← LifeLoop

Privacy Policy

LifeLoop ends up holding more about you than almost anything else you own — where you were, what you're struggling with, what you take, things you haven't told anyone. This page says plainly what we collect, why, who can see it, and how to take it back.

Last updated: 7 August 2026

The short version

  • We collect what the assistant needs to plan your day, reach you, and keep an accurate record — nothing collected "just in case".
  • Your data is encrypted in transit and at rest.
  • Consent is specific. Agreeing to reminders is not agreeing to phone calls; each permission is asked for separately and can be withdrawn.
  • Private entries live in a vault behind their own PIN. They never appear in an export or on the emergency screen.
  • You can export your record or delete your account at any time. Deletion means deletion.
  • We do not sell personal information, and we do not train models on your identifiable data by default.

What we collect

Things you tell us directly

  • Account details — your email address, and a phone number if you turn on voice check-ins.
  • Goals, plans and habits — what you said you wanted, what you did, what you skipped, and the context you gave around it.
  • Health and medication — medicines, doses and dose outcomes, symptoms, illness episodes, and anything you record about how you felt.
  • Emergency information — blood group, allergies, current medicines and an emergency contact, if you choose to fill in the emergency screen.
  • Messages, voice notes and call audio — what you say to the assistant by text, voice note, or on a check-in call, and the transcript produced from it.
  • Photos you attach — for example progress photos you ask the assistant to compare.

Things collected automatically

  • Device and notification identifiers — a push token so notifications can reach the right device, plus basic device and app version information.
  • Location — only if you grant the permission, and only for features that need it. You can revoke it at any time in your device settings.
  • Usage and diagnostics — errors, crashes and coarse feature usage, used to keep the app working.

What we do not collect

We do not buy personal data about you from third parties, and we do not run advertising or third-party advertising trackers in the app or on this site.

Why we use it

  • To run the loop — build your daily plan, check in on it, escalate from notification to message to call when you go quiet, and re-plan around what you say back.
  • To keep the record — so that six months from now the app can tell you what actually happened, and produce a doctor-ready summary you can take to an appointment.
  • To keep the health features safe — medicines you enter are normalised and checked against a maintained medication knowledge source and deterministic rules.
  • To reach your emergency contact — only where you have set one up and consented to that escalation.
  • To operate and improve the service — fix crashes, prevent abuse, and meet legal obligations.

AI processing

LifeLoop uses large language models to hold the conversation, plan your day and turn what you say into structure. To do that, the relevant part of your content is sent to our model providers for processing on our behalf, under agreements that require them to process it only to deliver the service.

The model runs the conversation. It does not decide the medicine. Where a wrong answer would hurt someone, the authority is a maintained knowledge source and versioned, testable rules — not the model's memory. Alerts name their source and when it was last checked.

We do not use your identifiable data to train models by default. If we ever want to, we will ask you first, separately, and you will be able to say no and keep using the app.

Who we share it with

We do not sell your personal information. We share it only with:

  • Service providers who run parts of the product on our behalf — hosting, databases, push notifications, telephony for voice check-ins, speech-to-text, and AI model providers. They may only use it to provide that service to us.
  • People you choose — for example when you export a summary and send it to your doctor, or when you set up an emergency contact and consent to us reaching them.
  • Authorities, where we are legally required to, or where it is necessary to protect someone's life or safety.

The vault

Some of what you record is more sensitive than the rest. Entries you put in the vault sit behind their own PIN, separate from everything else. They are never included in an export, never shown on the emergency screen, and never surfaced in a notification preview.

Security

  • Encrypted in transit and at rest.
  • Strong authentication, with sessions that expire on their own.
  • Internal access is tightly controlled, granted on a need-to-know basis, and logged.
  • We keep a documented breach-response process, and we will tell you and the relevant regulator if a breach affects you, within the timeframes the law requires.

No system is perfectly secure. We will not pretend otherwise, and we would rather tell you that than write a sentence claiming your data cannot possibly be exposed.

How long we keep it

Your record is kept for as long as your account is open, because that is the point of it — a health or habit history is only useful over years. When you delete your account we delete your personal data from our live systems, and it ages out of encrypted backups on our normal backup rotation. We keep only what we are legally required to keep, and only for as long as we must.

Your choices and rights

  • Access and export — get a copy of your record, in a form you can read and take elsewhere.
  • Correction — the assistant will get things wrong; every entry it creates can be corrected by you.
  • Deletion — delete individual entries, or your whole account.
  • Withdraw consent — turn off calls, notifications, location or emergency-contact escalation individually, without losing the rest of the app.
  • Object or restrict — ask us to stop or limit a particular use of your data.
  • Complain — to us first, and to your data protection authority if we haven't put it right.

To exercise any of these, email founder@lifeloop.in. We aim to respond within 30 days.

Children

LifeLoop is not intended for children under 16, and we do not knowingly collect their data. If you believe a child has given us personal data, email us and we will delete it.

International transfers

Some of our service providers operate outside your country. Where your data is transferred, we rely on appropriate safeguards, such as standard contractual clauses, to protect it.

Changes

If we change this policy in a way that materially affects you, we will tell you in the app or by email before it takes effect — not by quietly editing this page.

Contact

Privacy questions, requests, or something on this page that reads as evasive: founder@lifeloop.in.