1. Your privacy and your choices
This policy explains how BioMIR handles information in the app, on this website and through optional data-sharing programs. You can use the app without sharing your health records with BioMIR. Participation in a data-sharing program is voluntary and requires a separate opt-in.
Apple Health permission lets the app read the records you authorize. It does not authorize sharing with BioMIR for product improvement or research. Each optional program explains its purpose, eligible data, privacy risks and withdrawal process before you decide.
2. Information used on your device
With your permission, BioMIR reads supported Apple Health measurements and clinical records. It also uses profile details, including age and sex where needed, and information you enter in the app. These records support your metrics, trends and explanations. Available results depend on your permissions and the information available.
App history is stored locally. Core health calculations do not require sending your records to BioMIR. Demo records are synthetic and are excluded from the optional program export. You can change Apple Health permissions in system settings; withdrawing program consent does not change your Apple Health records.
3. Optional sharing with BioMIR
In Settings → Authorization → Research Consent, review the available program and choose which eligible data to include. The current program supports product improvement: evaluating how daily habits, sleep and fitness measurements contribute to BioMIR’s Behavioral and Functional scores, including score limits and handling of missing measurements. It includes selected history already stored by the app, including previously synced days.
Only Apple Health/live history is eligible. Demo data, cardiometabolic records, clinical records and clinical-model results are excluded. Permission for this program does not cover clinical-model development, estimates of years of aging or mortality risk, advertising, sale or unrelated research. Additional data or purposes require separate disclosure and consent.
Creating an export does not send it. You decide whether to save or share the file. Contact research@biomir.co before sending records to BioMIR to confirm the receiving arrangements and program terms. Do not attach health records to ordinary email. This optional program does not enroll you in a clinical trial.
4. Export privacy: what is removed and retained
The export includes only specifically permitted fields. Names, email addresses, other contact details, addresses, account and device identifiers, location, date of birth, original calendar dates and free-text notes are excluded. Software-build details and the date of consent are also excluded. Random codes identify the export and consent record; they are not generated from your identity or device.
The file retains selected measurements, sex, exact fractional age (age expressed in years, including a decimal part), and elapsed days between observations. This preserves the timing needed for analysis without including original calendar dates.
Removing direct identifiers reduces privacy risk but does not guarantee anonymity. Precise age and detailed health patterns may still allow someone to identify a person or link records. BioMIR does not claim that the export meets a formally assessed de-identification standard. The program prohibits attempts to identify participants from health patterns or combine them with outside information for that purpose.
A service you use to share the file may reveal your sender address or account details separately. An email alias hides an address; it does not anonymize the health records. Review both the file and the destination before sharing.
5. Recipients and safeguards
BioMIR is the intended recipient for its own program. No automatic program upload is provided by the app. Contact research@biomir.co for receiving arrangements before sharing. You control which other destinations receive copies through the sharing service you choose.
The temporary app export uses iOS file protection and is excluded from device backup. Closing the export screen removes that temporary copy. Files you save or send remain at the destinations you choose and are outside the app’s control.
For files accepted under the program, permitted access is limited to authorized personnel working on the disclosed purpose. The program policy requires secure transfer and storage, separation of contact correspondence from analytical records, and equivalent privacy protections for any service provider processing the files. New recipients or uses require appropriate disclosure and permission.
6. Retention, withdrawal and deletion
The current program limits retention of received source files to 12 months after receipt, or less when a verified deletion request is received. Its service targets are acknowledgment within 7 days and completion within 30 days. These are BioMIR policy commitments, not universal statutory deadlines. Any legally required exception must be explained.
Turning Research Consent off stops future program exports in the app. It does not notify BioMIR or retrieve a previously shared file. To withdraw permission for further use of a file received by BioMIR, contact research@biomir.co. After the request is verified and the file located, no new use is permitted of the affected source records or associated participant-level analysis records. A deletion request covers those records and working copies. Completed combined results that cannot identify you may remain.
Keep the random dataset code supplied with your export: it helps locate your file without providing additional health information. BioMIR may need limited information to verify a request. If a file cannot be located, that limitation must be explained. Withdrawal cannot retrieve copies held independently by recipients you chose.
If a legal obligation or backup limitation prevents immediate deletion, you will be told the reason, affected records and remaining retention period. Those retained records are excluded from further program use. Files held independently by recipients you chose are subject to their own controls.
For support correspondence and other information supplied directly to BioMIR, contact contact@biomir.co to request access, correction or deletion. Include only what is needed to explain the request; do not attach health records.
7. Website and other services
This website stores your light or dark theme choice in browser local storage. Wix provides the website hosting. Hosting services may process IP addresses and technical request logs to deliver and secure the website. This privacy page does not accept health-record submissions.
Apple processes App Store purchases under its own policies. External websites, email services and services you choose for sharing have their own privacy practices. Sharing through those services may disclose information separately from the exported file.
8. Questions and privacy requests
Contact research@biomir.co for program participation, transfer arrangements, withdrawal or deletion of program records. Contact contact@biomir.co for general support and other privacy questions. Avoid including health records in an initial email. Correspondence itself reveals the sender’s address and message contents.
You may request access, correction or deletion of information held by BioMIR, or raise a privacy concern using these contacts. Additional rights and complaint routes depend on your location and applicable law. A separate program must disclose its eligibility requirements and any provisions for minors; this policy does not authorize a minor’s participation.
9. Policy versions and changes
The public policy address is https://www.biomir.co/privacy. Prior versions remain available in the policy history. The version and date identify this text; a draft preparation date is not an effective date.
Changes to a program’s purpose, data categories or recipients require updated disclosure and consent where applicable. A general policy update does not expand permission you previously gave. Program-specific consent remains separate from this policy.