Trust

Security and data

Health data deserves more than a buried clause in a privacy policy — here's our security commitment on its own page.

Encryption

Data in transit and at rest is planned to be encrypted using industry-standard protocols.

Access controls

Internal access to user health data is planned to be limited to what's operationally necessary, logged, and reviewed.

No selling data

Your logs and photos are used to calculate your score — not sold to advertisers or data brokers.

Why this is a dedicated page, not just a privacy policy clause

Health data deserves more than a buried clause. This page exists so anyone evaluating THE FAD — a user, a partner, a healthcare provider — can see our security commitments without reading an entire legal document.

Reporting a security concern

If you discover a security vulnerability, please report it through our contact page — we'd rather hear about it directly than have it disclosed publicly first.

Related reading