Privacy Policy
Version 1.1 · Last updated September 1, 2026
1. What we collect
- Account details: email, display name, sobriety start date.
- Self-reported logs: check-ins, cravings, mood, gratitude, journal entries, meetings, medication, goals, and relapse-prevention plans that you enter.
- Wearable telemetry when you pair a device: heart rate, HRV, sleep stages, skin temperature, EDA, activity, gait signals, and — where the device supports it — alcohol and drug-metabolite estimates.
- Location data only if you explicitly opt in to GPS sharing, used to flag entries into high-risk zones. Turning the consent off stops collection immediately.
- Care-share links you generate, and a log of every time each link is opened.
- Operational data: sign-in timestamps, device/browser type, and error diagnostics needed to keep the service secure and working.
2. How we use it
- Show your progress, streak, insights, alerts, and reminders.
- Let you share a read-only summary with the people and sections you choose.
- Generate AI reflections that summarise your own logs back to you.
- Notify your saved support contacts when you trigger the SOS flow.
- Keep the service secure, detect abuse, and fix faults.
We do not sell your data, use it for advertising, or train third-party models on your health information.
3. Consent and legal basis
Health data is processed on the basis of the consent you give during onboarding. Optional processing — GPS location, care-team sharing, AI reflections, and email notifications — is separately opt-in and can be withdrawn at any time from Privacy & data without losing access to the rest of the app. Every consent decision is recorded with its version and timestamp so the audit trail is complete.
5. How long we keep it
- Your logs are kept while your account is active, so you can see long-term trends.
- Deleting your account starts a 30-day reversible grace period, after which every record is permanently erased.
- Care-share access logs are kept for 12 months so you can audit who looked at what.
- Backups roll off within 30 days of deletion.
6. How we protect it
- Encrypted in transit (HTTPS) and at rest.
- Row-level security so only you — and the links you deliberately issue — can read your rows.
- Leaked-password protection on sign-up and password change.
- Sections you exclude from a share link are never queried at all.
- Administrative access is role-based and audited.
7. Your rights
- Access and export. Download a full copy of your data (JSON, CSV, or a printable report) from Privacy & data.
- Correct. Every log you write can be edited or deleted in the app.
- Delete. Erase your account and all associated records, with a 30-day window to change your mind.
- Withdraw consent. Turn off GPS sharing, revoke care-share links, or unsubscribe from email at any time.
- Complain. Contact us first at privacy@leanengineering.ai; you may also contact your local data-protection authority.
8. HIPAA and clinical use
When Reti is used alongside a covered entity such as a clinic or treatment programme, we act as a business associate and handle protected health information under the HIPAA notice you signed during onboarding. Reti itself is a recovery-support tool, not a medical device, and does not diagnose or treat any condition.
9. Children
Reti is not intended for people under 16. If we learn that we hold data from a child without the required consent, we delete it.
10. Changes to this policy
Material changes are surfaced in-app and require fresh consent before continued use. This page always shows the current version number and date at the top.
11. Contact
Privacy questions, data requests, or complaints: privacy@leanengineering.ai. If you were given Reti by a clinician, you can also raise it with your care team.