Effective 22 September 2026
Privacy Policy
Jagadose is a personal tracker for people on weekly metabolic-therapy regimens. This policy explains what we collect, why, where it is stored, and the rights you have over your data.
Who we are
Jagadose (“we”, “us”) operates this app. If you have a privacy question, email privacy@jagadose.com.
What we collect
Account. Your email address and (optionally) name, via our auth provider Clerk.
Health information you choose to log. Medication and dose entries, weight and other measurements, side-effect entries, treatment-plan details, height and baseline weight, and reminder preferences.
Pen-scan data. When you scan a pen barcode, we parse and store the GS1 identifiers (GTIN, lot, expiry, serial) you scanned.
Medication photos and colors. If you choose to, you can give a medication a color and a photo of your own pen, vial or box, taken with your camera or picked from your library. Before upload the app shrinks the photo and removes its hidden camera data (including any location). The photo is stored in our backend (Convex), linked to your account, shown only to you, and never shared or used for anything else. Removing the photo, deleting that medication, or deleting your account deletes it.
Subscription status. If you buy Jagadose+, our payments processor RevenueCat records your purchase and renewal status against your account ID. We never see or store your card number — payment is handled entirely by the Apple App Store or Google Play.
Diagnostic data. We use Sentry for limited crash diagnostics: technical error details, app version, and device/operating-system information needed to investigate a fault. We do not send account identity, health entries, request bodies, breadcrumbs, or session replay to Sentry. We do not run advertising SDKs or tracking pixels.
How we use it
We use what you log only to operate the app: to show you your data, schedule your on-device reminders, and generate the PDF report you choose to share. We do not sell, share for advertising, or use your health data to train AI models.
AI features (Jagadose+)
Three optional, Plus-only features use AI and run only when you choose to use them. These requests are not used for advertising, and we do not use your data to train our own models. If you don't use these features, none of this data is sent for AI processing.
Insights. When you tap to generate or refresh an insight, a summary of your logged data — treatment plan, recent doses, weight trend, and side-effect entries — is sent to our AI provider OpenRouter, which routes it to OpenAI's GPT models, to produce that insight. It is cached on your account until you refresh it.
Assistant (“JD”). When you send the assistant a typed message, that message plus a summary of your active medications, doses, and units is sent to the same provider to understand your request (for example, to pre-fill a dose to log). Any logging action is carried out only after you confirm it.
Forecast explanations. When you tap to generate or refresh your weight outlook's AI read, we send our AI provider OpenRouter (which routes it to OpenAI's GPT models) computed trend statistics and a brief profile summary (age, sex, and whether you've set a goal weight) — not your raw day-by-day logs, and not any medication name. It is cached on your account until you refresh it.
Voice input. When you use the assistant's push-to-talk, your speech is transcribed by your phone's built-in speech recognition. Depending on your device, that may send the audio to your device's speech provider (for example, Google) to convert it to text. We do not record or store the audio ourselves — only the resulting text is processed, exactly like a message you type. You can always type instead of using voice.
Where your data is stored
Account and app data are processed by Clerk (sign-in) and Convex (backend), both with servers in the United States. By signing in you consent to your data being transferred to and processed in the United States. We may relocate processing to a regional provider in the future.
Service providers. We rely on a small set of processors, all US-based: Clerk (authentication), Convex (backend storage), RevenueCat (subscription status — no card data), Sentry (limited crash diagnostics), and, only when you use the AI insights or assistant features, OpenRouter and OpenAI (AI processing). Each receives only the data needed for its function.
On-device data (reminder schedules, app-lock preference, cached session) stays on your phone, in Expo's secure storage.
How long we keep it
We keep your data until you delete your account from the Account screen. Deleting your account erases your profile, doses, weight, side-effect history, pen records, treatment plan, medication colors and photos, and sign-in account. If sign-in removal cannot complete automatically, we keep you signed in and show how to retry or contact us.
Your rights
Depending on where you live (including under Malaysia's PDPA and the EU/UK GDPR), you may have the right to access, correct, port, restrict, or erase your data, and to withdraw consent or complain to a supervisory authority. You can:
• Access & portability: tap “Share report for your doctor (PDF)” on the Account screen.
• Erasure: tap “Delete account” on the Account screen.
• Other rights: email privacy@jagadose.com and we will respond within 30 days.
Security
All network traffic uses TLS. The app supports optional biometric app-lock. Convex and Clerk operate ISO-aligned production environments. No system is perfectly secure; please use a strong account password.
Children
Jagadose is not intended for users under 18. Do not use the app if you are under 18.
Not medical advice
Jagadose is a personal tracker. It does not provide medical advice, diagnosis, or treatment, and is not a substitute for your clinician. Always follow your prescribing clinician's guidance.
Changes to this policy
We may update this policy. The “Effective” date at the top will change, and we will surface material changes in-app before they take effect.