Last updated: March 15, 2026
Easel ("we", "our", "us") is a couples menstrual cycle tracking app. We take your privacy seriously — especially given the sensitive nature of health data. This policy explains what we collect, why, and how we protect it.
Account Information: Email address and password (for authentication via Supabase Auth).
Profile Information: Display name, avatar photo, and role selection (Moon or Sun).
Health Data: Menstrual cycle dates, cycle length, period length, mood entries, symptom logs, and daily check-in responses. If you enable HealthKit integration, we read menstrual cycle data from Apple Health with your explicit permission.
Partner Data: Couple linking code, partner connection status, whisper signals, and SOS alerts shared between linked partners.
Device Information: Push notification tokens (for delivering alerts), device locale (for language preferences).
We use MiniMax AI to generate personalized greetings, partner advice, and health insights. Your cycle phase and mood data may be sent to this service through our secure server-side proxy. We do not send your name, email, or any personally identifiable information to the AI provider. All AI requests are proxied through our servers — the AI provider never has direct access to your device or account.
With Your Partner: When you link with a partner, they can see your cycle phase, mood, whisper signals, and SOS alerts. This is the core purpose of the app and requires your explicit action to link.
We do NOT:
Your data is stored securely on Supabase (PostgreSQL) with Row Level Security (RLS) enabled on every table. This means database queries are restricted based on your authenticated identity — you can only access your own data and your linked partner's shared data. All data transmission uses HTTPS/TLS encryption.
If you grant permission, Easel reads menstrual cycle data from Apple HealthKit. We do not write data to HealthKit. HealthKit data is processed locally on your device and is not shared with third parties. You can revoke HealthKit access at any time in your device Settings.
Your data is retained as long as your account is active. You can request account deletion by contacting us at the email below. Upon deletion, all your personal data, health data, and partner connections will be permanently removed from our servers within 30 days.
Easel is not intended for children under 13. We do not knowingly collect personal information from children under 13.
You have the right to:
We may update this policy from time to time. We will notify you of significant changes through the app or via email.
If you have questions about this privacy policy or your data, contact us at:
Email: duypham9895@gmail.com