Privacy policy
Health Relay is operated by dotenv LLC, doing business as Meridian Strategic Systems. Questions: health-relay@meridianstrategic.systems.
What we collect
We store your email address and account ID for authentication; the HealthKit records you choose to upload, including their values, types, dates, identifiers, and source attribution; synchronization checkpoints; device/agent access records; and subscription status. You choose Health permissions in Apple's system prompt.
Why and where
We use this information to authenticate you, sync and retrieve your records, enforce access controls, process subscription status, and respond to support requests. Supabase hosts authentication and cloud storage. Health payloads are encrypted before database storage; type/date indexes and operational account metadata remain readable to the service. This is not end-to-end encryption.
Resend delivers sign-in emails and processes the destination email address and message. AgentMail receives and stores messages you send to our support address. Do not send health records or sign-in codes in support emails. Apple handles purchases. RevenueCat processes your app account ID and purchase/entitlement information to verify subscriptions. We do not send your health measurements to RevenueCat or Resend. Service providers may process information outside your country.
Agents you connect
An agent can read only the measurements allowed by its credential, until it expires or you revoke it. Giving a credential to an agent shares the permitted health data with that agent and its provider. Their privacy policies apply to their copies. Revocation prevents future access; it does not recall data they already received.
Your choices and deletion
You can decline Health permissions, pause uploads, change permissions in iOS, export your cloud data, erase cloud data, revoke credentials, or delete your account inside the app. Erasure removes active cloud health records and revokes access. Account deletion also removes the active account. Neither action deletes the original records in Apple Health or cancels an Apple subscription.
Records remain in the active service until you erase them or delete the account. Provider-managed backup or security-log copies, where present, expire under the provider's retention settings and are not available to connected agents. Purchase records may be retained by Apple or RevenueCat under their policies and applicable obligations. Contact us for help with a deletion request.
No advertising or model training
We do not sell health data, use it for advertising, or use it to train models. The app has no advertising SDK. Connected agents are chosen by you; review their data use before sharing a credential.
Changes
We will update this page when practices change and seek additional consent where required.