titr.health
Draft — not legal advice. This describes this app's actual current data practices, but it has not been reviewed by a lawyer and should not be relied on as a compliance instrument until it has been. Health-adjacent services carry real obligations under PIPEDA (and CCPA/GDPR if you serve users in the US or EU) — have a lawyer review this before launch.

Privacy Policy

Last updated: August 24, 2026

1. Who we are

Titr is operated by [INCORPORATED ENTITY — e.g. 1234567 Canada Inc.], a company incorporated in [PROVINCE/COUNTRY OF INCORPORATION]("we", "us"). We operate this service, which lets you record the doses you take, the plan you are following, and your own measurements, and see how they move over time. This policy explains what data we collect, why, and how you can control it. You can reach us at [privacy@yourdomain] or by mail at [BUSINESS MAILING ADDRESS]. We answer privacy requests within 30 days.

2. What this app is not

Titr is a record-keeping tool. It records what you tell it and shows it back to you. It does not recommend, prescribe, or adjust a dose, and nothing in it is medical advice. Dosing decisions belong to you and the healthcare professional treating you. We are not a pharmacy, a prescriber, or a supplier, and we do not sell medication or supplies.

3. Information we collect

  • Account information: your email address and a password. The password is never stored in plain text — authentication is handled by our infrastructure provider, Supabase.
  • What you are taking: the medications or supplements you add, their dose, route, schedule, and any notes you write.
  • Doses you log: the date of each dose and, for an injection, the site you used — so the app can track rotation.
  • How you felt, if you record it: an overall rating, any side effects you tick, and free-text notes.
  • Your plan: the schedule you enter, including the dose steps and dates your prescriber set.
  • Measurements: weight and body-composition values you enter, or import from a Garmin, Google, or Apple Health export file. Imports are parsed in your browser and only the resulting values are saved — the export file itself is never uploaded to or stored on our servers.
  • Questions you ask Cadence, if you use the coach: your question, plus a summary of your own data assembled to answer it. See Section 6.
  • Sign-in records: the date and time of each sign-in attempt, successful or failed, so unusual account activity is visible to you and to us. We record the fact and time only — not your IP address, location, or device.
  • AI usage counts: for each coach request, which feature made it, how many tokens it used, and how long it took. This is a meter, not a transcript.

4. What we do not collect

We do not ask for your legal name, your address, your date of birth, a government health number, or any insurance identifier, and there is nowhere in the app to enter them. We do not accept uploaded medical documents. We do not use tracking pixels, advertising identifiers, or third-party analytics that profile you across other sites.

5. How we use it

We use your information to operate your account, show your own data back to you, send the reminders you have asked for, and contact you about your account (password resets, sign-in confirmations). We do not sell your data, we do not share it with data brokers, and we never use your health data for advertising — ours or anyone else's.

6. AI features

Cadenceis optional. If you use it, your question and a summary of your own data (your current medications, doses, plan, and measurement trends) are sent to Anthropic's API to generate a reply. Direct identifiers are stripped from that summary before it leaves — it carries your age and measurements, not your name or contact details.

Anthropic processes the request to return a reply and, under their commercial terms, does not use it to train their models. Chat history is stored on your account so the conversation persists between visits; you can delete it at any time.

Every AI request is recorded in your audit log (Section 7): which feature made it, what kind of data went, and when. If you never use the coach, nothing about you is ever sent to an AI model.

7. Audit logging

We keep an internal, append-only record of security-relevant events on your account: sign-ins, changes to your records (which fields changed, never the values — an audit log holding the before-and-after of your health data would just be a second copy of it), share links created or viewed, and every request sent to an AI model on your behalf. You can read your own log from the Privacy page in the app.

8. How your data is protected

Your records are private to your account by default: our database enforces row-level security so only you — and systems acting on your explicit request — can read or write them. Traffic is encrypted in transit. You can turn on two-factor authentication from your profile, and we recommend it.

9. Sharing

Nothing is shared unless you create a share link. A share link shows only the sections you choose, can be password-protected, expires, and can be revoked at any time. Every view of it is recorded in your audit log. Beyond that, we disclose data only to the infrastructure providers needed to run the service (Section 10), or where the law requires it.

10. Service providers

  • Supabase — database, authentication, and file storage.
  • Vercel — application hosting.
  • Anthropic — the AI model behind Cadence, only when you use it (Section 6).

11. Retention and deletion

Your data stays until you remove it. You can delete an individual record at any time, delete all of your health data while keeping your account, or delete your account entirely — which permanently removes your records. Deletion is immediate and is not recoverable by us. Audit entries are kept on a fixed retention schedule and then automatically purged.

12. Your rights

You can access, correct, export, or delete your data — most of it directly in the app, and the rest by writing to [privacy@yourdomain]. Depending on where you live you may also have the right to withdraw consent, object to certain processing, or complain to a privacy regulator — in Canada, the Office of the Privacy Commissioner.

13. Children

This service is not intended for anyone under 18, and we do not knowingly collect data from children. If you believe a child has created an account, contact us and we will delete it.

14. Changes to this policy

If we change this policy we will update the date above, and for any change that materially affects how your data is handled we will tell you in the app before it takes effect.