Health Insight

HEALTH INSIGHT

Privacy Policy

Clear information about how we use and protect your data

Effective date September 10, 2026
Last updated September 10, 2026
Plain-language summary Health Insight helps you understand lifestyle patterns using laboratory reports you choose to upload and, if you permit it, selected Apple Health activity information. Uploaded reports and related health context may be processed by the Health Insight Analysis Engine to extract results and produce educational insights. Apple Health activity currently stays on your iPhone and is not sent to our server or the Analysis Engine. We do not sell personal or health information, use it for targeted advertising, or use HealthKit information for advertising.

United States availability

Health Insight is currently offered only in the United States. International privacy and data-transfer requirements will be reassessed before the App is offered or specifically marketed outside the United States.

1. Scope and who we are

This Privacy Policy explains how Health Insight (the “App”), operated by Atilasllc (“Health Insight,” “we,” “us,” or “our”), collects, uses, discloses, retains, and protects personal information. It applies when you create or use a Health Insight account, upload a laboratory report, enter health-related context, connect Apple Health, generate or share reports, or contact us.

Health Insight is a lifestyle-improvement tool. It uses laboratory information as one input for educational wellness insights. It is not a healthcare provider, does not provide a medical diagnosis, and is not a substitute for professional medical advice, diagnosis, or treatment.

2. Information we collect

Account and authentication information

Email address, display name, account status, verification status, and account creation/update dates.

A securely hashed password for email/password accounts; we do not store your plain-text password.

If you use Sign in with Apple or Google Sign-In, the provider identifier and information the provider makes available to us, such as your verified email or name, subject to your choices with that provider.

We create encrypted copies and keyed, nonreversible lookup values for account identifiers such as email addresses and Apple or Google provider identifiers. This pseudonymization applies to email/password, Apple, and Google accounts. It reduces direct exposure if a database is accessed without the separately controlled keys, but it does not make account or health records anonymous.

Login and session information, including recent login time, token records, session family identifiers, and security events used to authenticate you and prevent misuse.

Profile and preference information

You may provide a first and last name, sex assigned at birth, gender, height, weight, time zone, and preferred measurement units. Some existing records may contain a date of birth even if the current App interface no longer asks for it. These fields are used only when relevant to your profile, report presentation, or wellness context.

Laboratory and health information

Laboratory reports you upload as PDF, image, or CSV files, including information visible in those files such as patient name, laboratory name, collection date, test names, results, units, reference ranges, and abnormal flags.

Structured marker data, calculations, health scores, trends, findings, educational summaries, lifestyle guidance, generated reports, and source links derived from your uploaded reports.

Optional “Feeling Today” information, including a feeling or symptom description, severity, frequency, notes, and relevant dates.

Recommendation activity or other actions you choose to record in the App.

Apple Health activity information

With your permission, the current App reads selected activity information from Apple Health, including step count, Apple Exercise Time, active energy burned, walking and running distance, and workout records. This access is read-only and permission is requested through Apple’s HealthKit controls. In the current implementation, this activity information is displayed on your device and is not uploaded to Health Insight’s backend, stored in your Health Insight server account, or sent to the Analysis Engine. You can change HealthKit permissions in Apple’s system privacy settings.

Technical and communications information

Request and security information needed to operate and protect the service, such as timestamps, endpoint activity, error information, and rate-limit events. Depending on production hosting configuration, infrastructure logs may also include IP address, device/browser information, and similar network data.

File-security scan results and limited file metadata used to detect malware or unsafe uploads. We do not use rejected files to generate a health analysis.

Analysis Engine usage records, including the processing operation, model, response identifier, input and output token counts, estimated processing cost, timestamp, and internal user or file identifiers. These records do not contain prompts, generated summaries, complete laboratory reports, or laboratory values.

Password-reset requests and short-lived reset-code records. If email delivery is enabled, your email address is provided to the configured email service for delivery.

Information you provide when you contact support or send us a privacy request.

Website cookies and similar technologies

The public Atilas LLC and Health Insight information pages currently do not set or read cookies, use local or session browser storage, run advertising or analytics trackers, or use cross-site tracking. Because the public website does not currently use cookies or similar tracking technologies, it does not display a cookie-consent banner.

Our hosting and security infrastructure may still create server logs when a page is requested. As described above, those logs may include the requested page, timestamp, IP address, and device or browser information and are used for security, troubleshooting, and reliable operation. They are not used for targeted advertising.

If we introduce non-essential cookies, analytics, advertising technologies, or embedded third-party services, we will update this notice and provide any required notice, consent, rejection, or preference controls before those technologies are used.

3. How we use information

Create, authenticate, secure, and maintain your account and sessions.

Receive and validate uploaded files, extract laboratory results, organize markers, calculate scores and trends, and create report views and PDFs.

Generate educational health-profile summaries and marker-aligned lifestyle guidance.

Display Apple Health activity context locally on your device when you choose to connect it.

Provide password resets, account deletion, report deletion, support, troubleshooting, and service communications.

Detect fraud, abuse, unauthorized access, and technical failures; enforce limits; maintain logs; and improve reliability and security.

