Privacy Policy
Introduction
HUMANKINDOS LLC ("Company," "we," "us," or "our") respects your privacy and is committed to protecting your personal information. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our HumanKind OS mobile application and related services (collectively, the "Service").
HumanKind OS is a personal intelligence application that integrates conversational AI with biometric data to provide wellness insights. Because we collect health-related and biometric information, we take extra care to protect your privacy and comply with applicable laws, including the California Consumer Privacy Act as amended by the California Privacy Rights Act ("CCPA/CPRA"), Washington's My Health My Data Act ("MHMDA"), and other applicable state privacy laws.
Please read this Privacy Policy carefully. By using the Service, you consent to the practices described in this Privacy Policy. If you do not agree, please do not use the Service.
1. Information We Collect
We collect information in several ways: directly from you, automatically when you use the Service, and from third-party sources you choose to connect.
1.1 Information You Provide Directly
Account Information:
- Name and email address
- Password (stored in encrypted form)
- Profile information you choose to provide (e.g., age, gender, goals)
User Content:
- Journal entries and notes
- Responses to check-ins and prompts
- Goals, preferences, and settings
- Messages and conversations with our AI assistant
- Feedback you provide about the Service
Communications:
- Customer support inquiries
- Survey responses
- Other communications you send to us
1.2 Information Collected Automatically
Device and Usage Information:
- Device type, operating system, and version
- Unique device identifiers
- IP address (used for security and approximate location)
- App usage patterns (features used, time spent, interaction data)
- Crash reports and performance data
Log Data:
- Access times and dates
- Pages and features viewed
- Referring URLs and actions taken
1.3 Information from Third-Party Sources
Wearable Device and Health Platform Data:
With your explicit permission, we receive data from connected wearable devices and health platforms through our integration partner. This includes data from services such as:
- Apple HealthKit
- Oura Ring
- WHOOP
- Fitbit
- Garmin
- Other supported platforms
Categories of third-party health data we may receive include:
- Sleep data: Sleep duration, sleep stages, sleep quality scores, bedtime and wake times
- Physical activity: Steps, calories burned, exercise type and duration, active minutes
- Heart metrics: Heart rate, heart rate variability (HRV), resting heart rate
- Other physiological data: Blood oxygen levels (SpO2), respiratory rate, body temperature, recovery and readiness scores
You control these connections. You can connect or disconnect wearable devices at any time through your account settings.
2. How We Use Your Information
We use your information for the following purposes:
2.1 To Provide and Improve the Service
- Operate and maintain the Service
- Process your account registration and manage your account
- Deliver personalized wellness insights across Physical, Emotional, Cognitive, and Social dimensions
- Power AI-generated responses and recommendations tailored to your data
- Analyze usage patterns to improve features and user experience
- Develop new features and services
2.2 To Communicate With You
- Send service-related notifications and updates
- Respond to your inquiries and provide customer support
- Send promotional communications (only with your consent; you can opt out at any time)
2.3 To Ensure Security and Compliance
- Protect against unauthorized access, fraud, and abuse
- Enforce our Terms and Conditions
- Comply with legal obligations
2.4 For Research and Analytics
- Conduct internal research using aggregated, de-identified data
- Analyze trends to improve our AI models and wellness insights
We do NOT use your information to:
- Sell your personal data to third parties
- Share your data for third-party advertising or marketing purposes
- Make automated decisions that produce legal or similarly significant effects without human review
3. How We Share Your Information
We do not sell your personal information. We share your information only in the following limited circumstances:
3.1 Service Providers
We share information with third-party vendors who perform services on our behalf, including:
| Category | Provider Type | Purpose |
|---|---|---|
| Cloud Infrastructure | Hosting providers | Secure data storage and processing |
| AI Services | Anthropic (Claude API) | Powering conversational AI features |
| Analytics | Usage analytics providers | Understanding how the Service is used |
| Customer Support | Support platforms | Responding to your inquiries |
All service providers are contractually bound to:
- Use your data only for the purposes we specify
- Maintain appropriate security measures
- Delete or return data upon termination of services
3.2 Legal Requirements
We may disclose information if required by law, legal process, or government request, or if we believe disclosure is necessary to:
- Comply with applicable law or legal process
- Protect the rights, property, or safety of HUMANKINDOS LLC, our users, or others
- Detect, prevent, or address fraud, security, or technical issues
3.3 Business Transfers
If HUMANKINDOS LLC is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will provide notice before your information becomes subject to a different privacy policy.
3.4 With Your Consent
We may share information in other circumstances with your explicit consent.
