Who we are
Insightfull Development LLC, a California limited liability company in the United States (“Insightfull,” “we,” “us”), operates the Insightfull website, waitlist, iPhone app, companion watch experience, and related services. We are responsible for the personal information described in this policy. Contact us at support@insightfull.app.
This policy covers those services, including features that may depend on your device, plan, permissions, and access to the app. Our consumer health data privacy policy provides a separate explanation of health-related information. Our terms of service explain the rules for using Insightfull.
The information we collect
We collect information you provide, information from connections you enable, information generated by the features you use, and technical information needed to operate the service.
- Account and waitlist information. Email address, account or waitlist identifier, display name, profile image where provided, sign-in details, and waitlist status. Our authentication and waitlist providers process this information to manage sign-in and access. If you use Sign in with Apple, the information Apple makes available may include a private relay email.
- Your diary. Dates, categories, and text about meals, symptoms, mood, medication, sleep, and other notes you choose to enter. Records may include a title and supporting information. Please avoid including someone else’s personal information without permission.
- Connected health information. Permitted Apple Health data and daily summaries, described below, plus health information you enter yourself.
- Conversations and insights. Questions you ask, chat history, generated answers, analysis reports, scores, recommendations, possible correlations, and whether you read or dismiss an insight.
- Preferences and devices. Goals, selected data categories, analysis periods, time zone, notification settings, push notification tokens, app version, device platform, and local app or watch caches.
- Purchases. Subscription status, product and store identifiers, transaction events, purchase and expiration dates, and related billing records. App Store payments are handled by Apple, with a subscription management provider helping us recognize your purchases and access. We do not receive your full payment-card number through that purchase flow.
- Support and technical information. Feedback and emails you send us, request and error information, connection information such as IP addresses, and the limited website interaction and advertising information described below.
You can join the waitlist without connecting Apple Health or using photo logging or cloud AI. Features that need particular information may not work, or may be less useful, if you do not provide it.
Apple Health and your watch
When you grant Apple Health permissions, Insightfull can read the categories you allow, including steps, weight, sleep, activity time, exercise, stand time, active energy, resting heart rate, heart rate variability, respiratory rate, and blood oxygen. Availability depends on your device and the information in Apple Health. The app also requests permission to write steps and weight; granting access does not mean every category is read or written on every visit.
The iPhone app synchronizes daily summaries to our backend for trends, scores, and analysis, normally covering up to 90 days of available history. This is cloud synchronization, not solely on-device processing. You can change Apple Health access in the Health app or device settings. Revoking access stops future access to those categories; it does not erase copies already synchronized to Insightfull.
The AI data category settings are separate from Apple’s health permissions. Contextual chat excludes categories that have been explicitly turned off; categories without a saved preference are included. These preferences do not currently limit health synchronization, deep analysis, or automatic correlation processing. Contact us if you want stored information removed or its processing restricted.
The companion watch can receive and cache your score, entry count, sleep and activity summaries, and correlation-alert details from your signed-in iPhone. Quick logs and dismissals return through the iPhone. Protect access to both devices; signing out is not a guarantee that every local cached display has been erased.
Photos and artificial intelligence
Food photo auto-log
On supported iPhones, you can take or choose a food photo. Your iPhone processes that photo on-device to suggest a meal entry. The current auto-log flow does not upload that image to our backend or cloud AI provider. The generated meal text is saved automatically as diary data and can be synchronized or included in the cloud features described here. You can review and edit the saved entry in your diary.
Cloud conversations and analysis
Ask Insightfull and deep analysis use our backend and OpenRouter, which routes requests to model providers. Providers can vary with the selected model and fallback routing; this is not an exclusively on-device feature.
Contextual chat can send your question, earlier conversation messages, up to 90 days of health summaries, and recent diary records, including the text and supporting information in those records. Deep analysis sends daily health summaries and diary text for the selected period. Its current request excludes photo files, push tokens, and unrelated profile fields. Personal details you write inside a note or message can still be included.
When enabled for the service, an external correlation-analysis provider may automatically process derived correlation evidence after diary or health synchronization, such as food and symptom associations, counts, and confidence values. The AI category switches do not currently limit this processing. This evidence can still be sensitive even though the request does not contain full diary records or a direct account identifier.
