Replace the bracketed owner/contact details in config.js and have this draft reviewed for your business, users, and launch regions—especially because the app handles health-related data and may be used by teens.
1. Overview
Ironly (“we,” “us,” or “our”) is a wellness app that helps users record estimated dietary iron intake, moods, and symptoms. This policy explains what information we collect, why we use it, and the choices available to you.
2. Information we collect
- Account information: email address and a securely hashed password managed by Supabase Auth. We do not store your raw password.
- Iron logs: food name, portion, estimated iron amount, date logged, and timestamp.
- Custom foods: foods you save and their iron density.
- Mood trackers: custom slider or symptom-group labels, types, and emoji options.
- Mood entries: slider readings from 1–10 and selected symptoms for a given day.
3. How we use information
We use this information to provide your account, store and display your entries, calculate totals and trends, maintain app functionality, support account recovery, respond to support requests, and protect the service.
4. Storage and service providers
Data is stored in a hosted Supabase backend and transmitted over HTTPS. Supabase provides database, authentication, and server-function services. Information is not stored solely on your device; the device retains the current session and data loaded into memory.
When a searched food is not in the built-in list, the search term may be sent to the USDA FoodData Central API to retrieve iron information. No personal or account data is intentionally included—only the food search term.
5. Security and access
Account records are segmented by user ID so users can access only their own rows. Passwords are hashed through Supabase Auth, sensitive account operations run in server-side functions, and data is transmitted using HTTPS. No system can guarantee absolute security.
6. Retention and deletion
We retain account data until it or the account is deleted, unless a longer period is required for legal or security reasons. You may delete individual entries in the app. To request complete deletion of your account and associated data, contact us at [support email].
7. Health information disclaimer
Ironly provides wellness tracking only and does not provide medical advice, diagnosis, or treatment. Iron values are estimates based on portion selections and food data and may not be exact. Consult a qualified healthcare professional about health decisions or symptoms.
8. Children and teens
Ironly’s minimum-age requirements and any parental-consent process should be stated here before launch. If we learn that data was collected in violation of applicable child-privacy law, we will take appropriate steps to delete it.
9. Your rights
Depending on where you live, you may have rights to access, correct, delete, or obtain a copy of your information, or object to certain processing. Contact us to make a request.
10. Changes
We may update this policy as the app or legal requirements change. We will post the updated version here and revise the effective date.
11. Contact
[Legal name or company]
[support email]