privacy Inquiry" in your subject line. We will respond to your request within 30 days (or as required by applicable law).
© 2026 Synk AI. All rights reserved.