We save conversations and generated reports so you can return to them. Provider logging, retention, and training practices depend on the provider and the applicable service configuration; we do not promise zero retention or a universal no-training arrangement. OpenRouter explains its provider controls here.
Scores and correlations are automated wellness interpretations. They can be incomplete or wrong, and are not diagnoses or decisions about your eligibility for insurance, employment, credit, or medical treatment. Reading this policy does not replace any separate permission that is required before processing sensitive data.
How we use information
- Create and secure your account, manage the waitlist, and send access or service messages;
- Save and synchronize your records and provide diary, score, trend, chat, analysis, and correlation features;
- Deliver requested reminders, health-pattern alerts, and the companion watch experience;
- Recognize purchases and subscription entitlements, maintain billing records, and handle support;
- Operate advertising where shown, understand limited website interactions, troubleshoot errors, prevent abuse, and improve reliability;
- Respond to privacy requests and meet applicable legal obligations.
We do not provide diary contents or Apple Health records to advertising providers for ad targeting. Cloud health analysis is a separate use from advertising. We do not use Insightfull as an emergency monitoring service.
The services involved
Service providers process different categories of information according to their role. Our authentication and waitlist integrations do not send your diary entries or Apple Health records to those providers. Hosting and database services store synchronized app records, and cloud AI services receive the context described above. The table below explains these separate data flows.
| Provider category | Role and information |
|---|---|
| Authentication and waitlist services | Account authentication, profile and sign-in information, sessions, and waitlist records. |
| Hosting and database services | Website and service hosting, network requests, operational logs, and storage of synchronized app records. |
| OpenRouter and model providers | Questions, conversation context, selected health summaries, diary text, and generated responses for cloud AI. |
| Correlation-analysis services, when enabled | Derived health-pattern evidence and confidence evaluation. |
| App marketplace and subscription services | Store transactions, purchase and expiration dates, subscription status, and access to paid features. |
| Notification delivery services | Device tokens and notification content, including any health-related titles or summaries in alerts. |
| Advertising services | Device and network information, ad interactions, and diagnostic information where ads are served. |
| Administrative messaging services | Complete waitlist event records and limited website click notifications, as described in the next section. |
| Support services | Messages and information you provide when asking for help or making a privacy request. |
We may also disclose information when reasonably necessary to comply with law, respond to valid legal process, protect people or the service, or complete a business transfer subject to applicable privacy protections. People who receive information you choose to share outside Insightfull may handle it under their own practices.
The website and waitlist
Our authentication and waitlist provider manages submissions. When a waitlist entry is created or updated, our server forwards the complete verified waitlist event to an administrative messaging service used by our team. This includes your email address, entry identifier, status, event timestamps, and other metadata included in the event. These administrative notifications identify your waitlist entry. Request waitlist removal at support@insightfull.app, including removal of the administrative copy.
The website also sends a limited event when a tracked “join waitlist” button is clicked. It records the button location, page, broad device-size category, environment, and time. That click notification does not contain your email address, diary, health data, or IP address. Our server temporarily uses a salted hash of the connection’s IP address for rate limiting.
We do not send page-view events to this administrative messaging integration. The click tracker honors a browser do-not-track value of “1.” This does not prevent ordinary hosting logs, authentication processing, or the waitlist event described above.
Our authentication provider uses cookies or similar storage for authentication and session security. Your browser can manage that storage, although blocking it can prevent sign-in. The limited click tracker does not create a persistent visitor profile or set its own tracking cookie.
Advertising and notifications
The iPhone app includes third-party advertising. Advertising services may process IP addresses and approximate location inferred from them, device or app identifiers, ad impressions and interactions, and crash or performance information. Processing depends on device permissions, the ad configuration, and applicable consent choices.
Advertising identifiers and interactions can be considered “sharing” for cross-context behavioral advertising or a “sale” under some privacy laws, even when money is not exchanged for the information. This is separate from our health-data processing. Use available ad consent controls and device privacy settings, or contact us to exercise an applicable opt-out right. We do not claim that all advertising is tracking-free.