Comply with law, respond to lawful requests, protect rights and safety, and establish or defend legal claims.

We do not use your personal information or health information for targeted advertising. We do not sell personal information, health information, or HealthKit information. We do not use HealthKit information for advertising, data brokerage, or eligibility decisions.

4. How the Analysis Engine works

The Health Insight Analysis Engine uses an external processing service to support two core functions: (1) extracting structured laboratory results from files you upload, and (2) creating educational summaries and lifestyle guidance from supplied laboratory markers, profile context, trends, and optional Feeling Today information. The content sent can contain sensitive health information and identifiers that appear in an uploaded report, including a patient name or laboratory details.

The Analysis Engine is configured not to diagnose disease, prescribe treatment, recommend medication changes, or invent results. Lifestyle guidance is constrained to a curated set of reputable U.S., Canadian, European, and international health sources selected by Health Insight; social-media posts and general web browsing are excluded from that analysis. Analysis Engine output can still be incomplete or wrong and must be reviewed critically.

A laboratory file sent to the external Analysis Engine processing provider for extraction is temporary. Health Insight requests deletion immediately after processing, whether extraction succeeds or fails, and retries a failed deletion request. The upload also carries a one-hour automatic expiration as a provider-side safeguard. Health Insight records token counts and an estimated cost for each model response so we can monitor operating cost and detect unnecessary or repeated processing; the usage record excludes the prompt, generated text, and laboratory values.

No legally significant automated decisions Health scores, summaries, and recommendations are informational. They are not used by Health Insight to determine insurance, employment, credit, medical treatment, or another decision that produces legal or similarly significant effects.

5. When we disclose information

We disclose information only as described below and only to the extent reasonably necessary:

An external Analysis Engine processing provider, to extract and analyze the data described above.

Amazon Web Services, which provides production hosting, database, storage, email, monitoring, and security services.

Apple and Google, when you choose their authentication services. Their handling of information is governed by their own policies.

An email-delivery provider, when needed to deliver a password-reset message or another requested communication.

Your chosen recipient or mail provider when you export or email a Health Insight PDF. Once shared, the recipient’s handling of the report is outside our control.

Professional advisers, regulators, courts, law enforcement, or other parties when required by law or reasonably necessary to protect rights, security, users, or the public.

A successor in a merger, financing, reorganization, or sale, subject to appropriate confidentiality protections and applicable notice requirements.

We require service providers to process information for contracted purposes and to protect it appropriately.

6. Retention and deletion

We retain account-linked user data while your account is active. You may permanently delete your account at any time through My Profile. If an account has no authenticated activity for three years, Health Insight automatically deletes the account and its associated active-system data. We send inactivity notices after two years and again after two-and-a-half years; each notice states the last-activity date and scheduled deletion date. Signing in or otherwise using an authenticated App function before deletion resets the inactivity period. Limited information may be retained when required by law, necessary to resolve a dispute, or necessary to document or investigate a security incident.

Category General retention approach User control
Account/profile While active; automatically deleted after three years with no authenticated activity. Notices are sent at two years and two-and-a-half years. Use the App to reset inactivity, or delete the account immediately in My Profile.
Uploads and derived reports While the account is active, unless an upload is deleted sooner; automatically deleted with an account after three years of inactivity. Delete an upload in Upload/Manage Bloodwork; related report data is deleted and Insight is recalculated.
Feeling Today and health context While associated with an active account or relevant report; automatically deleted with an account after three years of inactivity. Delete the account; report-linked records may also be removed with the source report.
Sessions/reset records Short operational periods based on expiration, revocation, and security needs. Log out to revoke a session; reset codes expire.
Security/technical logs Retained for up to 12 months. The most recent 90 days are maintained in readily searchable storage. Logs are designed to exclude passwords, authentication tokens, complete laboratory reports, and detailed health information.
Analysis Engine usage records Retained for up to 12 months for cost monitoring, reliability review, and detection of repeated processing. The account link is removed when an account is deleted. Records contain token and cost metadata, not prompts, generated health content, reports, or laboratory values.
Account-deletion audit record A minimal pseudonymous deletion event is retained for three years after deletion for security, dispute resolution, and forensic investigation. It excludes names, email addresses, filenames, laboratory values, and health content.
Purchase records Transaction identifiers and credit records are retained for seven years from the transaction for accounting, refund, fraud-prevention, and dispute purposes. Apple retains payment-card information; Health Insight does not receive it.

Deletion removes account-linked information from active application systems. Encrypted system backups are retained on a rolling 30-day schedule and are then permanently deleted or overwritten. When an account is deleted, associated information may remain in a protected backup for no more than 30 days, is not restored to active use, and is removed as the backup expires. Specific records may be retained longer only when required by law or necessary for an active security investigation, dispute, or legal hold; they are deleted when that purpose ends.

7. How we protect information

We use administrative, technical, and organizational safeguards designed for the sensitivity of health information. Current controls include password hashing, signed short-lived access tokens, hashed refresh-token records, token rotation and revocation, server-side session validation, rate limiting, access checks that restrict user-scoped data, file type/signature and size validation, security headers, account deletion, and storage of iOS session credentials in Apple Keychain. Production configuration requires debug mode to be off, a strong signing secret, PostgreSQL, bounded session timeouts, and configured secure email delivery.

