1. Introduction
At Ovuloom, we take your privacy seriously. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our fertility tracking application and related services.
2. Information We Collect
2.1 Personal Information
- Account Information: Email address, name, and account preferences
- Device Information: Device type, operating system, app version, and push notification tokens
- Authentication Data: Login credentials and session information
2.2 Health Data
- Menstrual Cycle Data: Period dates, cycle length, flow intensity
- Fertility Tracking: Ovulation dates, fertile windows, conception attempts
- Pregnancy Information: Due dates, pregnancy milestones, kick counts, contractions
- Pregnancy Loss Data: Loss type, dates, PALS (Pregnancy After Loss Support) tracking preferences
- Symptoms & Health: Mood, symptoms, sleep quality, energy levels, discharge, bleeding
- Physical Measurements: Blood pressure, weight (if you choose to track)
- Medical Notes: Your personal notes about health and medical appointments
- Perimenopause Tracking: Symptoms and health metrics related to perimenopause
2.3 Usage Data
- App Interactions: Features used, time spent, engagement metrics
- Analytics Data: Anonymous usage statistics to improve the app
- Crash Reports: Anonymous technical data to fix bugs
2.4 Location Data (Optional)
- Country-Level Location: Used ONLY to provide localized emergency contacts and support resources
- When Accessed: Only when you view pregnancy loss support resources
- Storage: Location data is NOT stored on our servers
- Sharing: NEVER shared with third parties
2.5 Data We DO NOT Collect
As of October 2025, we NO LONGER collect:
- ❌ Steps or physical activity data from Health Connect
- ❌ Heart rate data
- ❌ Calories burned (active or total)
- ❌ Distance traveled
- ❌ Exercise or fitness tracking data
- ❌ Body temperature from Health Connect sensors
Why? We removed these permissions to focus solely on reproductive health tracking and respect your privacy.
3. How We Use Your Information
- Primary Service: Calculate fertility windows, predict ovulation, and provide personalized cycle insights
- Personalization: Generate tailored predictions based on your cycle history
- Health Tracking: Track pregnancy, perimenopause, and PALS journey
- AI Assistance: Provide health guidance through our AI chat assistant (powered by secure AI services)
- Notifications: Send reminders, predictions, and health alerts
- Support: Provide customer service and respond to inquiries
- Improvement: Analyze anonymized usage patterns to enhance features
- Security: Protect against fraud and maintain account security
- Compliance: Meet legal obligations
4. Data Protection & Security
We implement industry-standard security measures including:
- Encryption: All data transmitted over HTTPS/TLS
- Secure Storage: Firebase secure cloud storage with encryption at rest
- Access Controls: Limited employee access with strict confidentiality agreements
- Regular Audits: Security assessments and vulnerability testing
- Incident Response: Procedures to handle security breaches promptly
5. Data Sharing & Third-Party Services
We do not sell your personal or health data. We may share information only in these limited circumstances:
5.1 With Your Consent
We will share data with healthcare providers or others only if you explicitly authorize it.
5.2 Third-Party Service Providers
We use trusted service providers who help operate the app under strict confidentiality:
- Firebase (Google Cloud): Cloud infrastructure, database, authentication, hosting
- Stripe: Payment processing for subscriptions (does NOT access health data)
- AI Services: Anonymous AI chat assistance (your health context is NOT shared externally)
- Push Notifications: Firebase Cloud Messaging for alerts
5.3 Legal Requirements
We may disclose information if required by law, court order, or to protect safety.
5.4 Business Transfers
In case of merger or acquisition, you will be notified of any data transfer.
6. Data Retention & Account Deletion
6.1 Active Accounts
- Your health data is retained as long as your account is active
- You can delete individual entries at any time
- You can export your data before deletion
6.2 Account Deletion
How to Delete Your Account:
- In-App (Immediate): Go to Profile → Account Settings → Delete Account
- Email Request: Send request to support@ovuloom.com (processed within 30 days)
- Web Form: Visit https://www.ovuloom.com/delete-account.html
6.3 What Gets Deleted
Upon account deletion, we permanently delete:
- All cycle and period tracking data
- Fertility predictions and insights
- Pregnancy tracking information
- Health logs and symptoms
- Account settings and preferences
- AI chat history
- Community forum posts and comments
6.4 Audit Records (Compliance)
For legal and tax compliance, we retain minimal audit records for 7 years after account deletion:
- ✅ Account ID (anonymous identifier)
- ✅ Email address
- ✅ Account creation and deletion dates
- ✅ Subscription history (for tax/refund purposes)
- ✅ Payment transaction records
- ❌ NO health data (periods, cycles, symptoms, etc.)
- ❌ NO personal notes or tracking information
Purpose: Legal compliance, fraud prevention, tax records, and dispute resolution.
Access: Only administrators can view audit records.
6.5 Anonymous Analytics
Anonymized, aggregated usage statistics (with no personal identifiers) may be retained for product improvement.
