Legal

Privacy Policy

How we collect, use and protect your health information — including exactly what the clinic that gave you Homeostasis can see, and what it cannot.

Version 2.0Effective 13 September 2026Titra Health LLC d/b/a Homeostasis

1. Who we are

Homeostasis is operated by Titra Health LLC, a Georgia limited liability company doing business as Homeostasis ("Homeostasis," "we," "us," "our").

Homeostasis is two connected things: a patient app that a clinic hands out, and a clinician dashboard that the clinic's staff use to review what the patient logs. This policy describes both, because they read the same records.

2. Which policy applies to you

This matters more than anything else on this page, so it comes first. There are two ways to be a Homeostasis user, and your legal protections differ.

If a clinic gave you a code — the common case

Your clinic is a HIPAA covered entity. Your information in Homeostasis is Protected Health Information (PHI) that we hold on your clinic's behalf. We act as your clinic's Business Associate under a signed Business Associate Agreement (BAA).

In practice this means: we handle your information only as your clinic instructs and as the BAA permits, your clinic's own Notice of Privacy Practices governs how your health information may be used and disclosed, and you exercise your HIPAA rights — access, amendment, an accounting of disclosures, restrictions — through your clinic, not through us. If you ask us directly, we will route you to them.

If you use Homeostasis without a clinic

You are a direct consumer user. HIPAA does not apply to that relationship. Your information is consumer health data, protected by this policy, by the Federal Trade Commission Act and its Health Breach Notification Rule, and by state privacy laws including the California Consumer Privacy Act and the Washington My Health My Data Act. Section 13 sets out those rights.

Everything else in this policy — what we collect, who processes it, how it is secured and how long it is kept — applies to you either way.

3. How your account is created

When a clinic enrols you, your account exists before you install anything. Staff provision it from your chart in their own medical record system, and the app is given a starting set of facts about you so that it is useful on the first day rather than empty:

  • Your name, date of birth, sex, height, starting weight and target
  • The medications you have been prescribed, with dose and schedule
  • The care plan your clinic has set — hydration, protein, movement and other targets

Your clinic then gives you an eight-character code. You claim the account by entering that code together with your date of birth. The date of birth is a check that the code reached the right person; a code alone is not enough to open an account.

There is no password on a clinic-provisioned account, so there is no password to be guessed or reused. Treat your code like a key: if you think someone else has it, tell your clinic and they can void it and issue another.

4. What we collect

Information you enter

  • Medication: product, dose, route, injection site, date and time, batch number, and any note you add by voice or text
  • Body measurements: weight, height, body composition, waist circumference, goal and starting weight
  • Food and nutrition: meal descriptions, meal photographs, calories and macronutrients, barcode scans
  • Hydration: water intake through the day
  • Side effects: type, severity, and the dose they followed
  • Mood and energy: ratings, tags, and what you note as contributing
  • Activity: exercise type and duration
  • Check-ins and validated instruments: your answers and the scores derived from them
  • Progress photographs: images you choose to take to track visible change
  • Voice recordings: audio you record when logging by voice
  • Messages: anything you send your clinic through the app

Information from your device, with your permission

  • Apple Health or Health Connect: steps, active calories, workouts, weight, sleep, resting heart rate, heart-rate variability, blood oxygen, blood glucose and nutrition — see section 7
  • Camera, microphone and photo library: only when you use a feature that needs them
  • Push notification token: if you turn reminders on

Information generated by using the app

  • Diagnostic data: crash reports, error traces, device model, operating system and app version
  • Product analytics: which screens and features are used, tied to an opaque account identifier and never to your email or name
  • Audit records: a log of who accessed which record and when, which HIPAA requires us to keep

5. What your clinic can see

This is the point of the product, so we state it plainly rather than burying it. If you claimed your account with a clinic code, the clinical staff at that clinic only can see, on their dashboard:

  • Your weight over time, and the source of each weigh-in (smart scale, clinic, or typed in)
  • Which doses you logged and which you missed, as an adherence calendar
  • Side effects you reported, with severity and the dose they followed
  • Your nutrition and hydration against the targets in your plan
  • Steps, activity and sleep — the daily summary described in section 7
  • Mood and energy entries
  • Your check-in answers and instrument scores over time
  • Goals and measurements recorded against them
  • Messages you send them through the app
  • Progress photographs. Every time a staff member opens one of your photographs, that view is recorded — who looked, and when.
What your clinic cannot see
  • Your conversations with the in-app assistant. What you ask it, and what it answers, is not shown on the clinician dashboard. Clinic-side records note only that an answer was produced — never the question or the answer.
  • Any other clinic's patients. Access is scoped to the clinic that enrolled you. There is no shared pool.
  • Anything from before you claimed your account, if you used Homeostasis on your own beforehand and then linked to a clinic. Ask us and we will confirm what was carried over.

