Privacy Policy

Effective: March 21, 2026 · Version 1.2

1. Overview

CardioCommand, operated by Smith & Williams Holdings LLC ("we," "our," "us"), is a personal health intelligence platform designed to help individuals track, understand, and share their cardiometabolic health data. This Privacy Policy describes how we collect, use, store, and protect your information.

2. Information We Collect

Account Information: Email address, display name, username, and authentication credentials.

Health Data: Glucose readings, blood pressure, medications, lab results, body composition, dietary logs, exercise data, and other health metrics you choose to enter.

Usage Data: Actions taken within the platform, feature usage patterns, and session information for product improvement.

Device Data: Browser type, operating system, and IP address for security and functionality.

Payment information

If you subscribe to a paid plan, payment is handled entirely by Stripe. We never see or store your full card number. We retain only the identifiers Stripe gives us — a customer reference, a subscription reference, and your plan status — which is what tells the app whether your subscription is active.

3. How We Use Your Information

  • Provide personalized health tracking, insights, and reports
  • Generate trend analysis and pattern recognition from your data
  • Create reports for sharing with your healthcare providers (only when you choose)
  • Improve platform functionality and user experience
  • Maintain security and prevent unauthorized access

4. De-Identified & Aggregate Data

We may use de-identified, aggregate data — data that has been stripped of all personally identifiable information — for the following purposes:

  • Improving intelligence engines: Demographic health trends (age groups, condition types, regional patterns) help us deliver more relevant and accurate insights, food guidance, exercise recommendations, and health signals to all users.
  • Pattern recognition: Aggregate trends across similar health profiles (e.g., how users managing diabetes + CKD respond to certain foods) allow our AI to provide better personalized recommendations without exposing any individual's data.
  • Product improvement: Understanding which features are most useful for different health conditions helps us prioritize development.
  • Research insights: Aggregate, anonymized health trends may be used for general health research purposes. No individual user can be identified from this data.

What this means: Your personal data is never shared, sold, or exposed. Only anonymized patterns — like “users in this age group with these conditions tend to benefit from X” — are used to make the system smarter for everyone. You can opt out of aggregate data contribution in Settings at any time.

5. Data Sharing

We do not sell your personal health data. Your health information is shared only:

  • With your explicit consent — when you choose to share data with healthcare providers through our clinician sharing features
  • For platform operations — with service providers who process data on our behalf under data protection agreements. These are:
  • Google Cloud / Firebase — hosting, database and authentication. Your account and health records are stored here.
  • OpenAI — the AI features. When you ask a health question, scan a label or menu, or have a document parsed, the relevant parts of your health context are sent to OpenAI to generate the response. It is not used to train their models. If you would rather this did not happen, the free tier works without the AI features and your data stays in your account.
  • Stripe — payment processing for paid subscriptions. Stripe receives your email and payment details. It does not receive any of your health data.
  • Vercel — application hosting and delivery.
  • When required by law — in response to valid legal process

6. Data Storage & Security

Your data is stored in Google Cloud / Firebase infrastructure with encryption at rest and in transit. Access to your data is controlled through role-based access controls and audit logging. All clinician access to patient data requires explicit consent authorization.

7. Your Rights

  • Access: You can view all data we hold about you through the platform
  • Export: You can export all your data at any time from Settings > Data
  • Deletion: You can delete your account and all associated data from Settings > Data
  • Consent withdrawal: You can withdraw data sharing consent at any time

8. Consumer Health Data

This section applies to consumer health data and is written to meet state consumer health data laws, including the Washington My Health My Data Act and Nevada SB370. We are not a HIPAA covered entity, and CardioCommand is not a medical record system.

What we collect. Only what you enter or upload:

  • Measurements you log — glucose, blood pressure, weight, body composition, sleep, activity
  • Medications, supplements, conditions and symptoms you record
  • Food and meals you log, scan or ask about
  • Lab results and body composition reports you upload
  • Appointments, care team contacts and notes you add
  • Health goals and targets you set

Where it comes from. You. We do not buy health data, we do not infer it from your browsing, and we do not receive it from data brokers, advertisers or your insurer.

Why we collect it. To provide the service you asked for: organizing your data, computing your scores and trends, answering your questions about it, and producing the reports you choose to generate. We do not use it for advertising or profiling, and we do not sell it. We would not sell it for any price — there is no consent flow for that because there is no such sale.

Who else sees it.

  • Google Cloud / Firebase — stores it, as our processor
  • OpenAI — receives the relevant context when you use an AI feature, to generate that response. Not used to train their models.
  • Healthcare providers you choose — only when you share it yourself
  • Nobody else. Not Stripe, not analytics, not advertisers.

Your rights over it. You can see all of it in the app, export all of it from Settings > Data, and delete all of it — permanently — from the same place. You can withdraw consent for AI processing by not using the AI features; the rest of the app keeps working. You can withdraw provider sharing at any time. We do not charge you, slow you down or reduce your service for exercising any of these.

How to ask. Email support@axiomops.io from the address on your account. We will respond within 45 days. If we deny a request we will say why, and you can appeal by replying to that response.

No geofencing. We do not use geofences around health facilities, and we do not collect precise location at all.

9. Privacy & Security Practices

CardioCommand is designed with healthcare privacy principles in mind. We implement administrative, physical, and technical safeguards including access controls, audit logging, encryption, and minimum necessary data access principles. CardioCommand is not a certified electronic health record system and has not been independently audited for regulatory compliance.

10. Changes to This Policy

We may update this policy from time to time. When we make material changes, we will notify you through the platform and request re-acceptance. Previous versions are retained for your records.

11. Contact

For questions about this Privacy Policy or your data, contact us at support@axiomops.io.