The production service uses HTTPS/TLS, encryption at rest, restricted administrative access, managed secrets, encrypted backups, monitoring, vulnerability management, and an incident-response process. No security measure is perfect, and we cannot guarantee absolute security. If you believe your account or information has been compromised, contact us promptly.

Health Insight also pseudonymizes account identity fields by storing encrypted representations and keyed lookup values. Encryption keys are managed separately through AWS Secrets Manager and AWS Key Management Service with restricted application access. During the staged transition, legacy identity fields remain available for compatibility and recovery; therefore, pseudonymization is an additional safeguard rather than anonymization or a substitute for access control, encryption at rest, and other security measures.

8. Your choices and privacy rights

Choices available to all users

Review and update available profile information in My Profile.

Decline or revoke Apple Health permissions in Apple’s system settings.

Delete individual uploaded reports through Upload/Manage Bloodwork. Deletion is permanent and changes aggregate scores and trends.

Delete your account and associated active-system data through My Profile.

Request access, correction, deletion, or a portable copy by using the privacy contact published with the App.

California

The California Consumer Privacy Act applies only to businesses that meet statutory thresholds. Whether or not Health Insight currently meets those thresholds, California residents may use the privacy contact below to request access to, correction of, deletion of, or a portable copy of account information. If the CCPA applies, California residents also have the rights to know the categories, sources, purposes, and recipients of personal information; to opt out of sale or sharing; to limit uses of sensitive personal information beyond permitted purposes; and to receive equal service without unlawful discrimination for exercising a privacy right.

During the preceding 12 months, Health Insight may have collected the categories described in Section 2 directly from users, their devices, Apple or Google when selected for authentication, and service providers supporting the requested transaction. We use and disclose those categories for the purposes described in Sections 3 through 5. Health Insight does not sell personal information and does not share it for cross-context behavioral advertising. Sensitive information, including health information, account credentials, precise data contained in uploaded reports, and authentication information, is used only to provide, secure, maintain, and comply with law for the service. Because we do not sell or share personal information for cross-context behavioral advertising or use sensitive information outside those purposes, the public website does not currently require a Do Not Sell or Share or Limit My Sensitive Personal Information link.

Submit a request by email or postal mail using Section 13. We will acknowledge and respond within the period required by applicable law. When the CCPA applies, we aim to respond to a verifiable request within 45 calendar days and will explain any permitted extension. We may request information reasonably necessary to verify identity or an authorized agent's authority, use verification information only for that purpose, and deny or limit a request when an exception applies. If we deny a request, our response will explain the reason and any available way to challenge the decision or contact the California Privacy Protection Agency.

European privacy rights

Health Insight is established in the United States, is currently offered only in the United States, and does not intentionally offer the App to people in the European Economic Area or United Kingdom or monitor their behavior there. Making these public pages accessible worldwide does not by itself represent an international offering. Before offering or specifically marketing the App in those regions, we will complete a formal review of applicable GDPR or UK GDPR duties, including transfer safeguards and appointment of a representative or data protection officer where legally required.

If European data-protection law nevertheless applies to particular processing, Atilasllc is the controller. Depending on the activity, the legal basis may be performance of a user agreement, explicit consent for health information where required, compliance with law, or legitimate interests in securing and operating the service that do not override individual rights. Applicable rights may include access, correction, erasure, restriction, portability, objection, withdrawal of consent, and a complaint to the relevant supervisory authority. Information is processed in the United States, and legally required safeguards will be used for a restricted international transfer. Contact us through Section 13 to exercise a right.

9. Processing locations

Health Insight is operated from the United States and is currently offered only in the United States. Production application data is hosted in Amazon Web Services in the United States. Information may also be processed where another service provider operates. Any expansion outside the United States will follow a documented review of applicable notices, legal bases, individual rights, processor terms, international-transfer safeguards, and local representation requirements before launch.

10. Children’s privacy

Health Insight is not directed to children under 13, and we do not knowingly collect personal information from a child under 13. Where local law requires a higher age for valid consent to processing health information or using an online service, a parent or guardian must provide legally valid authorization. If you believe a child provided information without appropriate authorization, contact us so we can investigate and delete it as required.

11. Breach notification

We maintain an incident-response process and will provide notices to affected individuals, regulators, and others when required by applicable law. Depending on the service and facts, this may include the U.S. Federal Trade Commission’s Health Breach Notification Rule and applicable state breach-notification laws.

12. Changes to this policy

We may update this policy as the App, service providers, or legal requirements change. We will post the updated policy with a revised “Last updated” date and provide additional notice or request renewed consent when required for a material change.

13. Contact us

For privacy questions or to exercise a privacy right, contact Atilasllc at privacy.healthinsight@gmail.com or by mail at 131 Continental Drive, Suite 305, Newark, DE 19713, USA. The same contact methods should appear in the App, App Store listing, and public website. Privacy requests should identify the account email and the right being requested; do not email a laboratory report or other sensitive health information unless specifically instructed through a secure channel.