Consumer Health Data Privacy Policy
For people in the United States. Last updated: October 4, 2026. This page is in English only; our general Privacy Policy is available in German and English.
1. About this policy
Emivita (operated by Florian Hubert, Biburg-Durnhart, Germany) lets adults record and view their own health information, for example thyroid lab values, symptoms and medication. This policy explains how we handle consumer health data of consumers in the United States, in particular under the Washington My Health My Data Act (RCW 19.373), Nevada Senate Bill 370 and the Connecticut Data Privacy Act. It supplements our Privacy Policy, which also covers the EU General Data Protection Regulation (GDPR); because we are established in the EU, the GDPR applies to all users, wherever they live. Emivita is intended for people aged 18 and over.
2. What consumer health data we collect and why
- Lab results that you enter or import (for example TSH, fT3, fT4, thyroid antibodies, liver values). Purpose: to show your values and their history and to prepare a PDF report for your doctor visit.
- Symptoms, daily check-ins, how-you-feel entries and notes that you record. Purpose: to show them on your timeline next to your lab values.
- Medication, dose and intake ticks, including ticks you set on the Apple Watch app. Purpose: your medication log and today’s plan.
- Body weight (typed in or, only if you switch it on, synced from Apple Health) and exercise you log by hand. Purpose: your history.
- Profile details you choose to give: sex, year of birth, height, a diagnosis in your own words and a free-text note. Purpose: to personalise your view and to head your doctor’s report.
- Family history, if you choose to add it: the relationship (for example “mother”), a condition from a fixed list and optionally the year of diagnosis. We do not store names, dates of birth, medication or free-text notes about relatives.
- Why you use Emivita, if you answer that one optional question. Purpose: aggregate statistics only.
- Lab report files that you choose to import. Purpose: to read out the values (see “Who processes your data” below). We do not keep the file; we save only the values you review and accept.
If you allow it, the iPhone app also reads heart, breathing, sleep and activity values and workouts from Apple Health, to show them to you. These stay on your device; we neither receive nor store them. The one exception is body weight, if you switch on the weight sync.
We use consumer health data only to provide the features you request, to keep the service secure and to meet legal obligations. We do not use it for advertising. We will not collect other categories of consumer health data or use it for other purposes without telling you first and asking for your consent.
3. Where the data comes from
From you (what you type, tap, import or switch on); from Apple Health, only if you switch the sync on and allow it in iOS; and from the lab report files you choose to import. Sign-in with Apple or Google gives us your email address and, from Apple, your name the first time; neither provider sends us health data.
4. Who processes your data; no sale, no sharing
We do not sell consumer health data, and we do not share it with third parties or affiliates (we have no affiliates). We use the following service providers, who process data only on our behalf and under written data processing terms:
- Hetzner Online GmbH, Industriestr. 25, 91710 Gunzenhausen, Germany: hosting and encrypted backups of all account data, on servers in Germany. hetzner.com/legal/privacy-policy
- Anthropic (USA): only when you choose to import a lab report. The file is sent to Anthropic to read out the values. According to Anthropic, it does not use API inputs to train its models and deletes inputs and outputs within 30 days. anthropic.com/legal/privacy
- Resend, Inc. (USA): email delivery (confirming your address, password reset, account notices). Our emails contain no health data. resend.com/legal/privacy-policy
- Stripe: payment for subscriptions on our website. Stripe receives your payment details and email address, no health data. stripe.com/privacy
- Apple: App Store purchases and Sign in with Apple. Apple is independently responsible for these; it receives no health data from us. Apple Health data stays on your device.
We disclose consumer health data to no one else, except where the law requires it. If this ever changes, we will update this policy and ask for your separate consent before any sharing.
5. Consent
When you create an account, in the app and on our website, we ask for your consent with a required checkbox that names the kind of data, the purposes, the recipients and how to withdraw. Importing from other sources (lab report import, Apple Health, Apple Watch) is something you switch on or trigger yourself. Because we do not share consumer health data, there is no separate sharing consent; if we ever planned to share it, we would ask for one, separate from this consent.
6. Your rights and how to use them
You can:
- ask whether we collect, share or sell your consumer health data;
- access it, with the list of third parties and affiliates we share it with (none) and of our service providers (above);
- withdraw your consent at any time;
- have it deleted. We delete it from our active systems at once; copies in our encrypted backups are overwritten within 30 days, and in any case within six months. We tell our service providers to delete data they hold for us;
- export it (spreadsheet and PDF report) in the app or on the website.
How: in the app under Account (delete account and all data, export), on the website in your profile, or by email to kontakt@emivita.de. You do not need an account to send a request; we may ask you to confirm it from the email address of your account. We respond within 45 days; if necessary, we may extend this once by another 45 days and will tell you why. You can make up to two requests a year free of charge. We do not treat you differently for using your rights.
Appeal: if we refuse or only partly grant a request, you can appeal by writing to kontakt@emivita.de with the subject “Appeal”. We will answer in writing within 45 days of receiving your appeal and explain our decision. If we deny the appeal, you can contact the Washington Attorney General at atg.wa.gov/file-complaint, the Connecticut Attorney General at portal.ct.gov/ag, or the attorney general of your state.
7. What we do not do
- We do not sell consumer health data and do not share it for advertising.
- We use no advertising, social-media or other third-party tracking technologies, pixels or software development kits in the app or on the website.
- We collect no location data and use no geofence. The app does not ask for your location.
- Our website counts page views without cookies, using a pseudonymous value that changes daily; pages you view while signed in are counted too, without being linked to your account.
8. Security and breaches
Each account’s data is kept in its own database on encrypted storage in Germany; connections are encrypted; backups are encrypted; access is limited to the operator and to service providers who need it. If a breach of security affects unsecured health information we hold, we will notify you and, as the law requires, the U.S. Federal Trade Commission, the media and state authorities, without unreasonable delay and within 60 days of discovery (FTC Health Breach Notification Rule, 16 CFR Part 318, and state laws).
9. Where your data is processed
Account data is stored and processed in Germany. If you use Emivita from the United States, your data is therefore transferred to Germany, where the GDPR applies. If you import a lab report, the file also goes to Anthropic in the United States, as described above.
10. Changes and contact
If we change this policy, we post the new version here and, for material changes, inform registered users by email. The date of the last update is shown at the top.
Florian Hubert
Ortsstrasse 27a
93354 Biburg-Durnhart, Germany
Email: kontakt@emivita.de