Privacy Policy
Built with privacy by design for people with fibromyalgia
Last updated: October 2025
Our Privacy Principles
Privacy by Design
Your data is encrypted and separated from your identity from day one.
Transparency
You always know what data we collect and how we use it.
Your Control
You can export, modify, or delete your data at any time.
Minimal Data
We only collect what's necessary to help you track your health.
What Data We Collect
Identity Data (Minimal)
- • Email address (for account access)
- • Country (for weather data)
- • Subject ID (anonymous identifier)
Clinical Data (Separated)
- • Demographics (age, gender, height, weight)
- • Medications and supplements
- • Daily symptoms (pain, fatigue, sleep, mood)
- • Lifestyle factors (exercise, diet, weather)
- • Life events and monthly check-ins
Consent Data
- • Service consent (required for reports)
- • Research consent (optional, revocable)
- • Consent changes with timestamps
How We Use Your Data
Service Delivery
To generate clinician reports, check drug interactions, and provide personalized insights.
Research (With Consent)
Only if you opt-in, anonymized data may be used for fibromyalgia research. Your identity is never shared.
Legal Compliance
To comply with legal obligations and protect our rights and your safety.
How We Protect Your Data
Encryption
All data is encrypted in transit and at rest using industry-standard encryption.
Access Controls
Strict access controls ensure only authorized personnel can access your data.
Audit Logging
All access to your data is logged and monitored for security.
Data Separation
Your identity and clinical data are stored in separate, encrypted databases.
Regular Backups
Your data is regularly backed up with the same security standards.
GDPR Compliance
We comply with UK GDPR and provide all required data subject rights.
Your Rights
Right to Access
You can request a copy of all your data at any time.
Right to Rectification
You can correct any inaccurate data in your account.
Right to Erasure
You can delete your account and all associated data.
Right to Portability
You can export your data in a machine-readable format.
Right to Withdraw Consent
You can withdraw research consent at any time.
Research Data Sharing
Optional Research Participation
You can choose to contribute your anonymized data to advance fibromyalgia research. This is completely optional and you can withdraw at any time.
- • Your identity and contact details are never shared
- • Data is anonymized using k-anonymity techniques
- • Only aggregated, non-identifiable data is shared
- • You can withdraw consent at any time
- • Past anonymized releases cannot be recalled
Contact Us
If you have any questions about this privacy policy or want to exercise your rights, please contact us:
Email: privacy@fibronex.com
Data Protection Officer: dpo@fibronex.com
Address: Fibronex Ltd., Privacy Team, UK
This privacy policy is effective as of October 2025 and may be updated periodically. We will notify you of any material changes.