Legal

Privacy Policy

Your health data is deeply personal. This policy explains exactly what we collect, why we collect it, and how we keep it safe.

Effective Date January 2025
Last Updated May 2025
01

Information We Collect

We collect only the information needed to deliver a useful, safe, and personalized health experience. Here is a breakdown of what we collect and how:

Account & Profile Data
When you register, we collect your name, email address, date of birth, and password. You may optionally add a profile photo and emergency contact information.

Health & Medical Data
You choose what health information you enter. This may include symptoms, vitals (heart rate, blood pressure, weight), medications, medical documents you upload, voice recordings you submit for transcription, and notes from doctor visits.

Family Health Patterns
If you use the Family Health feature, you may add family relationships (e.g., mother, father, sibling). We use these relationships to generate anonymized risk patterns. We never store or display personal medical details about your relatives — only aggregate pattern signals.

Device & Usage Data
We automatically collect technical information such as your device type, operating system, app version, IP address, session duration, and feature usage. This data helps us identify bugs and improve performance. It is not linked to your health records.

Communications
If you contact our support team, we retain a record of that correspondence to resolve your issue and improve our support quality.

02

How We Use Your Information

We use your information only for legitimate purposes directly related to providing and improving Curaporta. Specifically:

  • Deliver core features — powering your dashboard, medication reminders, appointment tracking, and record summaries.
  • Generate AI-powered insights — analyzing your health data to surface patterns, flag meaningful changes, and help you prepare for doctor visits.
  • Improve the product — using aggregated, de-identified usage data to fix bugs, prioritize features, and enhance reliability.
  • Send important communications — service updates, security alerts, and (with your consent) health tips or product announcements. You can opt out of non-essential communications at any time.
  • Meet legal obligations — complying with applicable laws and responding to valid legal requests from authorities where required.

We do not use your health data to serve advertisements. We do not build advertising profiles. We do not sell your data to any third party.

03

Data Security

We treat your health data with the highest level of care and apply industry-standard security practices throughout:

  • Encryption in transit — all data exchanged between your device and our servers is encrypted using TLS.
  • Encryption at rest — stored health data is encrypted on our servers using AES-256.
  • Access controls — access to personal health data is strictly limited to authorized Curaporta personnel who need it to operate the service. All access is logged and audited.
  • Regular security reviews — we perform periodic vulnerability assessments and work to address security issues promptly.

In the event of a data breach that affects your personal information, we will notify you and the relevant authorities as required by applicable law, and as quickly as we reasonably can.

No system is completely immune to risk. We encourage you to use a strong, unique password and to enable two-factor authentication in the app settings.

04

Sharing & Disclosure

We do not sell your data. We do not share your personal health information with advertisers, data brokers, or marketing companies.

We may share data in the following limited circumstances:

  • Trusted service providers — we work with a small number of vetted third-party providers (e.g., cloud hosting, analytics, customer support tools) who process data on our behalf under strict data protection agreements. They are not permitted to use your data for their own purposes.
  • With your explicit consent — for example, if you choose to share a health summary with a healthcare provider.
  • Legal requirements — we may disclose information if required by law, court order, or government authority, and only to the extent required.
  • Business transfers — if Curaporta is involved in a merger, acquisition, or asset sale, your data may be transferred as part of that transaction. We will notify you before your data becomes subject to a different privacy policy.
05

Your Rights & Choices

You are in control of your data. Depending on your location, you may have the following rights:

  • Access — request a copy of the personal data we hold about you.
  • Correction — update inaccurate or incomplete information through your account settings.
  • Data portability — download your health records and data in a structured format at any time from the app.
  • Deletion — request permanent deletion of your account and all associated data. See our Delete Account page for details.
  • Opt out of communications — unsubscribe from marketing or non-essential emails at any time using the link in any email we send, or through your notification settings in the app.
  • Restrict processing — in certain circumstances, you may ask us to limit how we use your data while a concern is being resolved.

To exercise any of these rights, contact us at privacy@curaporta.com. We will respond within 30 days.

06

Cookies & Tracking

Our website uses a minimal number of cookies and tracking technologies to keep the site functional and to understand how it is used:

  • Essential cookies — required for the website to function, such as keeping you logged in during a session. You cannot opt out of these without disabling the service.
  • Analytics cookies — we use privacy-respecting analytics tools to understand aggregate traffic patterns (e.g., which pages are visited most). This data is not linked to individual identities.
  • No advertising cookies — we do not use cookies for ad targeting or retargeting.

You can manage cookie preferences through your browser settings. Disabling cookies may affect some website functionality but will not affect the app itself.

07

Children's Privacy

Curaporta is not intended for use by children under the age of 16. We do not knowingly collect personal information from anyone under 16.

If you are a parent or guardian and believe your child has provided personal information to us, please contact us at privacy@curaporta.com and we will promptly delete the information.

08

Contact Us

If you have questions, concerns, or requests related to this Privacy Policy or how we handle your data, please reach out:

  • Email: privacy@curaporta.com
  • Subject line: "Privacy Policy Inquiry"

We are committed to resolving privacy concerns promptly and transparently. If you believe we have not handled your concern adequately, you may also have the right to lodge a complaint with your local data protection authority.