Healthya Family Privacy Policy
Applies to: Healthya Family (caregiver app) Β· Effective: June 21, 2026 Β· Last updated: August 1, 2026
About this policy. The Healthya Family app lets you support a linked senior β view brief health summaries, see optional location information, and receive emergency alerts. This policy explains how we handle your caregiver data and how access to a senior's data works. The senior is the data subject for their own information and is governed by the separate Senior Privacy Policy.
1. Who we are
Healthya Family is operated by Deeper Emptiness AI ("we", "us"), which acts as the business/Controller of your caregiver information. For data of the linked senior, we act as a Service Provider/Processor under instructions defined by the senior's consents.
Contact: hello@healthia.app
2. Information about you (the caregiver)
| Category | Examples |
| Identifiers | Phone number, email address, sign-in provider identifiers (Sign in with Apple / Google), account ID, device IDs, push tokens |
| Personal information | Display name, relationship label (e.g., "son", "daughter") |
| Internet / electronic activity | App usage logs, feature timestamps |
3. Access to the linked senior's data
Once a senior accepts your family link, you can see basic relational facts (their display name, the fact that you are linked). All health activity visibility is gated by a consent the senior grants in their app: Share health activities with family.
3.1 When the senior's health-sharing consent is ON
- Meals β time, type (breakfast / lunch / dinner / snack), photo (if uploaded), AI nutrition analysis (food name, calories, caution notes)
- Exercise β type and duration (minutes)
- Medication β registered medications (name, dose, schedule), intake events, photos of pill bottles / prescriptions
- Hydration β water intake events
- Sleep β sleep start / end timestamps and sleep stages (including measurements the senior imported from a connected health app)
- Device health metrics (if the senior connected a health app) β steps, distance, active energy, vital signs (heart rate, blood pressure, oxygen, temperature, respiratory rate), blood sugar / weight, and fitness / gait measurements imported from Apple Health or Google Health Connect
- Recent activity timestamp
- AI-generated daily summary of the senior's day, when available
Mental-wellness data (mindfulness minutes and self-logged mood the senior imported from a connected health app) is never visible to family β it is redacted server-side even when the senior's health-sharing consent is on.
3.2 Optional location and emergency information
- Activity area β a generalized last-7-days activity area (rounded to roughly 1β2 km blocks) is visible only if the senior also grants the separate Share activity area with family consent.
- Emergency location β see section 4.
3.3 When the senior's consent is OFF or withdrawn
The family app will display a clear notice that the senior has not granted access, and the related categories are hidden server-side (row-level-security-enforced, not just client filtering). The change is effective on the next data refresh.
3.4 You access this data through the senior's consent
You have no independent right to retain, export, or share the senior's data. If the senior withdraws a sharing consent, the family link itself is unaffected (you remain linked), but the corresponding data visibility is removed.
4. Emergency alerts and location
This app is not an emergency response service. Emergency alerts are best-effort and not guaranteed. In an emergency, call 911 (US) or your local emergency number.
If the senior has enabled emergency location sharing and places a 911 call from their app, you may receive a push alert. The alert notification contains the senior's name only. When you open the alert, the app retrieves the senior's precise location for that single emergency from our server (under row-level security) so you can help. You should use this information only to assist the senior in that emergency. Only the senior's most recent emergency location is stored, and it is automatically deleted after 7 days.
5. Purposes of use
- Display the senior's status and care events to support their well-being
- Receive emergency alerts and view the senior's emergency location (when shared)
- Receive push notifications about events the senior has approved sharing
- Show AI-generated summaries to help you support the senior
- Help the senior recover their account at a new number when authorized (verification by SMS code and your confirmation)
- Legal compliance, fraud prevention, and security auditing
6. Service providers
| Recipient | Data sent | Purpose |
| Expo Push (relaying to Apple APNs / Google FCM) | Push token, notification payload | Notification delivery (including emergency alerts). |
| Supabase (infrastructure) | Caregiver profile, link records | Service operation, with row-level security. |
| Google Vertex AI (Gemini) | Inputs for the senior's daily summary | Generating the AI summary shown to you. Enterprise terms β no model training. |
| Twilio (Verify) | Phone number, one-time verification code | SMS verification for sign-in and to help a senior recover their account at a new number. |
| Resend | Email address and request details | Sending account and rights-request notification emails. |
Video calling. Video calling is not offered in the current version of the app. We do not route any video or audio to a video-calling provider.
