Privacy Policy

Built with privacy by design for people with fibromyalgia

Last updated: October 2025

Our Privacy Principles

Privacy by Design

Your data is encrypted and separated from your identity from day one.

Transparency

You always know what data we collect and how we use it.

Your Control

You can export, modify, or delete your data at any time.

Minimal Data

We only collect what's necessary to help you track your health.

What Data We Collect

Identity Data (Minimal)

  • • Email address (for account access)
  • • Country (for weather data)
  • • Subject ID (anonymous identifier)

Clinical Data (Separated)

  • • Demographics (age, gender, height, weight)
  • • Medications and supplements
  • • Daily symptoms (pain, fatigue, sleep, mood)
  • • Lifestyle factors (exercise, diet, weather)
  • • Life events and monthly check-ins

Consent Data

  • • Service consent (required for reports)
  • • Research consent (optional, revocable)
  • • Consent changes with timestamps

How We Use Your Data

Service Delivery

To generate clinician reports, check drug interactions, and provide personalized insights.

Research (With Consent)

Only if you opt-in, anonymized data may be used for fibromyalgia research. Your identity is never shared.

Legal Compliance

To comply with legal obligations and protect our rights and your safety.

How We Protect Your Data

Encryption

All data is encrypted in transit and at rest using industry-standard encryption.

Access Controls

Strict access controls ensure only authorized personnel can access your data.

Audit Logging

All access to your data is logged and monitored for security.

Data Separation

Your identity and clinical data are stored in separate, encrypted databases.

Regular Backups

Your data is regularly backed up with the same security standards.

GDPR Compliance

We comply with UK GDPR and provide all required data subject rights.

Your Rights

Right to Access

You can request a copy of all your data at any time.

Right to Rectification

You can correct any inaccurate data in your account.

Right to Erasure

You can delete your account and all associated data.

Right to Portability

You can export your data in a machine-readable format.

Right to Withdraw Consent

You can withdraw research consent at any time.

Research Data Sharing

Optional Research Participation

You can choose to contribute your anonymized data to advance fibromyalgia research. This is completely optional and you can withdraw at any time.

  • • Your identity and contact details are never shared
  • • Data is anonymized using k-anonymity techniques
  • • Only aggregated, non-identifiable data is shared
  • • You can withdraw consent at any time
  • • Past anonymized releases cannot be recalled

Contact Us

If you have any questions about this privacy policy or want to exercise your rights, please contact us:

Email: privacy@fibronex.com

Data Protection Officer: dpo@fibronex.com

Address: Fibronex Ltd., Privacy Team, UK

This privacy policy is effective as of October 2025 and may be updated periodically. We will notify you of any material changes.