Privacy Policy
Last updated: July 2026
Whuman ("we," "us," "our") helps you understand your hormone and cycle patterns from wearable and self-tracked data. This policy explains what we collect, how it's stored and used, when (and only if) it's shared, and the choices you have. It applies to the Whuman mobile app and website.
Summary
• Your tracking data lives on your device, and is backed up to your Whuman account so you can restore it on a new phone. Only you can read your backup.
• To generate a prediction, the readings needed are sent to our prediction server, used to compute your result, and not retained beyond that processing.
• We do not sell your data, and we never use it for advertising.
• We share data with a third party in only two cases: the service providers that run the app, and — only if you opt in — a de-identified copy shared for research, which you can turn off or delete anytime.
• You can delete your account and all associated data from within the app.
1. Information we collect
Health and cycle data you provide or connect
Wearable signals (e.g. resting heart rate, heart-rate variability, body/skin temperature, sleep, respiration, steps, activity, and body metrics), symptoms and lifestyle context you log, hormone and lab readings you enter (e.g. LH, estrogen, progesterone, FSH, AMH, prolactin, ferritin, thyroid values), period dates, cycle-related health conditions, and profile details (age, height, weight, biological sex, goals). This may come from Apple Health (on iOS) or connected services such as Google Fit / wearable integrations, or from manual entry.
Account information
When you create an account we use Firebase Authentication and store a user ID and, depending on your sign-in method (email/password, Google, or Apple), your email address and name. Apple's Sign in with Apple may provide a private relay email.
We do not collect advertising identifiers, and we do not track you across other apps or websites.
2. How your data is stored
On your device. Your tracking data is stored locally on your device. It stays there unless you delete it or uninstall the app (which erases it).
Backup to your account (cloud sync). So that your history isn't lost if you change or lose your phone, a copy of your tracking data is saved to your Whuman account in Google Cloud Firestore (part of Firebase). When you sign in on a new device, this is what restores your history.
• What's backed up: your logged days and wearable signals, symptoms, the notes and tags you write, hormone and lab readings, period dates, health conditions, your profile, and your latest prediction.
• Who can read it: only you. Your backup is stored under your account ID and our security rules permit access only to a signed-in user reading their own record. It is encrypted in transit and at rest. It is never used for advertising, never sold, and — separately from the opt-in research sharing in Section 4 — never shared with anyone else.
• Keeping the newest copy: if you use Whuman on more than one device, the most recent version replaces the older one; the app tells you when it has to choose.
• Your control: deleting your account (Section 6) deletes this backup.
Note that your notes and tags are part of your private backup, but they are still never sent to our prediction model and are never included in research contributions.
Prediction server. Each time you request a prediction, the readings needed to compute it are sent to our prediction service (hosted on Render) over an encrypted connection,
processed to generate your result, and not stored beyond the short-lived processing/caching required to return it. Your notes and tags are removed before this is sent.
Research contributions (only if you opt in). See Section 4.
3. How we use your data
We use your data to: provide the app's core function (generating your hormone and cycle insights), maintain your account, and — only with your consent — improve our models through research (Section 4). We do not use your data for advertising or profiling, and we do not sell it.
4. Sharing your data
We do not sell, rent, or trade your personal data. We share it only in these limited cases:
a) Service providers
We use trusted providers to run the app: Google Firebase (authentication and, for opt-in research contributions, database storage) and Render (prediction hosting). They process data only to provide these services to us.
b) Research contributions — optional and off by default
Whuman does not share your tracking data for research unless you turn on "Contribute to research" in the app (You → Contribute to research). If you never turn it on, nothing in this subsection is shared.
• What is shared: a de-identified copy of your wearable signals, logged symptoms, hormone/lab readings, cycle conditions, and coarse profile details (an age range such as "30–34," a body-mass-index range, biological sex, cycle length, and your goal).
• What we remove first: your name, email, and account ID; any free-text notes or tags; all exact calendar dates (we keep only the relative order of your logged days and the
spacing between periods); and your exact age and body measurements (replaced with the ranges above).
• How it's labeled: with a random code generated on your device that is not linked to your name, email, or account. We describe this as de-identified. Please understand that de-identified is not the same as fully anonymous: detailed day-by-day health data can in principle be re-identified, and because sharing occurs while you are signed in, our systems could in theory associate a submission with your account at the network level, even though your account details are never stored with the data.
• Where it goes / how it's used: stored in our Google Firebase (Cloud Firestore) database and used only to validate and improve Whuman's prediction models and for related health research. It is never sold and never used for advertising.
• Your control: turn it off anytime (stops further sharing), delete the copy you've shared with "Delete data I've shared," and deleting your account also deletes any contributed data.
c) Legal
We may disclose data if required by law or to protect our rights and users' safety.
5. Apple Health (HealthKit)
If you connect Apple Health, we read the health data types you authorize solely to provide the app's features. In line with Apple's requirements, HealthKit data is never used for advertising or marketing, is never sold, and is not shared with third parties except as described in this policy (the opt-in research sharing above, with your consent). You can revoke access anytime in iOS Settings → Privacy & Security → Health.
6. Your choices and rights
• Disconnect a data source (Apple Health / connected services) in your device settings.
• Turn off research sharing anytime in the app, and delete what you've shared.
• Delete your account and all data in the app (You → account → Delete account), which removes your authentication record, your local data, your cloud backup, and any research contributions.
• Depending on where you live, you may have rights to access, correct, or delete your data — contact us (Section 10).
7. Data retention
Local data is kept on your device until you delete it or uninstall the app. Your account backup and account records are kept until you delete your account, at which point both are deleted. Research contributions are kept until you delete them or delete your account. Prediction-server data is not retained beyond processing.
8. Children's privacy
Whuman is not directed to, and we do not knowingly collect data from, anyone under 16. If you believe a child has provided us data, contact us and we will delete it.
9. Security
We use industry-standard measures, including encrypted connections for data in transit and access controls on stored data. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
10. Changes and contact
We may update this policy; material changes will be reflected by a new effective date at the top. For any questions or to exercise your rights, contact us here.

