Privacy Policy

Last updated: August 11, 2026 • Effective: August 11, 2026

Key Points at a Glance

1. Introduction

This Privacy Policy explains how Simple Blood Pressure Monitor ("the App", "we", "us", "our"), developed and operated by Borys Kusmirek ("Data Controller"), collects, uses, stores, and protects your information. This policy applies to both the iOS and Android versions of the App.

Data Controller: Borys Kusmirek
Contact email: favamvv@gmail.com

By using the App, you acknowledge that you have read and understood this Privacy Policy. The legal bases we rely on, including where we rely on your consent, are set out in Section 4.

2. Information We Collect

2.1. Health Data You Enter (Stored on Your Device)

The following data is entered by you and stored in a local SQLite database on your device. We have no server-side copy of it, no account to hold it in, and no way to read it:

Your readings are not uploaded to us as data. There are, however, three situations in which information about your health can move off the device, and we want you to see them stated plainly:

Beyond those, the analytics and crash data described in Section 2.2 record that a feature was used, not the values you recorded. The App does not put your systolic, diastolic, pulse, weight, notes or tag text into any analytics event or crash report.

Under GDPR, blood pressure and pulse data are classified as "Special Category Data" (Article 9). For the data described in this section we act as a controller only in a limited sense: it is stored on your device under your control. Where we do process special category data — the scan photo — the legal basis is set out in Section 4.

2.2. Usage and Technical Data (Collected Automatically)

When you use the App, the following data is collected automatically by integrated third-party services to help us keep the App working and improve it. None of it contains your blood pressure values, notes or tag text:

Data TypePurposeCollected By
App instance identifier (anonymous) Distinguishing unique app installations Firebase Analytics
App usage events — e.g. that a reading was added (with only true/false flags for “had tags” and “had notes”), a reminder was set, a paywall was shown, a purchase completed, data was exported, imported or deleted, onboarding finished Understanding how users interact with the App Firebase Analytics
Device information (OS version, app version, device model) Ensuring compatibility, debugging issues Firebase Analytics
Approximate location (country/region level only, derived from IP address) Understanding geographic usage patterns Firebase Analytics
Crash reports: stack traces, device model, OS and app version, and the sequence of events leading to a crash Finding and fixing crashes and fatal errors Firebase Crashlytics
A/B test group assignment Optimizing the app experience via feature experiments Firebase Remote Config
Push notification device token Allowing us to send app announcements and reminders from our side Firebase Cloud Messaging
Anonymous sign-in identifier (created only when you use “Scan your monitor”) Authorising the call to our scan server so strangers cannot use it Firebase Authentication
Anonymous user identifier, purchase history, subscription status Managing subscriptions, verifying entitlements, fraud prevention RevenueCat

2.3. Information We Do NOT Collect

2.4. Apple Health & Health Connect (Optional Sync)

The App offers an optional, off-by-default integration with Apple Health (HealthKit) on iOS and Health Connect on Android. If — and only if — you enable Health Sync in the App’s settings and grant permission through the operating system’s permission dialog, the App will:

This exchange happens entirely on your device, between the App and the health data store managed by your operating system. Health data obtained from Apple Health or Health Connect:

You can revoke access at any time: on iOS via Settings → Privacy & Security → Health, and on Android via the Health Connect app’s permission settings, or simply by turning Health Sync off in the App. Disabling sync stops all reads and writes immediately. Note that data previously written to Apple Health may be included in your iCloud Health sync if you have that enabled — that synchronization is governed by Apple’s privacy policy, not ours.

2.5. “Scan Your Monitor” — Camera Photos and Cloud Processing

“Scan your monitor” is an optional feature, available to Premium subscribers, that lets you photograph your blood pressure monitor instead of typing the numbers. You start every scan yourself; the App never opens the camera or sends a photo on its own.

When you take a scan photo, the App works in two steps:

  1. On your device first. The photo is read by the text-recognition engine built into your operating system (Apple Vision on iOS, ML Kit on Android). If all three values — systolic, diastolic and pulse — are read successfully, the process stops there and the photo does not leave your phone.
  2. In the cloud, if step 1 falls short. If any of the three values could not be read on the device — a dim display, glare, an unusual layout — the App encodes the photo and sends it over an encrypted connection to a Cloud Function we operate on Google Cloud (United States). That function passes the image to OpenAI’s API, which returns the three numbers, and the function sends only those numbers back to your phone.

