Legal

PRIVACY POLICY

Last updated: February 2026

XAICARE LTD ("we", "us") operates the SUNA app and website. This policy explains what data we collect, how we use it, and your rights.

Data We Collect

Email address — to notify you about product updates

Heart rate & HealthKit data — processed on-device for digestive state scoring

Meal photos — sent to Passio Nutrition AI for food recognition

Meal logs & nutrition data — stored in our encrypted backend (Supabase)

Referral activity — tracked to calculate subscription credits

Anonymous usage analytics — for app improvement

Third-Party Services

Passio Nutrition AI — meal photo analysis for food identification

Anthropic (Claude) — enhanced meal description analysis

Supabase — encrypted data storage with row-level security

What We Do Not Do

We do not sell your data to third parties.

We do not use your health data for advertising.

We do not share identifiable health data with insurers or employers.

Your Rights

You can access, correct, export, or delete your personal data at any time from the Profile screen in the app, or by contacting us. Under applicable data protection laws (including UK GDPR), you have the right to request a portable copy of your data.

Data Retention

Your data is retained for as long as your account is active. You can delete your account and all associated data at any time.

Children

SUNA is not intended for use by anyone under the age of 16. We do not knowingly collect data from children.

Disclaimer

Wellness device. Not medical. Not diagnostic. Ask your doctor.