Legal
Consumer health data privacy policy
Last updated: August 10, 2026
This Consumer Health Data Privacy Policy describes how Rody Y. (doing business as Dietrack) (“Dietrack,” “we,” “us,” or “our”) collects, uses, and shares consumer health data as defined under Washington’s My Health My Data Act (Chapter 19.373 RCW). It applies to consumers as defined in that Act, including Washington residents and natural persons whose consumer health data is collected in Washington.
This policy is separate from our Privacy Policy and our Terms of Service. For additional detail about Dietrack’s general privacy practices, see the Privacy Policy.
1. Categories of consumer health data we collect and purposes
We may collect the following categories of consumer health data:
- Fitness and activity measurements you authorize from Apple Health (HealthKit) or Health Connect, limited in the current version to steps, active calories / active energy, and workouts (sessions / duration), stored as normalized daily, activity, and workout records linked to your Dietrack account.
- Body measurements, including weight / body mass synced from Apple Health or Health Connect and weight or related measurements you enter manually in the app.
- Health-related information you enter in Dietrack when those fields are available to you (for example, dietary restrictions, allergy information, or other health-related profile details you choose to provide).
- Inferences or associations derived from the above for Progress / Dashboard activity and energy insights in the app or backend. When you use optional AI features (such as meal generation or Nia), those features may also use stored fitness or weight records to generate a response.
We collect and process this data for the following purposes:
- To provide optional Health connections and Progress / Dashboard activity and energy insights you request.
- To store normalized records in your Dietrack account so those features work across sessions.
- When you use optional AI features (such as meal generation or Nia), to include relevant stored fitness or weight records in prompts processed by our AI service providers so those features can respond to your request.
- To respond to your support, export, deletion, or other privacy requests concerning this data.
- To secure the service and comply with law.
Wearable-synced data is not used to automatically change calorie targets, macro targets, meal macros, “eat back” exercise calories, numerically adjust TDEE, or modify goals. It is not used for advertising, marketing, or sale of consumer health data.
2. Categories of sources
- You, when you enter information in the Dietrack app or contact support.
- Apple Health (HealthKit) on iOS and Health Connect on Android, when you connect Health connections and grant OS permissions (including data those platforms receive from your iPhone, Apple Watch, or third-party devices or apps that write into those platforms).
3. Categories of consumer health data we share
Under RCW 19.373, “share” means disclosing consumer health data to a third party or affiliate, subject to statutory exceptions (including disclosures to processors that process data on our behalf consistent with the purpose disclosed to you).
We do not sell consumer health data. We do not currently share consumer health data with third parties or affiliates within the meaning of RCW 19.373, other than disclosures that are excluded from “sharing” (for example, processing by service providers acting as processors under binding contracts to host your account data or to power optional AI features you use).
Processors that may process consumer health data on our behalf include our cloud infrastructure provider (Supabase) for account storage, and when you use optional AI features that draw on stored fitness or weight records OpenAI and/or Google Cloud AI to generate AI responses.
4. Third parties and affiliates
We do not currently share consumer health data with third parties or affiliates as those terms are defined in RCW 19.373. We have no affiliates with whom we share consumer health data.
If that changes, we will update this policy and obtain any consent required by law before such sharing.
5. How to exercise your rights
Consumers may:
- Confirm whether we collect, share, or sell consumer health data about them and access such data (including, where applicable, a list of third parties and affiliates with whom we have shared or sold it).
- Withdraw consent to collection or sharing of consumer health data.
- Request deletion of consumer health data, including from archived or backup systems (backup deletion may take up to six months after we authenticate the request, as permitted by RCW 19.373.040).
How to submit a request: Email support@dietrack.app from the email address associated with your Dietrack account, or use in-app account / Health connections controls where available (disconnect stops future Health reads; account deletion or a deletion request removes stored records). We may need to authenticate your request. We will respond without undue delay and within the timelines required by RCW 19.373.040 (generally 45 days, with one permitted 45-day extension when reasonably necessary).
Appeal: If we refuse a request, you may appeal by emailing support@dietrack.app with the subject line “Consumer Health Data Appeal.” If your appeal is denied, you may contact the Washington Attorney General.
In-app / website controls: Disconnect Health connections in Profile → Health connections, or revoke OS permissions, to stop future collection from Apple Health or Health Connect. Delete your account or email support@dietrack.app to request deletion of stored records. Choosing not to use optional AI features means those features will not send prompts that include your stored fitness or weight records.
6. Contact
Rody Y. (doing business as Dietrack)
Aalbersestraat
Amsterdam, Noord Holland 1067GM
Netherlands
support@dietrack.app
Need help? Contact us · FAQ · Terms of service · Privacy policy · Cookie notice · Consumer health data · Delete your account