7. Do Not Sell or Share notice
We do not sell or share your caregiver data, nor the senior's data, for advertising. Protection applies automatically.
8. Confidentiality obligation
You must keep the senior's data confidential. Do not share it with persons unrelated to the senior's care without the senior's prior consent. Misuse of the senior's data violates these Terms and may also violate state privacy laws applicable to the senior (e.g., WA MHMDA, CMIA, and the FTC Act Β§5).
9. Push notifications
You receive push notifications only for events the senior has approved sharing (e.g., emergency alerts, reminder completion, link approvals). Push delivery is governed by the optional Receive notifications consent. You may disable notifications in-app or in the OS settings at any time. Disabling does not affect the link itself, but you may miss emergency alerts.
10. Retention
- Active retention while your caregiver account is in use.
- After 24 months of inactivity we will notify and deactivate.
- Account deletion: caregiver data removed within 30 days. Senior data access ceases immediately upon unlink β we do not retain copies on your device.
11. Your rights
You have the same set of rights (Know, Delete, Correct, Portability, Limit SPI, Opt-Out of Sale, Opt-Out of ADM, Non-Discrimination, Appeal, Authorized Agent) over your own caregiver data as set out in the Senior Privacy Policy. You do not have rights of access, correction, or deletion over the senior's data via the family app β please direct the senior to exercise those rights from their own app. Because the Family app does not include an in-app data export, exercise your own rights (including the Right to Know) by email at hello@healthia.app with the subject line [Rights Request]; we verify your identity and respond within 45 days.
12. Biometric notice (Illinois BIPA)
We do not generate or store voiceprints or other biometric identifiers from your audio or video.
13. Security
We implement reasonable technical and administrative safeguards (encryption in transit and at rest, row-level security, access control, audits) consistent with the NY SHIELD Act and industry standards.
14. International transfers
The service operates in multiple countries including the United States. Information may be transferred internationally; the higher of local law or this policy applies.
15. Changes to this policy
Material changes are notified in-app and by email at least 7 days before effective date. Significant scope changes require renewed consent.
- Privacy contact: hello@healthia.app
- Rights requests: hello@healthia.app (subject line: [Rights Request])
- Operating company: Deeper Emptiness AI (mailing address available on request via hello@healthia.app)
Healthya Family κ°μΈμ 보μ²λ¦¬λ°©μΉ¨
μ μ© λμ: Healthya Family(보νΈμ μ±) Β· μνμΌ: 2026λ
6μ 21μΌ Β· μ΅μ’
κ°±μ : 2026λ
8μ 1μΌ
λ³Έ λ°©μΉ¨ μλ΄. Healthya Family μ±μ μ°κ²°λ μλμ΄λ₯Ό λλ³Ό μ μκ² ν©λλ€ β κ°λ¨ν κ±΄κ° μμ½ λ³΄κΈ°, μ νμ μμΉ μ 보 νμΈ, μκΈ μλ¦Ό μμ . λ³Έ λ°©μΉ¨μ 보νΈμ λ°μ΄ν°μ μ²λ¦¬ λ°©μκ³Ό μλμ΄ λ°μ΄ν° μ κ·Ό λ°©μμ μ€λͺ
ν©λλ€. μλμ΄ λ³ΈμΈ μ 보μ μ 보주체λ μλμ΄μ΄λ©°, λ³λμ μλμ΄ κ°μΈμ 보μ²λ¦¬λ°©μΉ¨μ΄ μ μ©λ©λλ€.
