Health Data Notice
Effective: May 2026
1. Purpose of this notice
This Health Data Notice explains how Shift Coach handles health and wellness-related information when you use our website and mobile apps. It supplements our Privacy Policy and focuses on sensitive categories (for example activity, sleep, heart rate, and profile metrics you use for coaching). If anything here conflicts with the Privacy Policy, the more specific description for your question should apply.
2. What we treat as health-related data
Depending on what you enter or connect, health-related information may include:
- Profile metrics you provide (for example height, weight, age band, goals, activity level) used for personalization.
- Wellness logs you create in the app (for example sleep entries, hydration, caffeine, mood, focus, or similar fields where available).
- Shift / schedule information used to interpret timing of sleep, meals, fatigue, and recovery in a shift-work context.
- Activity and physiology from integrations, when you authorize them: for example steps, sleep (including session-style sleep where supported), and heart rate from Apple Health on iOS and Google Health Connect on Android (read access only for the types you approve).
- Derived insights we calculate in the app from the above (for example summaries, trends, or timing suggestions shown in the UI).
We do not use health data for advertising and we do not sell health data.
3. How we use health data
We use this information only to operate and improve the wellness features you asked for, for example to:
- Provide shift-aware guidance (sleep, recovery, activity, hydration, meal timing, or related views).
- Show trends, scores, or summaries based on your logs and connected data.
- Sync and display data you connect from Apple Health or Health Connect.
- Maintain account security, troubleshooting, and product reliability.
Optional AI-assisted features: Where enabled, limited context (for example sleep- or wellness-related fields already in your account) may be sent to an AI provider to generate suggestions or wording shown in the app. That processing is for in-app outputs, not for selling data. See the Privacy Policy for more detail.
4. Legal basis (EEA / UK)
Where GDPR-style rules apply, we typically rely on performance of a contract (providing the service), consent (for certain integrations or optional processing where required), and/or legitimate interests (security, fraud prevention, and product improvement), balanced against your rights. Health data often receives extra protection; we limit collection and use to what is needed for the Services.
5. Android: Google Health Connect
On supported Android devices, Shift Coach may request access through Health Connect to read categories you approve, commonly including steps, sleep, and heart rate. Access is read-only for the permissions you grant, is user-initiated when you connect in the app, and you can revoke access anytime in Android Settings → Health Connect → App permissions (wording may vary by Android version).
We do not use Health Connect data for advertising and we do not sell Health Connect data.
Older integrations may exist on some builds; the supported path on new Android versions is Health Connect.
6. iOS: Apple Health
On iPhone, data access is governed by Apple Health permissions you approve on device. You can review and revoke categories in the Health app and iOS privacy settings. We only read categories you authorize for use inside Shift Coach.
7. Storage, security, and processors
Health-related data you save in the service is processed using infrastructure such as Supabase (authentication and database hosting). We use encryption in transit and protections from our vendors appropriate to the service. No method of storage is 100% secure.
8. Sharing
We do not sell your health data. We share it with service providers who process it on our behalf to run the app (for example hosting, auth, database, email, subscription validation), only as needed for those services. Their use is governed by contracts and their policies where applicable.
We do not share identifiable health data with advertisers. We may use de-identified, aggregated statistics internally to improve reliability and features; we do not sell health data and we do not use it for advertising.
9. Retention
We retain health-related information while your account is active and as needed to provide the Services. If you delete your account, we aim to delete or anonymize personal information within 30 days, except where law or legitimate security/dispute needs require longer retention. See the Privacy Policy for detail.
10. Your controls and rights
You may:
- Access and correct information in the app where editing is supported.
- Export data where the app provides export tools (for example Settings).
- Delete specific logs where the UI allows (for example individual sleep entries).
- Disconnect Apple Health or Health Connect and revoke permissions on the device.
- Request broader deletion or exercise GDPR-style rights by emailing shift-coach@outlook.com from your account email.
Account deletion: use the in-app / web flows linked from the Privacy Policy (for example signed-in deletion and deletion request pages), which remove associated data subject to retention rules.
11. Medical disclaimer
Shift Coach is not a medical device and does not provide medical advice, diagnosis, or treatment. Information in the app is for wellness and educational purposes. For medical decisions, speak to a qualified professional. In an emergency, contact local emergency services.