Analytia
Back to home

Analytia Website — Privacy Policy

Version 1.0 · Effective date: [DATE] Controller: [LEGAL ENTITY NAME], [STREET, CITY, POSTCODE], Israel Contact: [email protected]


1. Summary

Your health data never reaches us. The Analytia web app runs inside your browser. Lab values, reports, medications and measurements are processed in your browser tab and saved only in the encrypted vault file you download. We have no database for health data and could not produce it if asked.

We do process a small amount of non-health personal data to run the website: technical data needed to deliver pages, your account data if you subscribe to Pro (name, e-mail, country, subscription status), and — only if you accept cookies — website usage statistics through Google Analytics.


2. The web app (health data)

  • Health data you enter or import is held in your browser's memory and in the browser's session storage of that tab while you use it, and in the encrypted file you choose to save (AES-256-GCM, key derived from your password with PBKDF2-SHA-256, 600,000 iterations). The password never leaves your device.
  • The app page enforces a Content-Security-Policy that allows network connections only to this website (static files and your Pro licence) and, if you enable the AI assistant with your own key, to that AI provider.
  • AI assistant (optional): if you enable it, a summary of your recorded data is sent directly from your browser to the provider you chose (Anthropic, OpenAI or Perplexity) under your own contract with them. It is not sent to us.
  • Usage events: if you accepted analytics cookies, the app reports a few anonymous usage events (e.g. "results imported", "tab viewed") to our server, which forwards them to Google Analytics. These events never contain health values, marker names or file contents.

3. Account data (Pro subscribers)

DataPurposeLegal basis
E-mail address, e-mail verification time, time of your e-mail consent, e-mail languageSign-in with a one-time code; account e-mails (activation code, renewal notice)Art. 6(1)(a) GDPR (consent) and 6(1)(b) GDPR (contract)
Blood-test reminder interval (3, 6 or 12 months) and the date of the next reminder — only if you switch reminders onReminder e-mailsArt. 6(1)(a) GDPR (consent)
Log of which e-mail type we sent and when (no content, kept up to 13 months)Avoiding duplicates, proof of what we sentArt. 6(1)(f) GDPR
Name, countrySubscription, invoicing, tax calculationArt. 6(1)(b) and 6(1)(c) GDPR
Subscription status, renewal date, Paddle customer IDUnlocking Pro, customer serviceArt. 6(1)(b) GDPR
Your Pro activation code and, once used, a hash of the random id of the one phone/tablet it activated, with the dateMaking sure the code works on one device only; letting you move it to a new phoneArt. 6(1)(b) GDPR
News and tips (only if you opt in), time of that consentOccasional e-mails about AnalytiaArt. 6(1)(a) GDPR (consent)

Account data is stored in a database operated by Cloudflare on our behalf. We keep it while your account exists; you can delete your account at any time on the account page. Invoicing records held by Paddle are kept as required by tax law.

4. Payments — Paddle

Our order process is conducted by our online reseller Paddle.com Market Ltd (and its affiliates). Paddle is the Merchant of Record for all orders: it processes your payment details, calculates and remits sales tax/VAT, issues invoices and handles refunds. We never see your full card details. Paddle processes your data under its own privacy policy (paddle.com/legal/privacy).

5. E-mail delivery

We only e-mail you if you agreed to it when signing in — without that consent we send nothing, not even the sign-in code. All e-mails come from [email protected]; replies reach us directly.

  • Account e-mails (with your consent, while you have an account): sign-in codes, a welcome message, your Pro activation code after purchase, and a notice 7 days before your yearly subscription renews. To stop them, delete your account.
  • Blood-test reminders and news and tips are optional and off by default. Switch them on or off on the account page, or use the unsubscribe link in every such e-mail.
  • Our e-mails never contain health data — we do not have any. A reminder is based only on the interval you chose.

E-mails are sent through Resend (Resend Inc., USA) as our processor, on the basis of Standard Contractual Clauses. If you opt in to news, your e-mail address and first name are kept in a Resend mailing list, and removed when you opt out. E-mails you send to [email protected] are received through Cloudflare Email Routing and forwarded to our mailbox.

6. Hosting and security logs

The website is hosted by Cloudflare, Inc. Cloudflare processes technical connection data (IP address, time, requested page, browser type) to deliver the site and protect it against attacks (Art. 6(1)(f) GDPR). These requests never contain health data.

7. Cookies and analytics

  • Necessary: a session cookie (xh_session) when you sign in to your account; your cookie choice and language preference in your browser's local storage; a random id for this browser that ties a Pro key to it (so a copied key does not work elsewhere — it contains nothing about you), and the name of your last vault file — in Chrome and Edge also a reference to its location on your computer (a file handle, never its contents) so you can reopen it with one click. You can remove it with "Forget this file on this computer". No consent is needed for these.
  • Analytics (only with your consent): Google Analytics 4 by Google Ireland Ltd / Google LLC measures visits, pages, device type, approximate location and actions on our website. Google may transfer data to the USA (EU–US Data Privacy Framework). IP addresses are not stored by GA4; Google signals and ad personalisation are disabled. Legal basis: Art. 6(1)(a) GDPR and § 25(1) TDDDG. You can change your choice at any time via "Cookie settings" in the footer.

8. International transfers

We are established in Israel, which benefits from an EU adequacy decision. Transfers to processors in the USA rely on the EU–US Data Privacy Framework or Standard Contractual Clauses.

9. Your rights

You have the right to access, rectify, erase, restrict and port your data, to object to processing, and to withdraw consent at any time (GDPR Art. 15–21). Most of this you can do yourself on the account page. For anything else, write to [email protected]. You may also complain to a supervisory authority — in Israel the Privacy Protection Authority, in the EU the authority of your country of residence.

10. Changes

We will publish any changes on this page and, for material changes, inform account holders by e-mail.