If you enable notifications, our backend and notification delivery providers process your device token and notification content. Reminders and correlation alerts can include health-related titles or summaries. They may appear on your lock screen or watch; use device notification settings to control previews or disable notifications.
Retention and deletion
We keep account records, diary entries, synchronized health summaries, conversations, and reports to provide your account and its history. We assess continued retention based on account or feature activity, deletion or withdrawal requests, support needs, security, disputes, and legal recordkeeping requirements.
Waitlist records and their administrative copies are separate records. Removing an account does not automatically cancel a subscription or remove a waitlist record. Deleting an individual diary entry does not automatically remove text already included in a saved conversation or report.
An in-app deletion or export request is a request, not confirmation that all stored data has been erased or that an archive has been delivered. Contact support@insightfull.app for assistance and confirmation. We may verify that the request relates to your account before providing, changing, or deleting information.
Limited information may need to be retained to comply with law, resolve disputes, prevent abuse, or document that we fulfilled a request. Provider records, backups, and device caches can follow separate lifecycles. Uninstalling the app, signing out, or revoking Apple Health access does not by itself delete server records.
Your choices and rights
You can edit or delete individual diary entries, change available account and app settings, manage Apple Health permissions, and control camera, photo, and notification permissions on your device.
Depending on where you live and which laws apply, you may have rights to access or receive a copy of your information, correct it, delete it, restrict or object to processing, withdraw consent, limit certain uses of sensitive information, or opt out of a sale, sharing, or targeted advertising. Withdrawing consent does not undo processing that was lawful before withdrawal.
To make a request or object to processing, email support@insightfull.app. Tell us which service and request are involved, using your account or waitlist email where possible. Do not send passwords, payment details, or unnecessary health records. We will assess the request, verify identity as needed, and respond within the period required by applicable law. Where permitted, an authorized agent can contact us with evidence of authorization.
If a request is denied, you can ask us to review or appeal the decision by replying with “privacy appeal.” You may also complain to your local privacy regulator. We do not penalize you for exercising applicable privacy rights, although a feature may not work without information it needs.
California residents may have the rights described by the California Attorney General where the CCPA applies, including the rights to know, correct, delete, opt out, and limit certain uses of sensitive information. Health-data rights are also explained in our consumer health data policy.
International use
Insightfull is operated from the United States. Our service providers may process information in the United States or other countries, and the app does not guarantee that information stays in your home country. Contact us for information about the providers, locations, and safeguards relevant to your request.
Where European or UK data protection law applies, processing needs a valid legal basis. The relevant purposes include providing the service you request, maintaining its security and reliability, meeting legal obligations, and processing optional or sensitive information with consent where required. Health information requires an additional lawful condition, such as explicit consent. This policy itself is not a request for that consent and does not waive protections for international transfers.
You can object to processing based on legitimate interests and complain to your local supervisory authority, including the UK Information Commissioner’s Office where relevant. Availability of the app in a store does not remove mandatory local privacy or consumer rights.
Security and confidentiality
We use authenticated access to personal-data services, account-based data access, and verification of supported service webhooks. These controls help protect information, but no system or transmission method is perfectly secure.
Insightfull is not an end-to-end encrypted service: our backend and the providers involved in a feature process the information needed to deliver it. Do not treat Insightfull as a medical record system or assume that information in a consumer wellness app is protected by HIPAA in the same way as information held by your healthcare provider.
Protect your account and devices, and contact support@insightfull.app if you believe someone has accessed your account without authorization.
Age eligibility
Insightfull is intended for users who meet the minimum age and eligibility requirements in our terms of service. It is not directed to young children. If you believe someone below the permitted age has provided personal information, contact support@insightfull.app so we can investigate and address it.
Changes and contact
We may update this policy as features, providers, or legal requirements change. The date above identifies the latest revision. We will provide additional notice of material changes and obtain new consent where required; a policy update does not by itself authorize a new use of sensitive information.
For questions, privacy requests, or a copy of this policy, contact Insightfull Development LLC, California, United States, at support@insightfull.app.