Symptera is operated by SYMPTERA LTD, a company registered in Israel. Symptera ("we," "us") helps people living with autoimmune and chronic conditions track their symptoms and see their flare risk rising before it escalates. This policy explains what we collect, why, who can see it, and how you can control it. It's written in plain language on purpose. If anything is unclear, email hello@symptera.com.
What we collect
Account info: your email address and password (or, if you use Sign in with Apple, the name/email Apple shares with us).
Health information you enter directly: your condition(s), symptoms and their severity, flares, medications and reminder schedules, things you add to your timeline (like a cold or travel), and basic profile details like date of birth and gender.
Apple Health (iPhone) or Health Connect (Android) data, only if you connect it: steps, sleep, resting heart rate, heart rate variability, and blood oxygen, including past readings if you choose to import them. We only read this data; Symptera never writes to Apple Health or Health Connect.
Consent records: we log when and which version of this policy and our Terms you agreed to.
Crash reports: if the app crashes or hits an error, it sends a technical report (device model, operating system and app version, and what went wrong) to our error-reporting provider, Sentry, so we can fix it. Session replay and screen capture are turned off.
Two kinds of data: identifiable and de-identified
Identifiable data is anything linked to you: your account, and the health information tied to it.
We use it only to run Symptera for you: your trends, reminders, and flare-risk insights.
We never sell identifiable data, and we never use it for advertising.
Today we don't share it with any clinician or clinic. If we add that option, sharing will happen only with your explicit permission in the app, and you'll be able to withdraw it at any time.
De-identified data is health information with your name, email, account ID, and other direct identifiers removed, so it can't reasonably be linked back to you. We may use it to improve how Symptera detects flares.
We do not currently sell, license, or share any data, identifiable or de-identified, with anyone outside Symptera, apart from the service providers listed below. If we ever plan to share de-identified data with research or healthcare partners, we'll update this policy and ask for your consent first.
Who else handles your data
A small number of service providers process data on our behalf, only to run the app:
Supabase, which hosts our database.
Sentry, for crash reports.
Apple, if you use Sign in with Apple.
We do not run any third-party analytics or advertising SDKs in the app. We may disclose information if required by law, such as a valid court order, and only to the extent required.
If Symptera is acquired or merges
If Symptera is acquired, merges with another company, or transfers its assets, your data may be transferred as part of that transaction. If that happens:
The new owner will be bound by this policy for data collected under it, including the commitment never to sell identifiable data.
We'll tell you before your data is transferred, and you'll be able to delete your account and data first.
Any material change to how your data is handled afterward will need your consent.
Where it's stored and how long we keep it
Your data is stored in a hosted database (Supabase), scoped so that only your own account can read or write your own records. Data in transit is encrypted (HTTPS/TLS).
We keep your data for as long as your account is open. When you delete your account, your data is removed from our database. Copies may remain in encrypted backups for a short time until those backups expire.
Your controls
Review and edit most of what you've entered directly in the app.
Disconnect Apple Health at any time from your device's Health app settings, or Health Connect from your Android settings.
Permanently delete your account and all associated data from Profile → Delete Account in the app. This is irreversible.
Changes to this policy
We version this policy. If we make a material change to how we handle your data, we'll ask you to agree to the new version in the app before it takes effect.