Legal

Consumer Health Data Privacy Policy

Last updated: August 17, 2026

This Consumer Health Data Privacy Policy explains how Brizo Finance LLC, the operator of MinervaOS ("MinervaOS," "we," "us," or "our"), collects, uses, and shares consumer health data through the MinervaOS iPhone application and related services (the "Service"). It supplements our general Privacy Policy and is provided to satisfy the Washington My Health My Data Act (RCW 19.373), Nevada SB 370 (NRS 603A as amended), and similar consumer health data laws. If anything here conflicts with the general Privacy Policy with respect to consumer health data, this policy controls.

In plain terms: your health data exists in MinervaOS for one reason — to run the tracking features you asked for. We do not sell it, we do not use it for advertising, and we do not share it with anyone except the service providers that make the app work.

What changed on August 8, 2026. Two corrections. Section 1 previously said that data from every connected wearable stayed on your device; that is true of Apple Health and of a direct WHOOP connection, but not of the cloud platforms you connect through Junction — their data is delivered to and stored on our servers on a rolling 35-day window, and Sections 1, 2 and 4 now say so and name Junction as a processor. Section 4 now states that content you publish to a social surface is screened by OpenAI as well as Anthropic, and that both receive the image itself and frames sampled from a video. Nothing about selling, advertising, or geofencing changed: we still do none of them.

What changed on August 14, 2026. A clarification to Section 1: a workout imported from Apple Health or your Apple Watch becomes a logged workout, and logged workouts (type, duration, intensity, average heart rate where available) are stored on our servers like any workout you log by hand. The raw Apple Health sample streams — step counts, heart-rate series, and the like — are still not transmitted to our servers.

What changed on August 17, 2026. A second clarification to Section 1, for the same reason. Besides imported workouts, one more set of Apple Health-derived figures can reach our servers, and only because you share it: while the Workouts (on by default), Burned, or Eaten switch under What followers see is on — or when you share a daily summary to a group or your feed — the day's step count and calorie-burn figures (total, resting/BMR, and movement), computed on your phone from Apple Health and any connected wearable, are stored on our servers so the people you allow to see your profile can see them. The raw sample streams still do not leave your device.


1. Consumer Health Data We Collect

Depending on how you use the Service, we collect the following categories of consumer health data:

Processed on your device only: data read from Apple Health (steps, heart rate, workouts, sleep, and similar, including data from your Apple Watch) and from a direct WHOOP connection is used on your iPhone to compute estimates; those raw sample streams — step counts, heart-rate series, sleep stages, and the like — are not transmitted to our servers. Two exceptions, and both are things you choose. First, the exercise data listed above: a workout imported from Apple Health or your Apple Watch becomes a logged workout in your history, and that logged record — type, duration, intensity, and average heart rate where available — is stored on our servers, exactly like a workout you log by hand. Second, the daily figures you let followers see: while the Workouts (on by default), Burned, or Eaten switch under Profile → Privacy & sharing → What followers see is on — or when you share a daily summary to a group or your feed — the day's total step count and calorie-burn figures (total burn, resting/BMR, and the movement portion), which your phone computes from Apple Health and any connected wearable, are stored on our servers so the people you allow to see your profile can see them; your profile is private by default, so nobody sees them until you approve a follower or make it public, and turning the switches off hides the figures and stops new days being published. Nothing else read from Apple Health leaves the phone.

Stored on our servers when you connect a cloud wearable: the cloud wearable platforms you can connect — currently Garmin, Oura, Fitbit, Polar, Withings, Wahoo, Ultrahuman, Peloton, Eight Sleep, and Zwift — do not talk to your phone. They send your data to our wearable-connection provider Junction, which delivers it to our servers, where it is stored — visible to your account only — and read back by your phone to compute your estimates. What is stored is the per-day record the platform sends: daily activity and step summaries, workouts, sleep sessions, heart-rate series (averaged into two-minute buckets before storage), body measurements such as weight, body-fat percentage and VO₂max, and any other daily metric that platform reports. We keep it on a rolling 35-day window and delete anything older. It is used solely to compute your estimates, is never sold, never used for advertising, and never shown to another user. Disconnecting a platform stops new data arriving; deleting your account deletes all of it.

2. Sources of Consumer Health Data

3. Why We Collect It (Purposes)

We collect and use consumer health data only to provide the Service you requested: computing nutrition and calorie-burn estimates, keeping your logs and history, syncing your data across your devices, powering the AI logging and estimation features you invoke, and sending notifications you enable. We do not use consumer health data for third-party advertising, marketing unrelated to the Service, or data mining, and we do not use it to train AI models.

4. How We Share It

We do not sell consumer health data, and we have no history of selling it. We share it only with service providers acting on our instructions:

We may also disclose data if required by law, or to protect the rights, safety, or property of you, us, or others. We do not share consumer health data with affiliates for their own use.

What moderation does and does not see. Your private food logs, weights, workouts, notes, Apple Health data, and the cloud wearable records described in Section 1 are never sent to a moderation classifier. Classification applies only to what you publish to a public or widely visible surface: a post and its caption, a comment, your username, display name or profile avatar, and any photo or video you attach to one. That content is transmitted to OpenAI and to Anthropic to be classified, and that includes the image itself and frames sampled from a video, not merely a description of it — so a progress photo you post is a photograph sent to two third parties. What you send inside an invite-only group — chat messages, the workouts and meals you share there, and the photos you attach — is not read by a classifier at all; it is reviewed only if someone reports it. Both providers act as our processors under contracts limiting their use of the content; OpenAI states that its moderation endpoint is not used to train its models, and we instruct Anthropic not to train on the content it classifies. See the general Privacy Policy, Section 6a.

5. Your Consent

We collect consumer health data only after you consent at sign-up (the in-app legal gate), and the app asks your permission separately before reading Apple Health data or connecting a wearable. AI features process your content only when you invoke them.

Consent to collect and consent to share are treated separately, as the Washington My Health My Data Act requires: the sharing described in Section 4 is limited to processors acting on our instructions to deliver the Service, and we will obtain your separate, specific consent before any sharing beyond that. You can withdraw consent at any time — see Section 6.

6. Your Rights

You have the right to:

To exercise any right, use the in-app controls or email support@minervaos.app. We will verify the request using your account email and respond within the time required by applicable law (generally 45 days). Exercising these rights costs nothing and will not degrade the Service you receive.

7. No Geofencing

We do not use a geofence around any healthcare facility, and we do not collect precise geolocation at all. The Service asks for no location permission, and nothing in it identifies, tracks, or infers where you are in order to target you with advertising, messages, or offers relating to your health.

8. Security and Breach Notification

Consumer health data is protected by the measures described in the general Privacy Policy, Section 10. If your identifiable health information is acquired without authorization, we will notify you and the appropriate regulators — including the Federal Trade Commission under the Health Breach Notification Rule — as described in the general Privacy Policy, Section 19.

9. Appeals

If we decline a request, you may appeal by replying to our decision or emailing support@minervaos.app with the subject "Health Data Appeal." We will respond within the period required by applicable law. Washington residents may also contact the Washington Attorney General at atg.wa.gov; Nevada residents may contact the Nevada Attorney General.

10. Changes and Contact

If we make material changes to this policy, we will provide notice in the app or on this page and, where required, obtain your consent.

Questions: support@minervaos.app