1. νμ¬ μ 보
Healthya Familyλ Deeper Emptiness AI("λΉμ¬")κ° μ΄μνλ©°, λΉμ¬λ 보νΈμ μ 보μ μ¬μ
μ/μ²λ¦¬μ(Controller)μ
λλ€. μ°κ²°λ μλμ΄μ λ°μ΄ν°μ λν΄μλ μλμ΄μ λμλ‘ μ μλ μ§μμ λ°λΌ μλΉμ€ μ 곡μ/μνμ(Processor)λ‘μ μ²λ¦¬ν©λλ€.
λ¬Έμ: hello@healthia.app
2. 보νΈμ λ³ΈμΈ μ 보
| λΆλ₯ | μμ |
| μλ³μ | μ νλ²νΈ, μ΄λ©μΌ μ£Όμ, μμ
λ‘κ·ΈμΈ μλ³μ(Apple/Google λ‘κ·ΈμΈ), κ³μ ID, κΈ°κΈ° ID, νΈμ ν ν° |
| κ°μΈμ 보 | λλ€μ, κ΄κ³ λΌλ²¨(μ: "μλ€", "λΈ") |
| μΈν°λ·/μ μμ νλ | μ± μ¬μ© λ‘κ·Έ, κΈ°λ₯ μ¬μ© μκ° |
3. μ°κ²°λ μλμ΄ λ°μ΄ν° μ κ·Ό
μλμ΄κ° κ°μ‘± μ°κ²°μ μλ½νλ©΄, κΈ°λ³Έμ μΈ κ΄κ³ μ 보(λλ€μ, μ°κ²°λμ΄ μλ€λ μ¬μ€)λ₯Ό λ³Ό μ μμ΅λλ€. λͺ¨λ κ±΄κ° νλμ λ
ΈμΆμ μλμ΄κ° μμ μ μ±μμ λΆμ¬νλ κ°μ‘±κ³Ό κ±΄κ° νλ 곡μ λμλ‘ ν΅μ λ©λλ€.
3.1 μλμ΄μ κ±΄κ° κ³΅μ λμκ° μΌμ Έ μμ λ
- μμ¬ β μκ°, μ’
λ₯(μμΉ¨/μ μ¬/μ λ
/κ°μ), μ¬μ§(μ
λ‘λ μ), AI μμ λΆμ(μμλͺ
, μΉΌλ‘리, μ£Όμ λ©λͺ¨)
- μ΄λ β μ’
λ₯μ μκ°(λΆ)
- λ³΅μ½ β λ±λ‘ μ½(μ΄λ¦, μ©λ, μΌμ ), λ³΅μ© κΈ°λ‘, μ½ν΅/μ²λ°©μ μ¬μ§
- μλΆ β λ¬Ό μμ·¨ κΈ°λ‘
- μλ©΄ β μλ©΄ μμ/μ’
λ£ μκ° λ° μλ©΄ λ¨κ³(μλμ΄κ° κ±΄κ° μ±μμ κ°μ Έμ¨ μΈ‘μ κ° ν¬ν¨)
- κΈ°κΈ° κ±΄κ° μ§ν(μλμ΄κ° κ±΄κ° μ±μ μ°λν κ²½μ°) β Apple κ±΄κ° λλ Google Health Connectμμ κ°μ Έμ¨ κ±Έμ μ·거리·νλ μΉΌλ‘리, νλ ₯μ§ν(μ¬λ°Β·νμΒ·μ°μ·체μ¨Β·νΈν‘μ), νλΉΒ·μ²΄μ€, 체λ ₯·보ν μΈ‘μ κ°
- μ΅κ·Ό νλ μκ°
- κ°λ₯ν κ²½μ° μλμ΄ ν루μ λν AI μμ± μμ½
μ μ κ±΄κ° λ°μ΄ν°(μλμ΄κ° κ±΄κ° μ±μμ κ°μ Έμ¨ λ§μμ±κΉ μκ°κ³Ό λ³ΈμΈμ΄ κΈ°λ‘ν κΈ°λΆ)λ μλμ΄μ κ±΄κ° κ³΅μ λμκ° μΌμ Έ μμ΄λ μλ²μμ μ κ±°λμ΄ μ λ κ°μ‘±μκ² νμλμ§ μμ΅λλ€.