7. Your Privacy Rights
You have the right to:
- Access: Request a copy of your data
- Correction: Update or correct inaccurate information
- Deletion: Request permanent deletion of your account and data
- Export: Download your data in CSV or PDF format (Premium feature)
- Portability: Transfer your data to another service
- Opt-Out: Unsubscribe from marketing communications
- Object: Object to data processing (may limit app functionality)
- Complaint: File complaints with data protection authorities
To exercise these rights, contact us at: privacy@ovuloom.com
8. Pregnancy Loss Data - Special Protections
We understand the sensitivity of pregnancy loss information:
- Enhanced privacy protections for loss data
- You control visibility settings (hide from timeline, pause predictions)
- Loss data is never shared in research without explicit consent
- Support resources remain accessible even if you delete loss records
- You can transition out of PALS mode or clear loss data anytime
9. AI Chat Assistant
Our AI-powered health assistant provides personalized guidance:
- Chat conversations are encrypted and stored securely
- AI responses are educational only and do NOT constitute medical advice
- Your chat data is NOT used to train third-party AI models
- You can delete your chat history at any time
- Always verify AI recommendations with your healthcare provider
10. Children's Privacy
Ovuloom is designed for users 13 years and older. We do not knowingly collect personal information from children under 13. If we become aware of such collection, we will delete the information immediately.
11. International Data Transfers
If you're located outside the United States, your information may be transferred to and processed in the U.S. We ensure appropriate safeguards (such as standard contractual clauses) are in place for such transfers.
12. Changes to This Privacy Policy
We may update this Privacy Policy periodically. We will notify you of material changes through:
- In-app notification
- Email to your registered address
- Updated "Last Modified" date on this page
Your continued use of the app after changes constitutes acceptance of the updated policy.
13. Contact Us
For privacy-related questions, concerns, or requests, contact us at:
Email: privacy@ovuloom.com
Support: support@ovuloom.com
Website: https://ovuloom.com
For EU/UK residents: If you have concerns about our data practices, you may contact your local data protection authority.
14. Health Connect Data (Android)
On Android devices, Ovuloom may integrate with Health Connect (formerly Google Fit) to provide a seamless health tracking experience.
14.1 Data We Access
Ovuloom only requests access to reproductive health data:
- Menstruation Records: Period start/end dates, flow intensity
- Ovulation Test Results: If you choose to log them via Health Connect
Data We DO NOT Access from Health Connect:
- Steps or physical activity
- Heart rate or heart rate variability
- Calories burned (active or total)
- Distance traveled
- Exercise or workout data
- Sleep data
- Body temperature from wearables
- Blood glucose or blood pressure
- Nutrition or hydration data
14.2 How We Use Health Connect Data
- Cycle Tracking: To provide accurate period predictions and fertility insights
- Personalization: To sync your menstrual data across health apps
- Local Only: Health Connect data remains on your device unless you explicitly enable cloud sync
14.3 Data Sharing
- Health Connect data is NEVER shared with third parties
- Health Connect data is NEVER used for advertising or tracking
- Health Connect data is NEVER sold to anyone
14.4 Data Retention
- Health Connect data synced to Ovuloom follows our standard data retention policy
- Data is retained until you delete your account or remove the data manually
- Deleting Ovuloom does not delete data from Health Connect - manage that in Health Connect settings
14.5 Your Control
- You can revoke Ovuloom's access to Health Connect at any time in your device's Health Connect settings
- Revoking access will not delete data already synced to Ovuloom
- To delete synced data, use the account deletion feature in Ovuloom
15. U.S. State Privacy Laws
In addition to CCPA (California), we comply with the following state privacy laws:
15.1 California (CCPA/CPRA)
- Right to Know: You can request details about data we collect
- Right to Delete: You can request deletion of your personal information
- Right to Opt-Out: We do NOT sell your personal information
- Non-Discrimination: We will not discriminate against you for exercising your rights
- Sensitive Data: We collect health data only with your explicit consent
15.2 Virginia (VCDPA)
- Right to access, correct, delete, and obtain a copy of your data
- Right to opt out of targeted advertising (we do not engage in targeted advertising)
- Right to appeal our response to your request
15.3 Colorado (CPA)
- Right to access, correct, delete, and port your data
- Right to opt out of profiling for decisions with legal effects
15.4 Connecticut (CTDPA) & Utah (UCPA)
- Similar rights as Virginia residents regarding data access and deletion
- We honor opt-out requests from all U.S. residents regardless of state
To exercise any state privacy rights: Contact privacy@ovuloom.com
16. GDPR Compliance (EU/UK)
For users in the European Union or United Kingdom:
16.1 Legal Basis for Processing
- Consent: For health data and optional features
- Contract: To provide the Services you requested
- Legitimate Interests: For security, fraud prevention, and service improvement
16.2 Your Rights
- Right of access (Article 15)
- Right to rectification (Article 16)
- Right to erasure (Article 17)
- Right to restrict processing (Article 18)
- Right to data portability (Article 20)
- Right to object (Article 21)
- Rights related to automated decision-making (Article 22)
16.3 International Data Transfers
Data may be transferred to the United States. We use Standard Contractual Clauses (SCCs) approved by the European Commission to ensure adequate protection.
16.4 Supervisory Authority
You have the right to lodge a complaint with your local data protection authority.
17. Reproductive Health Data Notice
🔒 Special Notice: We understand that reproductive health data is highly sensitive. We are committed to protecting your privacy and will never:
- Share your reproductive health data with law enforcement without a valid warrant
- Sell your health data to any third party
- Use your data for discriminatory purposes
You can delete your data at any time through the app or by contacting us.