What this means in plain terms: your monitor’s display — and therefore that reading — is inside the photo. When a scan falls through to step 2, an image of your blood pressure reading is sent to our server and to OpenAI. You cannot tell from the screen which of the two paths a given scan took, so please assume that any scan may be sent. If you do not want this to happen, do not use Scan: enter your numbers with the dial instead. Every feature of the App works without it.

What is kept, and by whom:

The photo is sent with no name, no email address, and no link to your readings. The request carries the image plus the anonymous Firebase credentials that authorise it — whose only purpose is to stop people who do not have the App from calling our server (Section 5.5) — and nothing else that we add. We do not use scan photos for training, analytics, profiling, advertising, or any purpose other than reading the three numbers back to you.

2.6. Feature Requests (Optional)

The App includes a feature-request board where you can suggest and vote on ideas. If you choose to submit or like a request, the following is written to our Cloud Firestore database:

Opening the board queries Firestore for approved requests and for any pending ones of your own, which sends that random identifier to Google but writes nothing. If you never open the board, no identifier is created and nothing is stored. You can delete your own request from within the App.

3. How We Use Your Information

We do not sell, rent, trade, or share your personal or health data with advertisers, data brokers, insurance companies, employers, or marketing platforms. Your health data is never used for advertising, profiling, insurance scoring, lending decisions, or any purpose other than the ones described in this policy.

4. Legal Basis for Processing (GDPR)

For users in the European Union / European Economic Area, we rely on the following legal bases:

Processing ActivityLegal Basis
Health data stored and displayed on your device Not applicable — this data stays on your device under your control; we hold no copy
Scan photo sent for cloud reading (special category data, Art. 9) Explicit consent (Art. 6(1)(a) and Art. 9(2)(a)) — no photo is ever sent unless you choose to start a scan. You can withhold or withdraw it by not using the feature and entering numbers manually
App usage analytics (Firebase Analytics) Legitimate interest (Art. 6(1)(f)) — improving app quality and user experience
Crash and error diagnostics (Firebase Crashlytics) Legitimate interest (Art. 6(1)(f)) — keeping the App stable and safe to use
A/B testing (Firebase Remote Config) Legitimate interest (Art. 6(1)(f)) — optimizing app features
Feature requests (Cloud Firestore) Consent (Art. 6(1)(a)) — nothing is written unless you submit or like a request
Subscription management (RevenueCat) Performance of contract (Art. 6(1)(b)) — fulfilling your subscription purchase
Reminders and push messages Consent (Art. 6(1)(a)) — see the note below on how permission is requested

A note on notification permission. On Android, the App asks for notification permission with the system prompt. On iOS, the App requests provisional authorization for push messages, which lets them arrive quietly in Notification Center without a prompt the first time; you can then keep or turn them off from the notification itself, or in Settings → Notifications. Scheduled reminders you set up in the App always require the standard permission prompt.

You may withdraw consent for notifications at any time in your device settings or within the App. You may object to analytics or crash-diagnostics processing by contacting us (see Section 15).

5. Third-Party Services

The App integrates the following third-party services. Each operates as a data processor under their respective terms and privacy policies:

5.1. Firebase Analytics (Google LLC / Google Ireland Limited)

5.2. Firebase Remote Config (Google LLC / Google Ireland Limited)

5.3. Firebase Crashlytics (Google LLC / Google Ireland Limited)

5.4. Firebase Cloud Functions & OpenAI (scan processing)

5.5. Firebase Authentication — Anonymous Sign-In (Google LLC / Google Ireland Limited)

5.6. Cloud Firestore (Google LLC / Google Ireland Limited) — feature requests only

5.7. Firebase Cloud Messaging (Google LLC / Google Ireland Limited)

5.8. RevenueCat, Inc.

5.9. Local Notifications (flutter_local_notifications)

6. Data Sharing and Disclosure

7. Data Storage and Retention

Data CategoryStorage LocationRetention Period
Health data (readings, medications, notes, tags) Your device only (SQLite) Until you delete it in the App, use “Delete all my data”, or uninstall the App
Notification preferences and reminder schedules Your device only Until you change settings, use “Delete all my data”, or uninstall the App
Scan photo — on our server Google Cloud Functions (US), in memory only Not stored. Held only for the duration of the request (30 seconds maximum)
Scan photo — at OpenAI OpenAI servers (US) Per OpenAI’s published API policy: not used for training; abuse-monitoring logs kept up to 30 days unless a longer period is legally required
Firebase Analytics (user-level) Google servers (US/EU) Up to 14 months, per the setting configured for our Firebase project
Firebase Crashlytics crash reports Google servers (US/EU) Up to 90 days
Anonymous Firebase sign-in ID (scan only) Google servers (US/EU) Retained in our Firebase project; contains no personal details
Feature requests you submit Cloud Firestore (Google servers) Until you delete the request, or we remove it
RevenueCat subscription data RevenueCat servers (US) Duration of use + up to 6 years (legal compliance)