3.5 What We Do NOT Share
- We do NOT share your personal information with advertisers
- We do NOT share your health or biometric data for marketing purposes
- We do NOT sell your data to data brokers
4. AI-Powered Features and Data Processing
4.1 How AI Powers HumanKind OS
HumanKind OS uses artificial intelligence, including large language models provided by Anthropic (Claude API), to:
- Generate personalized conversational responses
- Analyze patterns in your data to provide wellness insights
- Create summaries and recommendations based on your information
4.2 AI Disclosure
When you interact with HumanKind OS, you are communicating with an AI system, not a human. We are transparent about our use of AI in accordance with applicable laws.
4.3 How Your Data is Used for AI Features
Data sent to AI providers:
- Your conversation messages and prompts
- Relevant context from your profile and recent activity
- Aggregated biometric insights (not raw data) to personalize responses
Data NOT sent to AI providers:
- Your raw biometric data files
- Your complete conversation history
- Your personal identifiers (name, email) unless necessary for the specific feature
4.4 AI Training
We do NOT use your personal, identifiable data to train AI models. Our AI provider (Anthropic) does not use API inputs to train their models. Any research we conduct uses aggregated, de-identified data that cannot be linked back to you.
4.5 Automated Decision-Making
HumanKind OS does not make automated decisions that produce legal or similarly significant effects on you. AI-generated insights are informational only and do not determine access to services, employment, credit, healthcare, or other significant matters.
5. Biometric and Health Data
Because HumanKind OS collects biometric and health-related data, we provide this additional detail about how we handle this sensitive information.
5.1 Categories of Biometric and Health Data
Under California law (CCPA/CPRA), biometric information includes physiological, biological, or behavioral characteristics that can be used to identify a person. Under Washington law (MHMDA), consumer health data includes information linked to a consumer that identifies their past, present, or future physical or mental health status.
HumanKind OS may collect the following categories:
| Category | Examples | Source |
|---|---|---|
| Sleep Data | Duration, stages, quality scores | Connected wearables |
| Activity Data | Steps, calories, exercise | Connected wearables |
| Heart Metrics | Heart rate, HRV, resting HR | Connected wearables |
| Physiological Data | SpO2, respiratory rate, temperature | Connected wearables |
| Self-Reported Health | Mood, energy levels, symptoms | User input |
| Wellness Insights | AI-generated health patterns | Derived from above |
5.2 Purpose of Collection
We collect biometric and health data exclusively to:
- Provide personalized wellness insights
- Power AI-generated recommendations
- Track your progress toward wellness goals
- Improve and develop the Service
5.3 Consent for Biometric and Health Data
We obtain your explicit, opt-in consent before collecting biometric and health data. Specifically:
- You must affirmatively connect each wearable device or health platform
- You are informed of what data will be collected at the time of connection
- You can withdraw consent and disconnect devices at any time
5.4 Our Commitments Regarding Your Health Data
- No sale: We do not sell your biometric or health data
- No advertising: We do not use your health data for advertising purposes
- No discrimination: We do not use your health data to discriminate against you
- Secure storage: We use encryption and access controls to protect your data
- Limited sharing: We share only with essential service providers under strict contracts
6. Consumer Health Data Privacy Policy
This section serves as our Consumer Health Data Privacy Policy as required under Washington's My Health My Data Act (MHMDA) and similar state laws including Nevada's Consumer Health Data Privacy Law.
6.1 Categories of Consumer Health Data Collected
We collect the following categories of consumer health data:
- Bodily functions, vital signs, symptoms, or measurements: Heart rate, HRV, blood oxygen, respiratory rate, body temperature, sleep patterns
- Health conditions or status: Self-reported mood, energy levels, symptoms, wellness goals
- Social, psychological, or behavioral data: Emotional check-ins, journal entries about wellbeing
- Health-related inferences: AI-generated insights about your wellness patterns
6.2 Purpose for Collection
Each category of consumer health data is collected for the following specific purposes:
- Providing personalized wellness insights and AI-generated recommendations
- Tracking your progress toward self-defined wellness goals
- Powering the core functionality of the HumanKind OS Service
- Improving and developing new Service features
6.3 Sources of Consumer Health Data
- Directly from you: Through app interactions, check-ins, and journal entries
- From third-party health platforms: Apple HealthKit, Oura, WHOOP, and other connected devices
6.4 Categories of Third Parties and Affiliates Receiving Data
| Category | Specific Recipients | Purpose |
|---|---|---|
| AI Service Providers | Anthropic (Claude API) | Generating personalized AI responses |
| Cloud Infrastructure | Cloud hosting provider | Secure data hosting |
We do not share consumer health data with advertisers, data brokers, or for marketing purposes.
