Privacy Policy
Last Updated: May 1, 2026
UCN Apps ("we," "us," or "our") operates the website and application at about.ucnapps.com (the "Service"). This Privacy Policy describes how we collect, use, disclose, and protect your personal information when you use our Service.
1. Information We Collect
1.1 Information You Provide
We collect information you voluntarily provide when using the Service, including:
- •Account Information: Name, email address, password, date of birth, and contact preferences when you create an account
- •Health Data: Blood work results, biomarker values, lab reports, health metrics, nutrition data, supplement usage, exercise logs, sleep data, stress levels, and other health-related information you enter or upload
- •Family Health History: Information about your family members' health conditions and medical history that you choose to store in the Family Health Vault feature
- •Habits and Lifestyle: Daily habits, routines, diet information, and lifestyle choices you track through the Service
- •Profile Information: Profile photo, display name, timezone, language preference, and notification settings
1.2 Information Collected Automatically
When you use the Service, we automatically collect:
- •Usage Data: Pages visited, features used, time spent, click patterns, and interaction data
- •Device Information: Browser type, operating system, device type, screen resolution, and unique device identifiers
- •Log Data: IP address, access times, referring URLs, and server response codes
- •Cookies and Tracking: Session cookies, preference cookies, and analytics cookies
1.3 Information from Third Parties
With your authorization, we may receive data from:
- •Wearable Devices and Health Apps: Data from connected fitness trackers, health monitoring devices, or health applications you authorize
- •Healthcare Providers: Lab results or health records imported with your explicit consent
- •Integration Partners: Data from third-party services you connect to the Service
2. How We Use Your Information
2.1 Service Delivery
- •Provide, maintain, and improve the Service
- •Process your health data to generate insights, trend analyses, and recommendations
- •Power AI-driven clinical analysis and pattern recognition
- •Store and organize your health history for longitudinal tracking
2.2 Communication
- •Send service-related notifications (account alerts, security notices)
- •Send health insights and recommendations based on your data
- •Respond to your inquiries and support requests
- •Send optional marketing communications (with your consent)
2.3 Improvement and Development
- •Analyze usage patterns to improve features and user experience
- •Develop new features and functionality
- •Conduct research to improve health analysis accuracy (using anonymized/aggregated data only)
- •Debug and resolve technical issues
2.4 Safety and Compliance
- •Detect, prevent, and address fraud, abuse, and security issues
- •Comply with applicable legal obligations
- •Enforce our terms of service
3. AI Analysis and Clinical Insights
3.1 How AI Analysis Works
Our Service uses artificial intelligence and machine learning models to analyze your health data. This includes:
- •Pattern recognition across biomarkers over time
- •Trend detection and drift alerts
- •Cross-system health correlations
- •Risk indicator identification
- •Category-specific clinical insights
3.2 Important Disclaimers
- •Not Medical Advice. AI-generated insights, analyses, and recommendations are for informational purposes only. They do not constitute medical diagnosis, treatment recommendations, or professional medical advice.
- •Consult Your Doctor. Always consult with a qualified healthcare professional before making medical decisions based on information from our Service.
- •Accuracy. While we strive for accuracy, AI analysis may not identify all health patterns or may generate insights that are incomplete or not applicable to your specific situation.
3.3 Data Processing
- •Health data submitted for AI analysis is processed on secure servers
- •Analysis results are stored in your account and can be deleted at any time
- •We do not use your individual health data to train AI models without your explicit consent
4. Information Sharing and Disclosure
4.1 We Do Not Sell Your Data
We do not sell, rent, or trade your personal information or health data to third parties.
4.2 Sharing with Your Authorization
We share information only in the following circumstances:
- •At Your Direction: When you explicitly authorize us to share your data (e.g., with your healthcare provider)
- •Service Providers: With trusted service providers who assist in operating the Service (hosting, payment processing, analytics), bound by strict data protection agreements
- •Payment Processor: Our payments are processed by Paddle.com, our Merchant of Record. Paddle collects and processes payment data (name, email, billing address, payment method) in accordance with their own privacy policy. Paddle's privacy policy is available at paddle.com/privacy
4.3 Legal Requirements
We may disclose your information when required by law, such as:
- •To comply with a legal obligation, court order, or government request
- •To protect our rights, property, or safety, or that of our users or the public
- •In connection with an investigation of suspected fraud or illegal activity
4.4 Business Transfers
In the event of a merger, acquisition, or sale of assets, your information may be transferred to the acquiring entity, subject to the same privacy protections described in this policy.
4.5 De-identified and Aggregated Data
We may use and share de-identified or aggregated data that cannot reasonably be used to identify you for research, analytics, and improvement purposes.