3.2 μ νμ μμΉ λ° μκΈ μ 보
- νλ μμ β μ΅κ·Ό 7μΌμ μΌλ°νλ νλ μμ(μ½ 1~2 km λΈλ‘ λ¨μλ‘ λ°μ¬λ¦Ό)μ μλμ΄κ° λ³λμ κ°μ‘±κ³Ό νλ μμ 곡μ λμλ₯Ό λΆμ¬ν κ²½μ°μλ§ νμλ©λλ€.
- μκΈ μμΉ β 4ν μ°Έμ‘°.
3.3 μλμ΄μ λμκ° κΊΌμ Έ μκ±°λ μ² νλ κ²½μ°
κ°μ‘± μ±μ μλμ΄κ° μ κ·Όμ νμ©νμ§ μμμμ λͺ
νν μλ΄νλ©°, κ΄λ ¨ νλͺ©μ μλ²μμ μ¨κ²¨μ§λλ€(ν΄λΌμ΄μΈνΈ νν°λ§μ΄ μλ ν μμ€ λ³΄μμΌλ‘ κ°μ ). λ³κ²½μ λ€μ μλ‘κ³ μΉ¨ μ λ°μλ©λλ€.
3.4 μλμ΄μ λμλ₯Ό ν΅ν΄μλ§ μ κ·Ό
보νΈμλ μλμ΄ λ°μ΄ν°λ₯Ό λ
μμ μΌλ‘ 보κ΄Β·λ΄λ³΄λ΄κΈ°Β·κ³΅μ ν κΆλ¦¬κ° μμ΅λλ€. μλμ΄κ° 곡μ λμλ₯Ό μ² νν΄λ κ°μ‘± μ°κ²° μ체λ μ μ§λμ§λ§, ν΄λΉ λ°μ΄ν°μ λ
ΈμΆμ μ κ±°λ©λλ€.
4. μκΈ μλ¦Ό λ° μμΉ
λ³Έ μ±μ μκΈ λμ μλΉμ€κ° μλλλ€. μκΈ μλ¦Όμ μ΅μ μ λ
Έλ ₯μΌ λΏ λ³΄μ₯λμ§ μμ΅λλ€. μκΈ μν©μμλ 911(λ―Έκ΅) λλ νμ§ μκΈλ²νΈλ‘ μ ννμΈμ.
μλμ΄κ° μκΈ μμΉ κ³΅μ λ₯Ό μΌλ μνμμ μμ μ μ±μΌλ‘ 911μ λ°μ νλ©΄, 보νΈμμκ² νΈμ μλ¦Όμ΄ μ¬ μ μμ΅λλ€. μλ¦Όμλ μλμ΄ μ΄λ¦λ§ λ΄κΉλλ€. μλ¦Όμ μ΄λ©΄, μ±μ΄ ν΄λΉ 1ν μκΈμ νν΄ μλμ΄μ μ λ° μμΉλ₯Ό λΉμ¬ μλ²μμ(ν μμ€ λ³΄μμΌλ‘) κ°μ Έμ 보μ¬μ€λλ€. μ΄ μ 보λ ν΄λΉ μκΈμμ μλμ΄λ₯Ό λλ μ©λλ‘λ§ μ¬μ©ν΄μΌ ν©λλ€. μλμ΄μ μκΈ μμΉλ κ°μ₯ μ΅κ·Ό 1κ±΄λ§ λ³΄κ΄λλ©° 7μΌ ν μλ μμ λ©λλ€.
