1. Scope and your choices
This policy explains how BioMIR handles information in its app, website and optional data-sharing programs. The app uses health information to provide on-device analytics. Optional participation is voluntary and opt-in; Apple Health permission is separate from consent to use an exported file. Declining participation does not change your app results.
This general policy does not enroll you in a study or authorize secondary use. Each program must disclose its purpose, eligible data, safeguards and withdrawal process and obtain its own explicit consent.
2. Information used in the app
With your Apple Health permission, BioMIR reads supported health and clinical measurements and uses profile information, including age and sex where needed, to produce on-device metrics, trends and model outputs. Available information depends on your permissions and records. App history is held in local app storage. Demo records are synthetic and separate from your own history.
Core health calculations do not require you to send your records to BioMIR. Exporting and sharing a file are separate user actions. Manage Apple Health permission in the system settings; changing research consent does not change your Apple Health records.
3. Optional exports and permitted uses
Where your app version offers the current software-evaluation program, you select daily-habit (Behavioral) and sleep/fitness (Functional) categories. The export includes the selected history retained by BioMIR, including previously synced days. It excludes Demo data, cardiometabolic and clinical records, and clinical-model outputs.
BioMIR may use files accepted under that program only to evaluate and refine how Behavioral and Functional measurements are combined and bounded, including consistency and missing-data sensitivity. It does not authorize clinical-model tuning, age-year or mortality-hazard calibration, advertising, sale, unrelated research or clinical-trial participation. Other categories or purposes require a separately disclosed program and consent before use.
Review the program-specific consent in Settings → Authorization → Research Consent. Creating a file does not send it or confirm study enrollment. BioMIR does not automatically upload the file; you choose whether, how and to whom to share it.
4. What is removed, and what remains
The current export uses an explicit field list. It excludes names, email/contact details, addresses, account and device identifiers, location, birth dates, original calendar dates, free-text notes, and app-build and consent-date anchors. Random dataset and consent codes are not derived from your name, email or device.
Selected measurements, sex, exact fractional age and elapsed days remain. Elapsed days preserve observation gaps without including original calendar dates. Detailed health patterns and exact age may still identify a person or link files. Removing direct identifiers reduces risk; it does not guarantee anonymity or establish HIPAA Safe Harbor or an Expert Determination.
A sharing service may separately disclose your sender address, account details or other metadata. An email alias does not anonymize health patterns. Review the file and recipient before sharing.
5. Recipients, safeguards and contact
BioMIR is the intended recipient for its own program. Contact research@biomir.co before sending a file to arrange an approved transfer method. Do not attach health records to ordinary email. The app currently provides no automatic research-upload service. Access to accepted program records is restricted to personnel authorized for the stated purpose; other uses or recipients require appropriate disclosure and permission.
The temporary export uses iOS file protection and is excluded from device backup. Closing the export screen removes the temporary app copy. Copies you save or send are outside the app’s control, and their protection depends on the destination and sharing service.
Use research@biomir.co for participation, consent, transfer, withdrawal and research-data deletion requests. Use contact@biomir.co for general support and other privacy inquiries. Email correspondence can disclose your email address and message contents; include only information needed for the inquiry.
6. Retention, withdrawal and deletion
Under the current program policy, accepted source files must be deleted within 12 months of receipt, or sooner following a verified deletion request, subject to a disclosed legal retention requirement. Deletion requests should be acknowledged within 7 days and completed within 30 days. Any exception, remaining backup retention or limitation must be explained; retained copies must be restricted from further program use after withdrawal.
Turning Research Consent off stops future app exports. It does not notify a recipient, retrieve copies already shared or undo completed analyses. Contact research@biomir.co to request withdrawal or deletion of files BioMIR has received. BioMIR may need limited information to locate the file and verify the request. Already completed analyses and combined results that do not identify you may remain.
Local records, copies you independently save and records held by other recipients have separate controls. For support correspondence or other personal information supplied directly to BioMIR, contact contact@biomir.co for access, correction or deletion; any legally necessary retention must be explained.
7. Website and external services
The website stores your selected light/dark theme in browser local storage. Its hosting infrastructure may process connection and technical information, such as IP addresses and request logs, to deliver and secure the website. The website is hosted using Wix services; links to Apple, GitHub and other external services are governed by their own practices. This privacy page does not collect health-record submissions.
Apple handles App Store purchases and its own service data under Apple’s policies. Email and any sharing service you choose may process information independently. BioMIR prohibits advertising, sale and unrelated use of health files accepted under its program.
8. Policy history and changes
The authoritative address is https://www.biomir.co/privacy. The version and preparation date identify this policy text; publication and approval evidence are maintained separately. Prior policy versions are retained for traceability. Substantive changes to program purposes or eligible data require new disclosure and consent where applicable; publishing a general policy does not broaden an existing grant.
Questions about this policy: contact@biomir.co. Research-program questions: research@biomir.co.