6.5 How to Exercise Your Rights
You may exercise your rights regarding consumer health data by:
- Email: hello@humankindos.ai
- In-App: Settings > Privacy > Manage My Data
We will respond to requests within 45 days (or 30 days for Washington residents where applicable).
7. Data Retention
7.1 Retention Periods
| Data Type | Retention Period |
|---|---|
| Account Information | Duration of account + 30 days after deletion |
| Conversation History | Duration of account + 30 days after deletion |
| Biometric/Health Data | Duration of account + 30 days after deletion |
| Usage Analytics | 24 months (aggregated/de-identified) |
| Support Communications | 3 years |
7.2 Deletion
When you delete your account or request data deletion:
- We permanently delete your personal data within 30 days
- We delete your biometric and health data within 30 days
- We may retain de-identified, aggregated data that cannot identify you
- We may retain data required for legal compliance
8. Data Security
We implement administrative, technical, and physical security measures appropriate to the sensitivity of the information we collect.
8.1 Technical Safeguards
- Encryption: Data encrypted in transit (TLS 1.3) and at rest (AES-256)
- Access Controls: Role-based access limited to authorized personnel
- Authentication: Secure password hashing; support for multi-factor authentication
- Infrastructure: Hosted on secure, SOC 2 compliant cloud infrastructure
8.2 Organizational Safeguards
- Employee training on data privacy and security
- Vendor security assessments before engagement
- Incident response procedures for potential breaches
8.3 Your Responsibilities
You are responsible for:
- Maintaining the confidentiality of your account credentials
- Using a strong, unique password
- Logging out from shared devices
- Promptly reporting any unauthorized access
8.4 Breach Notification
In the event of a data breach affecting your personal information, we will notify you and applicable regulators as required by law.
9. Your Privacy Rights
Depending on your location, you may have the following rights regarding your personal information:
9.1 General Rights
- Access: Request a copy of the personal information we hold about you
- Correction: Request correction of inaccurate information
- Deletion: Request deletion of your personal information
- Portability: Request your data in a portable, commonly used format
- Withdraw Consent: Withdraw consent for processing where consent is the legal basis
9.2 How to Exercise Your Rights
Email: hello@humankindos.ai
In-App: Settings > Privacy > Manage My Data
We will verify your identity before processing requests. We will respond within the timeframe required by applicable law (typically 45 days, extendable in certain circumstances).
9.3 Non-Discrimination
We will not discriminate against you for exercising your privacy rights. You will not receive different pricing, service quality, or access based on exercising these rights.
10. California Privacy Rights (CCPA/CPRA)
If you are a California resident, you have specific rights under the California Consumer Privacy Act as amended by the California Privacy Rights Act.
10.1 Categories of Personal Information Collected
In the past 12 months, we have collected the following categories of personal information:
| Category | Examples | Collected |
|---|---|---|
| Identifiers | Name, email, IP address, device IDs | Yes |
| Personal Information (Cal. Civ. Code § 1798.80) | Name, address | Yes |
| Protected Classifications | Age, gender (if provided) | Yes |
| Commercial Information | Subscription history | Yes |
| Biometric Information | Heart rate, sleep data, HRV | Yes |
| Internet/Network Activity | App usage, log data | Yes |
| Geolocation | Approximate location from IP | Yes |
| Sensory Data | N/A | No |
| Professional/Employment | N/A | No |
| Education Information | N/A | No |
| Inferences | Wellness patterns, preferences | Yes |
| Sensitive Personal Information | Health data, biometrics | Yes |
10.2 Sources of Personal Information
- Directly from you
- Automatically through the Service
- From third-party platforms you connect (wearables, health apps)
10.3 Business and Commercial Purposes
We use personal information for the purposes described in Section 2 of this Privacy Policy.
10.4 Categories Disclosed for Business Purposes
We have disclosed the following categories to service providers:
- Identifiers
- Biometric and health information (to AI and integration providers)
- Internet/network activity (to analytics providers)
- Inferences (to AI providers)
10.5 Sale and Sharing
We do not sell personal information. We do not share personal information for cross-context behavioral advertising.