5. μ΄μ© λͺ©μ
- μλμ΄μ μνμ μΌμ΄ μ΄λ²€νΈλ₯Ό νμνμ¬ μλ
μ§μ
- μκΈ μλ¦Ό μμ λ° (곡μ μ) μλμ΄ μκΈ μμΉ νμΈ
- μλμ΄κ° 곡μ λ₯Ό μΉμΈν μ΄λ²€νΈμ λν νΈμ μλ¦Ό μμ
- μλμ΄ λλ΄μ λκΈ° μν AI μμ± μμ½ νμ
- μμλ°μ κ²½μ°, μ λ²νΈλ‘μ κ³μ 볡ꡬ μ§μ(SMS μ½λ κ²μ¦ λ° λ³΄νΈμ νμΈ)
- λ²κ· μ€μ, λΆμ λ°©μ§, 보μ κ°μ¬
6. μλΉμ€ μ 곡μ(μνμ)
| μμ μ | μ μ‘ λ°μ΄ν° | λͺ©μ |
| Expo Push(Apple APNs / Google FCMλ‘ μ€κ³) | νΈμ ν ν°, μλ¦Ό νμ΄λ‘λ | μλ¦Ό μ λ¬(μκΈ μλ¦Ό ν¬ν¨). |
| Supabase(μΈνλΌ) | 보νΈμ νλ‘ν, μ°κ²° κΈ°λ‘ | μλΉμ€ μ΄μ, ν μμ€ λ³΄μ μ μ©. |
| Google Vertex AI (Gemini) | μλμ΄ ν루 μμ½ μμ± μ
λ ₯ | 보νΈμμκ² λ³΄μ¬μ€ AI μμ½ μμ±. μν°νλΌμ΄μ¦ μ½κ΄ β λͺ¨λΈ νμ΅ μμ. |
| Twilio(Verify) | μ νλ²νΈ, μΌνμ© μΈμ¦ μ½λ | λ‘κ·ΈμΈ λ° μλμ΄μ μ λ²νΈ κ³μ 볡ꡬ μ§μμ μν SMS μΈμ¦. |
| Resend | μ΄λ©μΌ μ£Όμ λ° μμ² λ΄μ© | κ³μ λ° κΆλ¦¬ μμ² κ΄λ ¨ μλ΄ μ΄λ©μΌ λ°μ‘. |
νμν΅ν. νμ¬ λ²μ μμλ νμν΅νλ₯Ό μ 곡νμ§ μμ΅λλ€. μ΄λ ν μμΒ·μμ±λ νμν΅ν μ 곡μλ‘ μ μ‘νμ§ μμ΅λλ€.
7. ν맀·곡μ κΈμ§ κ³ μ§
λΉμ¬λ 보νΈμ λ°μ΄ν°λ μλμ΄ λ°μ΄ν°λ₯Ό κ΄κ³ λͺ©μ μΌλ‘ ν맀·곡μ νμ§ μμ΅λλ€. 보νΈκ° μλ μ μ©λ©λλ€.
8. κΈ°λ° μ μ§ μ무
μλμ΄ λ°μ΄ν°λ₯Ό κΈ°λ°λ‘ μ μ§ν΄μΌ ν©λλ€. μλμ΄μ μ¬μ λμ μμ΄ λλ΄κ³Ό 무κ΄ν μ¬λκ³Ό 곡μ νμ§ λ§μΈμ. μλμ΄ λ°μ΄ν° μ€μ©μ λ³Έ μ½κ΄ μλ°μ΄λ©°, μλμ΄μκ² μ μ©λλ μ£Ό(ε·) νλΌμ΄λ²μλ²(μ: WA MHMDA, CMIA, FTC Act Β§5)λ μλ°ν μ μμ΅λλ€.
9. νΈμ μλ¦Ό
μλμ΄κ° 곡μ λ₯Ό μΉμΈν μ΄λ²€νΈ(μ: μκΈ μλ¦Ό, μλ¦Ό μλ£, μ°κ²° μΉμΈ)μ λν΄μλ§ νΈμ μλ¦Όμ λ°μ΅λλ€. νΈμ μ λ¬μ μ ν νλͺ©μΈ μλ¦Ό μμ λμλ‘ ν΅μ λ©λλ€. μ± λλ OS μ€μ μμ μΈμ λ μλ¦Όμ λ μ μμ΅λλ€. λλλΌλ μ°κ²° μ체μλ μν₯μ΄ μμΌλ, μκΈ μλ¦Όμ λμΉ μ μμ΅λλ€.
10. 보μ κΈ°κ°
- 보νΈμ κ³μ μ΄μ© μ€μλ νμ± λ³΄μ .
- 24κ°μ λ―Έμ¬μ© μ ν΅μ§ ν λΉνμ±ν.