Staff access is logged. Your clinic controls which of its own people hold dashboard accounts, and it is responsible for that list.

6. What your clinic sends you

The connection runs both ways. Your clinic can push into your app:

  • Reviewed laboratory results — only panels a clinician has actually reviewed and released
  • Body composition readings taken at the clinic
  • Your care plan and medication changes, including titration schedules
  • Your clinic's own record of visits and vitals, shown to you read-only

A clinic can retract or amend a result it has released — a corrected panel replaces the earlier one. What you see is your clinic's current record, not a frozen copy.

We do not write to your clinic's medical record. The dashboard reads from it. Your logs are your logs; a clinician decides what, if anything, is carried into your chart.

7. Apple Health & Health Connect

If you grant permission, Homeostasis reads health metrics from Apple Health (iOS) or Health Connect (Android).

Some of it leaves your device. When the connection is on, we save one summary record per day to your account, and — if you were enrolled by a clinic — your clinic can see it. That daily summary is:

  • Steps, active calories and recorded workouts
  • Weight
  • Sleep duration, resting heart rate, heart-rate variability and blood oxygen

Other categories we read — including blood glucose and detailed nutrition — power features on your device and are not included in that summary.

Turning the connection off in Settings stops any further readings being saved. Records already saved stay until your account is deleted. You can also revoke permission entirely in your device's own Health settings.

We write back to Apple Health and Health Connect only the weight and nutrition entries you deliberately log in Homeostasis. We never modify anything else.

8. AI features

Homeostasis uses AI to read meal photographs, transcribe voice notes, generate insights, and answer questions about your own plan. AI features are off until you turn them on: the first time you use one, you are asked for consent, and that consent is enforced on our servers — not only in the app — so a request without it cannot succeed.

Your name is stripped before anything is sent for processing, and your email, account identifier and authentication tokens are never sent. Your inputs are not used to train anyone's models.

Our AI Policy sets out, feature by feature, exactly what is sent and to whom.

9. How we use your data

We use your information to run the service you and your clinic are using it for: showing your treatment and progress, computing targets and scores, powering the features you turn on, delivering reminders you asked for, presenting your record to your care team, keeping the service secure and working, and meeting our legal and contractual obligations.

What we never do
  • We do not sell your personal information. We never have.
  • We do not use your health information for advertising, and we do not build advertising profiles.
  • We do not share identifiable health information with employers, insurers or data brokers.
  • We do not let anyone use your information to train their models.
  • Where we act as a Business Associate, we do not use your PHI for our own marketing at all — HIPAA forbids it without your separate written authorisation, and we do not ask for one.

10. Who else processes it

We use a small number of service providers, each limited to a specific job. Every provider that can touch PHI is covered by a Business Associate Agreement with us.

ProviderWhat it doesWhat it receivesBAA
SupabaseDatabase, authentication, file storageYour account and all health recordsSigned
OpenAIAI features — see the AI PolicyDe-identified health context, meal photos, voice audioSigned, with zero data retention
PostHogProduct analytics and session replayUsage events under an opaque ID. Text inputs and images are masked on your device before anything is sent.Signed
SentryCrash and error reportingStack traces, device and OS information, an opaque user IDSigned
ExpoApp delivery and push notificationsA push token and the text of notifications you enabledNot applicable — see below
FatSecretFood and nutrition databaseFood search terms and barcode numbers onlyNot needed — no PHI
Apple / GoogleHealth data on your device; app distributionRead on-device with your permissionNot needed — conduit

Scroll the table sideways to see every column →

About push notifications. Push delivery passes through Apple's and Google's networks, which no vendor can place under a BAA. We handle that by design rather than by contract: notification text never contains clinical detail. A reminder says it is time to log, not what you are taking or how you are doing.

The current list, with locations and roles, is kept on our Trust & Security page. We will update it there whenever it changes.