10.6 Your California Rights
- Right to Know: Request disclosure of personal information collected, used, and disclosed
- Right to Delete: Request deletion of your personal information
- Right to Correct: Request correction of inaccurate personal information
- Right to Limit: Limit the use of your sensitive personal information to what is necessary to perform the Service
- Right to Opt-Out of Sale/Sharing: We do not sell or share, so this does not apply
- Right to Non-Discrimination: We will not discriminate against you for exercising rights
10.7 Exercising Your California Rights
Submit requests to: hello@humankindos.ai
You may designate an authorized agent to make requests on your behalf. We may require verification of your identity and the agent's authority.
Response Time: We will respond within 45 days, extendable by an additional 45 days with notice.
11. Washington Residents (MHMDA)
If you are a Washington resident or your consumer health data is collected in Washington, you have rights under the My Health My Data Act.
11.1 Your MHMDA Rights
- Right to Confirm and Access: Confirm whether we collect, share, or sell your consumer health data and access that data, including a list of third parties with whom we have shared it
- Right to Withdraw Consent: Withdraw consent for collection and sharing of your consumer health data
- Right to Delete: Request deletion of your consumer health data
- Right to Appeal: Appeal our decision if we deny your request
11.2 Exercising Your Rights
Email: hello@humankindos.ai
In-App: Settings > Privacy > Manage My Data
Response Time: We will respond within 45 days. If we deny your request, you may appeal by contacting hello@humankindos.ai with "MHMDA Appeal" in the subject line.
11.3 Consent Under MHMDA
We collect consumer health data only with your explicit, opt-in consent for specified purposes. You may withdraw consent at any time by disconnecting your wearable devices or contacting us.
11.4 No Sale of Consumer Health Data
We do not sell consumer health data as defined under MHMDA.
11.5 Geofencing Prohibition
We do not use geofencing around healthcare facilities to identify, track, or send messages to consumers seeking healthcare services.
12. Other State Privacy Rights
12.1 Nevada Residents
Nevada residents have the right to opt out of the sale of certain personal information. We do not sell personal information as defined under Nevada law. If you wish to submit a request, contact hello@humankindos.ai.
12.2 Colorado, Connecticut, Virginia, and Other States
If you reside in a state with a comprehensive privacy law (Colorado, Connecticut, Virginia, Utah, Oregon, Texas, Montana, Delaware, Iowa, Tennessee, Indiana, or others), you may have rights including:
- Access to personal data
- Correction of inaccurate data
- Deletion of personal data
- Data portability
- Opt-out of targeted advertising (we do not engage in targeted advertising)
- Opt-out of profiling for decisions with legal or significant effects (we do not engage in such profiling)
To exercise rights: Contact hello@humankindos.ai
Appeals: If we deny your request, you may appeal by emailing hello@humankindos.ai with "Privacy Appeal" in the subject line.
13. Children's Privacy
HumanKind OS is not intended for children under 18 years of age. We do not knowingly collect personal information from children under 18.
If we learn that we have collected personal information from a child under 18, we will:
- Delete that information as quickly as possible
- Terminate any associated account
If you believe we have collected information from a child under 18, please contact us immediately at hello@humankindos.ai.
14. Third-Party Services and Links
14.1 Third-Party Integrations
HumanKind OS integrates with third-party services including:
- Apple HealthKit: Subject to Apple's Privacy Policy
- Oura: Subject to Oura's Privacy Policy
- WHOOP: Subject to WHOOP's Privacy Policy
- Anthropic (Claude): Our AI provider, subject to Anthropic's Privacy Policy
When you connect these services, their privacy policies also apply to your data. We encourage you to review their policies.
14.2 Links to Other Websites
The Service may contain links to third-party websites. We are not responsible for the privacy practices of these external sites. We encourage you to read their privacy policies.
15. International Data Transfers
HumanKind OS is operated in the United States. If you access the Service from outside the United States, your information will be transferred to and processed in the United States, where data protection laws may differ from those in your country.
By using the Service, you consent to the transfer of your information to the United States.
16. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes:
- We will update the "Last Updated" date at the top
- We will notify you by email or in-app notification at least 30 days before changes take effect
- Your continued use after the effective date constitutes acceptance
If you disagree with any changes, you may delete your account before the changes take effect.
17. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our privacy practices, please contact us:
HUMANKINDOS LLC
Email: hello@humankindos.ai
For California residents: To submit a CCPA/CPRA request, email hello@humankindos.ai with "California Privacy Request" in the subject line.
For Washington residents: To submit a MHMDA request, email hello@humankindos.ai with "Washington Health Data Request" in the subject line.
HUMANKINDOS LLC is committed to protecting your privacy. Thank you for trusting HumanKind OS with your personal information.