1. Who we are
Endó ("Endó", "we", "us") is an iOS application that provides endometriosis symptom matching and cycle tracking. This policy explains what we do with your personal data when you use the app or this website.
For the purposes of the EU General Data Protection Regulation (GDPR), the data controller is:
Endó
Gísli Guðmundsson Bergs
theendoappeu@gmail.com
2. What data we collect
| Category | Examples | Source |
|---|---|---|
| Account data | Email address, account identifier, sign-in provider (Apple or Google) | You, via Sign in with Apple or Google |
| Health & symptom data | Answers to the 56-symptom questionnaire, your symptom-match result, pain levels, symptoms, mood, period dates and flow intensity, cycle length | You, in the app |
| Lifestyle data | Remedies you have tried, diet, sleep duration, impact on daily life, your primary goal | You, during onboarding |
| Plan data | Your generated action plan and which steps you have completed | Generated by the app from your answers |
| Subscription data | Whether you hold an active subscription, and which plan | Apple StoreKit |
| Technical data | App version, device type, crash and error diagnostics | Your device / Apple |
We do not collect your name, your precise location, your contacts, your photos, or your payment card details. Payments are handled entirely by Apple — we never see your card number.
3. Why we use it, and our legal basis
- To match your symptoms against published research and build your personalised plan. Legal basis: your explicit consent (GDPR Art. 9(2)(a)).
- To create and run your account, keep you signed in, and sync your data across sessions. Legal basis: performance of our contract with you (Art. 6(1)(b)).
- To store your daily logs so you can see your history and trends. Legal basis: your explicit consent (Art. 9(2)(a)).
- To verify your subscription and unlock paid features. Legal basis: performance of our contract with you (Art. 6(1)(b)).
- To fix bugs, prevent abuse, and keep the app working. Legal basis: our legitimate interests in running a secure and reliable service (Art. 6(1)(f)).
- To respond to your support requests. Legal basis: our legitimate interests, or performance of our contract with you.
We do not use your data for advertising, profiling for marketing purposes, or automated decision-making that produces legal effects for you.
4. Health data and explicit consent
Most of what Endó stores is health data — a special category of personal data under GDPR Article 9. We only process it on the basis of the explicit consent you give when you start the questionnaire and create your account.
You can withdraw that consent at any time by deleting your account (see section 10). Withdrawing consent does not affect the lawfulness of processing carried out before you withdrew it. Because the app's core function depends on this data, withdrawing consent means you can no longer use Endó.
5. Apple HealthKit
If you grant permission, Endó can read from and write to Apple HealthKit on your device. We use this only to display and log your cycle and symptom information inside the app.
- We never use HealthKit data for advertising or marketing.
- We never sell HealthKit data, or disclose it to data brokers or information resellers.
- We never share HealthKit data with third parties for their own purposes.
- You can revoke HealthKit access at any time in iOS Settings → Health → Data Access & Devices.
6. Who we share data with
We share data only with the service providers we need to run the app. Each acts as our processor under contract:
| Provider | What it does | What it sees |
|---|---|---|
| Supabase | Authentication and database hosting | Your account data, health and symptom data, daily logs, plan data |
| Apple | Sign in with Apple, App Store subscriptions, crash reporting | Your Apple account identifier, subscription status, diagnostics |
| Google sign-in (only if you choose it) | Your Google account identifier and email address |
We may also disclose data if we are legally required to do so, or where necessary to establish, exercise or defend legal claims. We do not sell your personal data, and we do not share it with advertisers.
7. International transfers
Our providers may process data outside the European Economic Area, including in the United States. Where that happens, the transfer is covered by an adequacy decision or by the European Commission's Standard Contractual Clauses, together with additional safeguards where required.
8. How long we keep data
- Account and health data — for as long as your account is active.
- After you delete your account — erased from our live systems within 30 days, and from encrypted backups within 90 days.
- Support correspondence — up to 24 months.
- Records we must keep by law (e.g. transaction records) — for the period the law requires.
9. Your rights
If you are in the EEA or the UK, you have the right to:
- access the personal data we hold about you, and get a copy of it;
- have inaccurate data corrected;
- have your data erased;
- restrict or object to our processing;
- receive your data in a portable, machine-readable format;
- withdraw your consent at any time;
- lodge a complaint with your national data protection authority.
To exercise any of these, email theendoappeu@gmail.com. We will respond within one month.
If you are in California, you have comparable rights under the CCPA/CPRA, including the right to know, delete, and correct — and the right not to be discriminated against for exercising them. We do not sell or share personal information as those terms are defined under the CCPA.
10. Deleting your account
You can delete your account and all associated data from inside the app, under Account → Delete account. You can also email us and we will do it for you. Full instructions are on our account deletion page.
Deleting your Endó account does not cancel your App Store subscription. Manage that in iOS Settings → your name → Subscriptions.
11. Security
Data is encrypted in transit using TLS and encrypted at rest by our database provider. Access to production data is restricted, and row-level security policies mean your records are only readable by your own authenticated account. No system is perfectly secure, but we take these safeguards seriously and will notify you and the relevant authority of a breach where the law requires it.
12. Children
Endó is not directed at children under 16. We do not knowingly collect data from anyone under 16. If you believe a child has given us personal data, contact us and we will delete it.
13. Changes to this policy
We may update this policy. If the change is significant, we will notify you in the app or by email before it takes effect. The "last updated" date at the top always reflects the current version.
14. Contact us
Questions, requests, or complaints: theendoappeu@gmail.com