8. Data Export, Portability, and Deletion

8.1. Export

You can export your blood pressure readings at any time from the App’s Settings screen, as an Excel (.xlsx) spreadsheet or as a PDF report. The exported file is saved to your device. Once exported, the file is under your sole control — any further sharing, storage, or transmission of that file is your responsibility.

8.2. Import

You may import readings from an Excel file back into the App, and — if Health Sync is enabled — from Apple Health or Health Connect.

8.3. “Delete all my data”

Settings contains a Delete all my data option. It asks you to confirm twice, showing your reading count before the final step, and then erases the following from your device:

It is immediate and cannot be undone. There is no backup, on our side or anywhere else.

What it deliberately does not touch:

9. Your Rights

9.1. All Users

9.2. EU/EEA Users (General Data Protection Regulation)

Under the GDPR, you have the following rights regarding personal data we process:

To exercise any of these rights, contact us at favamvv@gmail.com. We will respond within 30 days.

Note on health data. Your readings, medications, notes and tags live on your device and we hold no copy, so we cannot access, retrieve, correct or delete them for you — the App gives you direct control instead (Section 8.3). For data we or our processors do hold — analytics, crash reports, subscription records, feature requests — we will act on your request. Scan photos are not stored by us, so there is nothing for us to retrieve or delete; a request concerning OpenAI’s abuse-monitoring logs would have to be directed to OpenAI, and we will help you where we can.

9.3. California Users (CCPA/CPRA)

Under the California Consumer Privacy Act and California Privacy Rights Act, you have the following rights:

Categories of personal information collected in the preceding 12 months:

We do not sell personal information. We do not share personal information for cross-context behavioral advertising.

9.4. Washington State Users (My Health My Data Act)

Under the Washington My Health My Data Act (MHMDA), your blood pressure and pulse data is "consumer health data."

9.5. Other US State Privacy Laws

We respect the privacy rights of users in all US states with comprehensive privacy legislation, including but not limited to Delaware, Iowa, Nebraska, New Hampshire, New Jersey, Tennessee, Minnesota, Maryland, Indiana, Kentucky, and Rhode Island. If you are a resident of any of these states and wish to exercise your privacy rights, please contact us at favamvv@gmail.com.

10. International Data Transfers

The readings stored on your device are not transferred anywhere.

The following are processed on servers outside the EU/EEA, principally in the United States: scan photos (Google Cloud Functions and OpenAI), usage and crash data (Firebase Analytics and Crashlytics), push tokens (Firebase Cloud Messaging), feature requests (Cloud Firestore), and subscription data (RevenueCat). These transfers are protected by:

11. Data Security

12. Children’s Privacy

The App is not directed at children under 13 years of age (or 16 years of age in the European Union under GDPR). We do not knowingly collect personal data from children. If you are a parent or guardian and believe your child has used the App, please contact us at favamvv@gmail.com and we will take steps to delete any associated data.

13. Health and Medical Disclaimer

This App is NOT a medical device. It has not been evaluated, cleared, or approved by the FDA (U.S. Food and Drug Administration), CE (European Conformity), or any other medical regulatory authority worldwide. The App is intended solely for personal health tracking and informational purposes.

In accordance with Regulation (EU) 2025/327 (European Health Data Space), we confirm that your health data is never used for advertising, insurance underwriting, lending decisions, employment decisions, or any purpose other than those described in this policy.

14. Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, third-party services, or applicable laws. When we make material changes:

Your continued use of the App after the effective date of any changes constitutes your acceptance of the updated Privacy Policy. We encourage you to review this page periodically.

15. Contact Us

If you have questions about this Privacy Policy, wish to exercise any of your privacy rights, or want to report a concern, please contact us:

We will acknowledge your request within 5 business days and respond substantively within 30 days. If we need additional time, we will notify you of the reason and expected timeline.

Disclaimer: This Privacy Policy is provided for informational purposes and is intended to be as comprehensive and accurate as possible. However, it does not constitute legal advice. We recommend consulting with a qualified attorney if you have specific legal concerns about data privacy.