Last updated: 23 May 2026
Privacy Policy
This policy explains what Laive Health does with your data. Laive Health stores your email address, the dates of your blood tests, and the marker values you enter. Blood test data is sensitive, so the law treats it with extra protection and so does Laive Health.
1. Who We Are
Laive Health is currently in beta. Formal legal entity, registered address, support contact, and ICO registration details will be added before wider distribution.
During beta, use the contact channel that gave you access to Laive Health for privacy questions or data requests.
2. What Data We Collect
- Account data: your email address, used to create and sign in to your account.
- Health data: the dates of your blood tests, and the marker values and units you enter for each test.
- Technical data: session cookies needed to keep you signed in, and anonymous usage statistics.
Your blood test data is special category health data under the UK General Data Protection Regulation. This category receives a higher level of protection in law.
Laive Health does not collect your name, date of birth, NHS number, payment card details, uploaded lab reports or documents, location data, advertising identifiers in this version of the product.
3. How We Use Your Data
Laive Health uses your email to authenticate you and your blood test data to generate scores and context. The legal basis is performance of a contract with you.
Laive Health uses technical and usage data to maintain, debug, and protect the service. The legal basis is legitimate interest in a secure and functioning product.
Because your blood test data is special category data, Laive Health also relies on your explicit consent. You can withdraw this consent by deleting your data or asking for it to be deleted.
4. Who Processes Your Data
- Supabase provides the database and authentication. Your account and health data is stored there in the configured project region.
- Vercel provides application hosting.
- Vercel Analytics provides anonymous usage statistics. It does not identify individual users.
Laive Health does not sell your data and does not share it for advertising.
5. How Long We Keep Your Data
Laive Health keeps your account and health data for as long as your account is active.
You can delete individual blood tests at any time from within the app. A deleted test is removed from your records and no longer contributes to any score.
Full account deletion is planned before the paid version launches. Until that feature is live, you can ask for account deletion through the contact channel that gave you access to Laive Health.
Delete My Data
A one-click delete-my-data button is planned. Until it is live, you can make a manual delete-my-data request through the contact channel that gave you access to Laive Health. This includes account data and health data stored in the app.
6. Cookies
Session cookies keep you signed in. These are necessary for the service to work.
Vercel Analytics uses privacy-focused, anonymous measurement and does not track you across other sites.
Laive Health does not use advertising or cross-site tracking cookies.
7. Security
- All traffic is served over HTTPS.
- The database uses row-level security so that you can only access your own records.
- Security headers are applied at the application level.
- Entered values pass plausibility validation to catch obvious errors.
- A limit of 20 tests per user per day reduces the risk of abuse.
No system is perfectly secure, but these measures are designed to protect special category data appropriately.
8. Your Rights
Under UK data protection law you have the right to:
- access the personal data held about you
- ask for inaccurate data to be corrected
- ask for your data to be deleted
- restrict or object to certain processing
- receive your data in a portable format
- withdraw consent for processing of your health data
A data export tool is planned before the paid version launches. Until then, you can exercise these rights through the contact channel that gave you access to Laive Health. Requests will be handled within the time limits set by law, normally within one month.
You do not need to wait for the planned account deletion button to ask for deletion. A manual delete-my-data request can be made at any time during beta.
9. Under-18s
Laive Health is not intended for anyone under 18. Do not create an account or enter data if you are under 18. If an account belongs to a person under 18, it will be deleted.
10. Complaints
If you have a concern about how Laive Health handles your data, use the contact channel that gave you access to Laive Health. You also have the right to complain to the Information Commissioner's Office, the UK regulator for data protection, at ico.org.uk.
11. Changes To This Policy
This policy may be updated as the product develops, for example when paid subscriptions and account deletion go live. The date at the top of this page shows when it was last updated. Material changes will be communicated through the app.