Effective Date: March 12, 2026
1. Information We Collect
We may collect information provided directly by you (such as account details), habit and progress data generated through use of the service, device and diagnostic information, and technical logs necessary to operate, secure, and improve the service.
2. How We Use Information
- Provide account access, synchronization, and core service functionality.
- Generate insights, coaching outputs, and personalization features.
- Maintain security, reliability, and service performance.
- Provide customer support and communicate service, legal, and policy updates.
3. Legal Bases (UK GDPR)
For users in the UK, personal data is processed under lawful bases recognized by the UK GDPR, including performance of a contract, legitimate interests, consent (where required), and compliance with legal obligations.
4. Data Sharing and Disclosure
We do not sell personal data. We may disclose limited data to vendors that provide hosting, analytics, authentication, communications, and payment services under appropriate contractual safeguards. We may also disclose information where required by law, regulation, legal process, or to protect rights, property, and safety.
5. International Transfers
Your information may be processed in countries outside the UK. Where required, we implement appropriate safeguards for international transfers, including UK-approved contractual protections (such as the UK International Data Transfer Addendum) or other lawful transfer mechanisms.
6. Data Retention
We retain personal data only for as long as reasonably necessary to provide the service, comply with legal obligations, resolve disputes, enforce agreements, and support legitimate business operations.
7. Data Security
We maintain technical and organizational safeguards designed to protect personal data. However, no method of transmission or storage is fully secure, and absolute security cannot be guaranteed.
8. Your Privacy Rights
Depending on your location, you may have rights to access, correct, erase, restrict, or object to certain processing, and to request portability of personal data. UK users may also lodge a complaint with the Information Commissioner's Office (ICO) at https://ico.org.uk. We encourage you to contact us first so we can address your request promptly.
9. Children
HabitSpark AI is not directed to children under 13 (or a higher minimum age required by local law). If we become aware that personal data from a child has been collected in violation of applicable law, we will take appropriate remedial action.
10. Changes to This Policy
We may amend this Privacy Policy from time to time. Material changes will be reflected by an updated effective date and, where required by law, additional notice.
11. Contact Us
For privacy-related questions or requests, contact us at [email protected].
Website: https://habitspark.ai