- κ³μ μμ : 보νΈμ λ°μ΄ν°λ 30μΌ μ΄λ΄ μμ . μ°κ²° ν΄μ μ μλμ΄ λ°μ΄ν° μ κ·Όμ μ¦μ μ€λ¨λλ©°, κΈ°κΈ°μ μ¬λ³Έμ 보κ΄νμ§ μμ΅λλ€.
11. μ΄μ©μμ κΆλ¦¬
보νΈμ λ³ΈμΈ λ°μ΄ν°μ λν΄ μλμ΄ κ°μΈμ 보μ²λ¦¬λ°©μΉ¨μ κΈ°μ¬λ κ²κ³Ό λμΌν κΆλ¦¬(μ κΆλ¦¬, μμ , μ μ , μ΄λ, SPI μ ν, νλ§€ μ΅νΈμμ, μλν μμ¬κ²°μ μ΅νΈμμ, μ°¨λ³ κΈμ§, μ΄μμ κΈ°, λ리μΈ)λ₯Ό κ°μ§λλ€. κ°μ‘± μ±μ ν΅ν΄ μλμ΄ λ°μ΄ν°μ λν μ κ·ΌΒ·μ μ Β·μμ κΆλ¦¬λ κ°μ§ μμΌλ©°, ν΄λΉ κΆλ¦¬λ μλμ΄κ° μμ μ μ±μμ νμ¬νλλ‘ μλ΄ν΄ μ£ΌμΈμ. κ°μ‘± μ±μλ μΈμ± λ°μ΄ν° λ΄λ³΄λ΄κΈ° κΈ°λ₯μ΄ μμΌλ―λ‘, λ³ΈμΈ κΆλ¦¬(μ κΆλ¦¬ ν¬ν¨)λ hello@healthia.appμΌλ‘ μ λͺ© [Rights Request] μ΄λ©μΌμ λ³΄λ΄ νμ¬ν΄ μ£ΌμΈμ. μ μ νμΈ ν 45μΌ μ΄λ΄ μ²λ¦¬ν©λλ€.
12. μ체μ 보 κ³ μ§(μΌλ¦¬λ
Έμ΄ BIPA)
λΉμ¬λ 보νΈμμ μμ±Β·μμμΌλ‘λΆν° μμ± μ§λ¬Έ λ± μ체 μλ³μλ₯Ό μμ±Β·μ μ₯νμ§ μμ΅λλ€.
13. 보μ
λΉμ¬λ μ μ‘Β·μ μ₯ μ μνΈν, ν μμ€ λ³΄μ, μ κ·Ό ν΅μ , κ°μ¬ λ± ν©λ¦¬μ μΈ κΈ°μ μ Β·κ΄λ¦¬μ 보νΈμ‘°μΉλ₯Ό NY SHIELD Act λ° μ
κ³ νμ€μ λΆν©νκ² μ μ©ν©λλ€.
14. κ΅μΈ μ΄μ
λ³Έ μλΉμ€λ λ―Έκ΅μ ν¬ν¨ν μ¬λ¬ κ΅κ°μμ μ΄μλ©λλ€. μ λ³΄κ° κ΅μΈλ‘ μ΄μ λ μ μμΌλ©°, κ·Έ κ²½μ° νμ§λ²κ³Ό λ³Έ λ°©μΉ¨ μ€ λ λμ 보νΈκ° μ μ©λ©λλ€.
15. λ°©μΉ¨ λ³κ²½
μ€λν λ³κ²½μ μνμΌ μ΅μ 7μΌ μ μ± λ΄ λ° μ΄λ©μΌλ‘ ν΅μ§ν©λλ€. μ€λν λ²μ λ³κ²½μ μ¬λμκ° νμν©λλ€.
- κ°μΈμ 보 λ¬Έμ: hello@healthia.app
- κΆλ¦¬ μμ²: hello@healthia.app (μ λͺ©: [Rights Request])
- μ΄μ νμ¬: Deeper Emptiness AI (μ£Όμλ hello@healthia.appλ‘ μμ² μ μ 곡)