We may also disclose information when the law requires it — a subpoena, court order or lawful government request — and to protect someone's life or safety in an emergency. Where we hold your information for a clinic, we tell the clinic about such a demand unless we are legally barred from doing so.

11. How we protect it

  • Encrypted everywhere: TLS 1.2 or better in transit, AES-256 at rest. Sensitive data cached on your device is encrypted too, with a key held in your device's secure hardware.
  • Row-level isolation: every table enforces, in the database itself, that a record can only be read by the account it belongs to or by the clinic that account is linked to. It is not a check the app can forget to make.
  • Audit logging: writes to clinical records are logged, staff access to patient records is logged, and every view of a progress photograph is logged.
  • Scoped clinic access: a clinic sees only patients linked to that clinic.
  • Session protection: session tokens are encrypted at rest and bound to the device. Dashboard sessions on shared clinic hardware lock and time out.
  • Scheduled deletion: exported report files, caches and temporary documents are purged on a schedule rather than accumulating.

No system is perfectly secure, and we will not claim otherwise. If a breach of unsecured PHI occurs we notify the affected clinic without unreasonable delay and within 60 days, as HIPAA requires; for consumer users we follow the FTC Health Breach Notification Rule and applicable state law. Our Trust & Security page explains how to report a vulnerability.

12. Retention & deletion

We keep your information while your account is active.

Deleting your account in Settings permanently removes your profile, health logs, assistant conversations, photographs and stored files within 30 days. That includes files in storage, not only database rows.

One thing deletion does not do

If a clinic enrolled you, deleting your Homeostasis account does not delete your clinic's medical record. That record belongs to the clinic and is governed by its own retention obligations, which are typically measured in years. We cannot delete it, and neither can you through this app — ask your clinic.

We also keep audit and disclosure logs after deletion, because HIPAA requires us to retain them for six years. These record that an access happened; they do not retain your clinical content.

We may retain information longer where the law requires it, or where it is needed to resolve a dispute or enforce our agreements.

13. Your rights

If a clinic enrolled you

Your HIPAA rights — to inspect and obtain a copy of your record, to ask for it to be amended, to receive an accounting of disclosures, to request restrictions, and to receive your clinic's Notice of Privacy Practices — are exercised with your clinic. Contact them. If you contact us instead, we will help you reach the right person there and support your clinic in answering within the time HIPAA allows.

If you use Homeostasis without a clinic

  • Access and portability: get a copy of your data. Email us.
  • Correction: change your profile and any entry, in the app, whenever you like.
  • Deletion: Settings → Delete Account, or ask us.
  • Withdraw consent: turn off AI features, health-data syncing or notifications at any time, without losing the rest of the app.

California (CCPA/CPRA): you may request disclosure of the categories and specific pieces of personal information we collect, request deletion or correction, and limit use of sensitive personal information. We do not sell or share personal information as those terms are defined, and we will not discriminate against you for exercising a right.

Washington (My Health My Data) and comparable state laws: you may withdraw consent to the collection and sharing of consumer health data and request its deletion, including by any provider holding it on our behalf.

EU/UK (GDPR): where it applies, you hold rights of access, rectification, erasure, restriction, portability and objection, and may complain to your supervisory authority.

Write to support@titrahealth.io. We verify who is asking before acting, and respond within 30 days — or 45 where a state law allows an extension and we tell you why.

14. Children

Homeostasis is for adults. We do not knowingly collect information from anyone under 18 as a direct consumer user. Where a clinic enrols a patient under 18 in its own programme, that is the clinic's clinical and legal decision, made with a parent or guardian; we hold that information as the clinic's Business Associate on the same terms as any other patient record.

15. Changes

We will update this policy as the product changes. The version number and effective date at the top always tell you which version you are reading.

When a change is material, we will not rely on you noticing: we notify you in the app and ask you to accept the new version before you continue. Where we act as a Business Associate, we will not make a change that conflicts with our agreement with your clinic.

16. Contact

Titra Health LLC (d/b/a Homeostasis)
Privacy enquiries and data rights requests: support@titrahealth.io

Clinics: to request our Business Associate Agreement, security documentation, or an accounting of disclosures for one of your patients, use the same address and say which you need.

Questions about any of this?

If something here is unclear, or you want to know exactly what we hold about you, ask. A person reads that address.

Email support@titrahealth.io