TH

Legal

Privacy Policy

Last updated: May 27, 2026

1. What We Collect

  • Account data: name, email address, and authentication credentials managed via Clerk.
  • Health data you enter: glucose readings, A1C values, meal photos, lab documents, medication logs, and notes you choose to record.
  • Device integration data: readings synced from connected devices such as FreeStyle Libre exports.
  • Usage data: page visits, feature interactions, and error logs used to improve the App.

2. How We Use Your Data

  • To operate and personalize the App for you.
  • To generate AI coaching summaries from your uploaded health data (processed by Google Gemini).
  • To send optional reminders you configure (e.g., injection reminders via email).
  • To diagnose technical issues and improve reliability.

We do not sell your personal health data. We do not use your data for advertising profiling.

3. Third-Party Processors

We use the following services to operate the App:

  • Convex — database and backend functions (convex.dev)
  • Clerk — authentication (clerk.com)
  • Cloudflare Workers — hosting and edge delivery
  • Google Gemini API — AI analysis of health data you upload
  • Pusher — real-time voice and notification features

Each processor is bound by its own privacy and data-processing agreements. Data transmitted to Google Gemini for AI analysis is not used to train Google's models under standard API terms.

4. Health Data Sensitivity

We treat health-related data with heightened care. Data is encrypted in transit (TLS) and at rest. Access is restricted to your household/organization account. We do not share individual health records with any third party except as required to operate the processors listed above or as required by law.

Tiff is not a HIPAA Business Associate and does not operate as a covered entity under HIPAA. If you require HIPAA-compliant health records management, please use a certified EHR platform.

5. Data Retention

Your data is retained for as long as your account is active. You may delete your account and associated data at any time via profile settings. Backups may retain residual data for up to 90 days after deletion.

6. Your Rights

Depending on your jurisdiction you may have rights to access, correct, export, or delete your personal data. To exercise these rights, contact us at privacy@skidamarinks.com. We will respond within 30 days.

If you are in the European Economic Area or UK, you have additional rights under the GDPR / UK GDPR, including the right to lodge a complaint with your local supervisory authority.

7. Children

The App is not directed at children under 18. We do not knowingly collect personal information from minors. If you believe a minor has provided us data, contact us and we will delete it.

8. Cookies and Local Storage

We use session cookies required for authentication (managed by Clerk) and local browser storage for app state. We do not use advertising or analytics cookies from third parties.

9. Changes to This Policy

We may update this Privacy Policy. We will update the date at the top of this page. Continued use after an update constitutes acceptance of the revised policy.

10. Contact

Privacy questions: privacy@skidamarinks.com
General legal: legal@skidamarinks.com