5. Data Security
5.1 Technical Safeguards
We implement industry-standard security measures to protect your information:
- •Encryption at Rest: AES-256 encryption for all stored data
- •Encryption in Transit: TLS 1.3 for all data transmission
- •Access Controls: Role-based access with unique user authentication
- •Tenant Isolation: Complete data separation between different users and organizations
- •Audit Logging: Comprehensive logging of data access events
- •Regular Security Assessments: Periodic vulnerability scanning and penetration testing
5.2 Administrative Safeguards
- •Workforce training on data privacy and security
- •Background checks for personnel with data access
- •Documented security policies and incident response procedures
- •Regular security audits and compliance reviews
5.3 Limitations
While we implement robust security measures, no system is 100% secure. We cannot guarantee absolute security of your data. You are responsible for maintaining the confidentiality of your account credentials.
6. Your Rights
6.1 General Rights
You have the right to:
- •Access: Request a copy of the personal information we hold about you
- •Correction: Request correction of inaccurate or incomplete information
- •Deletion: Request deletion of your personal information (subject to legal retention requirements)
- •Portability: Export your data in standard formats (JSON, CSV)
- •Restriction: Request restriction of processing in certain circumstances
- •Objection: Object to processing of your information for specific purposes
6.2 Exercising Your Rights
To exercise any of these rights, contact us at info@ucnapps.com. We will respond to your request within 30 days. We may ask for verification of your identity before processing your request.
6.3 HIPAA Rights
If you are a user whose data is protected under HIPAA, you additionally have the right to:
- •Request an accounting of disclosures of your PHI
- •Request restrictions on certain uses and disclosures
- •Receive confidential communications
- •File a complaint with the U.S. Department of Health and Human Services if you believe your privacy rights have been violated
6.4 California Privacy Rights (CCPA)
If you are a California resident, you have the right to:
- •Know what personal information is collected and how it is used
- •Request deletion of your personal information
- •Opt out of the sale of your personal information (note: we do not sell your data)
- •Not be discriminated against for exercising your privacy rights
6.5 International Users
If you are accessing the Service from outside the United States, additional data protection laws may apply, including GDPR for European users. We process data in accordance with applicable law.
7. Data Retention
7.1 Active Accounts
We retain your data for as long as your account is active. You can review, modify, or delete your data at any time through the Service.
7.2 Account Deletion
Upon account deletion:
- •Personal data is purged from active systems within 30 days
- •Anonymized, aggregated data may be retained for analytical purposes
- •Backup copies are purged within 90 days
- •Data required by law may be retained for the legally mandated period
7.3 Legal Retention
Certain data may be retained beyond account deletion to comply with legal obligations, resolve disputes, enforce agreements, or protect against fraud. Such data is stored securely and used only for the purpose for which it is retained.
8. Children's Privacy
Our Service is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that we have collected data from a child under 13, we will take steps to delete such information promptly.
If a parent or guardian believes their child has provided personal information to us, they should contact us at info@ucnapps.com.
9. Third-Party Links and Services
The Service may contain links to third-party websites or integrations with third-party services. We are not responsible for the privacy practices of these third parties. We encourage you to review the privacy policies of any third-party services you connect to or visit through our Service.
10. Cookies and Tracking Technologies
10.1 Types of Cookies We Use
- •Essential: Required for Service functionality (authentication, security) — Session / Persistent
- •Functional: Remember your preferences (language, settings) — Up to 1 year
- •Analytics: Help us understand how the Service is used (anonymized) — Up to 2 years
10.2 Managing Cookies
You can control cookies through your browser settings. Disabling certain cookies may affect Service functionality.
10.3 Do Not Track
We respond to Do Not Track signals as required by applicable law.
11. International Data Transfers
Your information is stored and processed in the United States. If you are accessing the Service from another country, please be aware that your data will be transferred to and processed in the United States, which may have different data protection laws than your country of residence.
By using the Service, you consent to the transfer of your information to the United States and its processing as described in this Privacy Policy.
12. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- •Posting the updated policy on the Service with a revised "Last Updated" date
- •Sending an email notification for significant changes (to the email address associated with your account)
Your continued use of the Service after changes become effective constitutes your acceptance of the revised Privacy Policy.
13. Contact Us
If you have questions about this Privacy Policy or your data, please contact us:
- •Email: info@ucnapps.com
- •Phone: +1-307-222-9675
- •Website: about.ucnapps.com
For HIPAA-related inquiries or to exercise your HIPAA rights:
- •Email: info@ucnapps.com
14. Supervision Authority
If you believe your privacy rights have been violated, you have the right to file a complaint with:
In the United States: U.S. Department of Health and Human Services Office for Civil Rights 200 Independence Avenue, S.W. Washington, D.C. 20201 https://www.hhs.gov/ocr/privacy/
State Attorneys General: You may also file a complaint with your state's Attorney General office.