Privacy Policy

Your privacy is fundamental to everything I do. MindWhet is designed with privacy-first principles, ensuring your health data stays secure and under your control.

Last Updated: August 2025

🔒 Privacy-First Design

MindWhet processes all your health data on-device. Your cognitive test results, lifestyle tracking data, and personal insights never leave your iPhone unless you explicitly choose to sync with iCloud or Apple Health.

Information I Collect

Health Data (Processed On-Device Only)

MindWhet collects and processes the following health-related information locally on your device:

  • Cognitive Performance Data: Results from memory tests, Stroop tests, reaction time tests, task switching tests, and daily self-reports (focus, energy, mood)
  • Sleep Data: Sleep duration, sleep stages (deep, REM, core), sleep efficiency, interruptions, and manually entered sleep hours
  • Exercise Data: Workout sessions, exercise duration, intensity, calories burned, and manually logged activities
  • Nutrition Data: Food intake, meal templates, nutritional information from USDA FoodData Central API, and brain benefit scores
  • Fasting Data: Fasting periods, eating windows, and intermittent fasting schedules
  • Biomarker Data: Ketone levels, glucose readings, and other manually entered biomarkers
  • Supplement Data: Supplement intake logs and timing
  • Goal Data: Personal goals, progress tracking, and achievements

Apple HealthKit Integration

With your explicit permission, MindWhet integrates with Apple HealthKit to:

  • Read sleep analysis data, workout data, and other health metrics
  • Write meal logs and exercise sessions back to Apple Health
  • Access biological data like age, sex, weight, and height for BMR calculations

Important: All HealthKit data remains within Apple's secure health ecosystem and is subject to Apple's privacy policies.

Technical Data

I collect minimal technical information to improve app performance and stability:

  • App version and iOS version for compatibility
  • Crash Reports: Anonymized crash data via Firebase Crashlytics (contains no personal health data, only technical stack traces)

How I Use Your Information

On-Device Processing

All health data processing occurs locally on your device:

  • Correlation Analysis: Statistical analysis between lifestyle factors and cognitive metrics using Pearson correlation coefficients
  • Personalized Insights: Generation of recommendations and insights based on your unique data patterns
  • Composite Scoring: Principal Component Analysis (PCA) calculations for cognitive performance scoring
  • Goal Tracking: Progress monitoring and achievement calculations

External API Usage

MindWhet uses the USDA FoodData Central API for nutritional information. When you search for foods:

  • Only your search query is sent to the USDA API
  • No personal information or consumption data is transmitted
  • Nutritional data is processed locally on your device

Data Storage and Security

Local Storage

Your health data is stored locally on your device using:

  • SwiftData: Apple's modern, secure local database framework
  • iOS Security: Protected by iOS's built-in encryption and security measures
  • App Sandbox: Data is isolated within MindWhet's secure app container

iCloud Sync (Optional)

If you enable iCloud sync:

  • Your data is encrypted and synced through Apple's iCloud service
  • I cannot access your iCloud data
  • Data remains under your Apple ID's control
  • You can disable iCloud sync at any time in iOS Settings

Limited Third-Party Services

I use minimal third-party services:

  • Firebase Crashlytics: Only for crash reporting (no personal data)
  • No Analytics Services: I do not use third-party analytics that could access your personal data.

All health data analysis and insights are processed locally on your device.

Data Sharing and Disclosure

I Do Not Sell Your Data

I never sell, rent, or trade your personal health data to third parties.

Third-Party Services

I use only one third-party service that receives limited technical data:

  • Firebase Crashlytics (Google): Receives anonymized crash reports to help us fix app issues. No health data is shared with this service.

Limited Disclosure

I may only disclose information in these limited circumstances:

  • Legal Requirements: If required by law, court order, or government regulation
  • Safety: To protect the safety of users or the public
  • Business Transfer: In the event of a merger or acquisition (with user notification)

Your Privacy Rights

Data Control

You have complete control over your data:

  • Access: View all your data within the app
  • Export: Export your data through iOS's built-in sharing features
  • Delete: Delete individual entries or all data within the app
  • HealthKit Control: Manage HealthKit permissions in iOS Settings

App Deletion

When you delete MindWhet:

  • All locally stored data is permanently removed
  • iCloud data can be deleted through iCloud settings
  • HealthKit data remains in Apple Health (under your control)

Children's Privacy

MindWhet is designed for users 17 years and older. I do not knowingly collect personal information from children under 17. If I become aware that I have collected personal information from a child under 17, I will take steps to delete such information.

International Users

MindWhet processes data locally on your device regardless of your location. For users in the European Union, you have additional rights under GDPR, including the right to data portability and the right to be forgotten.

Changes to This Policy

I may update this Privacy Policy to reflect changes in my practices or for legal reasons. I will notify users of significant changes through the app or my website. Continued use of MindWhet after changes constitutes acceptance of the updated policy.

Contact Us

If you have questions about this Privacy Policy or our privacy practices, please contact us:

I am committed to addressing your privacy concerns and will respond to inquiries within 30 days.