Privacy Policy
Essomio (“we,” “our,” “us”) is a personal health tracking and analysis application. This Privacy Policy explains what data we collect, how we use it, and your rights with respect to it. It applies to the Essomio mobile application (iOS and Android) and web dashboard (essomio.com).
1. Local-first architecture
Essomio is designed local-first. Your health data — nutrition logs, workout sessions, weight entries, sleep records, step counts, and all other tracked metrics — is stored primarily on your device in an encrypted local database. The device is the source of truth for your data; the cloud is a secondary service.
The cloud sync service (available on the Premium plan) holds an encrypted copy of rich data that the OS health layer cannot express — custom recipes, workout programs, day-type calendars, and analysis-engine outputs — to enable cross-device access. We do not have access to the plaintext of your health data for any purpose other than returning it to your devices.
2. Data we collect
Account data: email address and password (hashed, never stored in plaintext) for authentication. Optionally: display name.
Health and fitness data: whatever you choose to log or sync — nutrition entries, workout sessions, weight, sleep, steps, biometric data from connected wearables. This data is yours. Every record carries provenance (source, timestamp, confidence level) so you can always see where it came from.
Usage and diagnostic data: crash reports and anonymous usage events (screens visited, features used) to improve the product. These are not linked to your health data and do not include any health payload.
What we do not collect: location data (beyond what a connected wearable may already log as a workout attribute), contact lists, browser history, or any data from other apps except via the explicit integrations you activate.
3. How we use your data
- To provide and improve the Essomio service
- To sync your data across your own devices (Premium)
- To generate analysis and explanations using your personal history
- To display non-personalized contextual advertisements on the free tier (see §6)
- To respond to support requests
We do not use your health data for advertising targeting, algorithmic profiling for third-party benefit, or any purpose beyond the service you signed up for.
4. Data sharing
We do not sell, rent, or share your personal or health data with third parties for their own use. We share data only in the following limited circumstances:
- Service providers: infrastructure vendors (cloud hosting, database) that process data on our behalf under data processing agreements, with no independent right to use your data.
- Wearable connectors (Premium): connecting a Fitbit, Garmin, Oura, or Whoop account requires OAuth authorization with that vendor's API. We pull data from their API; we do not push your data to them beyond what the OAuth flow requires.
- Legal requirements: if required by law, court order, or to protect rights and safety.
5. Health data and Apple/Google platform rules
Essomio accesses Apple HealthKit (iOS) and Google Health Connect (Android) data only with your explicit permission, only for the purposes disclosed during the permission request, and subject to Apple's and Google's platform policies. Specifically:
- HealthKit and Health Connect data is never used for advertising or ad targeting
- HealthKit and Health Connect data is never sold or shared with data brokers
- HealthKit and Health Connect data is never used for purposes beyond the features you activated
6. Advertising (free tier)
The free tier displays contextual banner advertisements. Ads are:
- Contextual only — based on general content category, not your personal health data
- Never shown inside logging flows or on screens displaying analysis findings
- Served in non-personalized mode; ad SDKs do not receive health payloads
- Absent entirely on the Premium plan
- Shipped behind a remote kill switch, default off at launch
7. Your rights
You have the right to access, correct, export, and delete your data at any time — regardless of whether you are on the free or Premium plan. Deletion is not a paid feature.
- Export: full data export in CSV format, available in-app at any time
- Deletion: delete your account and all associated data in-app; we purge the record within 30 days
- Correction: edit any manually entered record directly in the app
- Access: view all data associated with your account via the export feature
Depending on your location, additional rights may apply under GDPR, CCPA, or similar legislation. To exercise any right, contact us at privacy@essomio.com.
8. Data retention
Your data is retained as long as your account is active or as needed to provide the service. On account deletion, we purge all personal and health data from our systems within 30 days, except where retention is required by law.
9. Security
Data at rest is encrypted on-device using platform facilities (iOS Data Protection, Android Keystore). Data in transit is encrypted via TLS. Cloud-synced data is encrypted before transmission. Passwords are hashed using industry-standard algorithms; we never store plaintext passwords.
10. Children
Essomio is not directed at children under 13 (or 16 where applicable under local law). We do not knowingly collect personal information from children. If you believe a child has provided us information, contact us at privacy@essomio.com.
11. Changes to this policy
We will notify you of material changes to this policy via email and in-app notice before the change takes effect. Continued use of Essomio after notification constitutes acceptance of the updated policy.
12. Contact
Questions about this policy or your data: privacy@essomio.com