LVRS FRVR
LVRS FRVR

Consumer Health Data Privacy Policy

Effective Date: April 22, 2026.

This policy is provided in addition to, and is incorporated by reference into, our Privacy Policy. It is designed to meet the Washington My Health My Data Act (RCW 19.373) and comparable state laws governing consumer health data.

1. What is consumer health data

"Consumer health data" means personal information that is linked or reasonably linkable to you and that identifies your past, present, or future physical or mental health status. In the context of LVRS FRVR, this includes mental and behavioral health information, information about your emotional state, and information that reveals attempts to seek, or the seeking of, health services or supplies related to relational, mental, or behavioral wellness.

We treat information derived from your use of LVRS FRVR as consumer health data when it relates to your emotional, mental, or relational wellness, even when that data is created by you (for example, a journal entry) rather than collected from a clinical source.

2. Categories of consumer health data we collect

We may collect or generate the following categories of consumer health data when you use the Service:

  • Private Thoughts. Journal entries you write in your private space, including free-text content and optional mood labels. This content is never shared with your partner.
  • Relational assessments. Your responses to the Drift Check, Attachment Quiz, Love Language assessment, Relationship Checkup, and Pulse assessments, and the resulting scores, grades, and category breakdowns.
  • Daily reflections. Reflection ratings, journal entries, and emoji reactions associated with your Daily Sparks and weekly check-ins.
  • Derived sentiment and health signals. Aggregate or categorical signals we compute from your entries, including sentiment scores, affection signals, gratitude markers, hope markers, and inferred relational-health indicators.
  • Relational health gauges. Outputs of the Rhythm Gauge, Drift Gauge, Repair Velocity, Asymmetry Insight, and any similar feature that infers relational health state.
  • Research profile demographics (when you opt in to Tier 2). Gender identity, sexual orientation, ethnicity or cultural background, age range, household income bracket, relationship type, and other optional demographic responses you provide.
  • Communication preferences and timing that reveal when you are most engaged with self-reflection or relational work.

3. Sources of consumer health data

  • Directly from you. Everything you type, select, or submit while using the Service.
  • Generated by your use of the Service. Sentiment analyses, gauge outputs, and engagement patterns computed by our systems from your activity.
  • From your partner, only as permitted. When you and your partner are connected, your partner may enter shared information (for example, a weekly check-in response) that pertains to both of you. We apply strict partitioning so that content labeled as one person's (such as Private Thoughts) never reaches the other.

4. How we use consumer health data

We use your consumer health data only for the purposes below, and only when you have given consent for that purpose:

  • To operate the Service. Displaying your gauges, delivering your daily content, tracking your streaks and LXP, and producing reflections for you personally.
  • To personalize your experience. Tailoring prompts, reminders, and insights to your patterns and your couple's patterns.
  • To notify you. Sending emails or push notifications tied to your activity, if you have those notifications enabled.
  • For anonymized aggregate research, only if you have opted in to Tier 2. Aggregate means grouped across at least 50 couples (our K-anonymity threshold) with no identifiers attached.
  • For named research studies, only if you have opted in to Tier 3 and have given study-specific consent for a particular project.
  • To meet legal obligations, such as responding to lawful requests, preventing fraud, and protecting the rights and safety of users.

We do not use your consumer health data to train third-party machine-learning models. We do not sell your consumer health data. We do not share your consumer health data for cross-context behavioral advertising.

5. Categories of third parties with whom we share

We share consumer health data only with service providers that perform functions on our behalf, under contracts that prohibit them from using the data for any other purpose. These categories are:

  • Hosting and backend infrastructure. Our real-time database and application hosting providers.
  • Authentication and identity. Providers that verify email addresses and manage sessions.
  • Email delivery. The provider that delivers transactional and account-related emails (we never email consumer health data itself).
  • Payment processing. Our billing provider, which receives only payment-related identifiers, not consumer health data.
  • Analytics. A product analytics provider that receives de-identified engagement events, subject to your cookie preferences.

A current list of our subprocessors is maintained at our Subprocessors page.

6. Your rights

You have the following rights with respect to your consumer health data. Each right can be exercised from within the app, under your account settings, without contacting us by email.

  • Right to know. You can download a full copy of your data, including all categories of consumer health data listed above, at any time.
  • Right to delete. You can delete your account at any time. When you do, your personal data is removed from our active systems. An immutable audit record of the deletion is retained for compliance purposes; it contains only a hash of your email, not the email itself.
  • Right to withdraw consent. You can withdraw Tier 2 or Tier 3 consent from your account settings. Withdrawing consent ends future processing for that purpose. Data already aggregated under K-anonymity is not individually retrievable because individuals cannot be re-identified from it.
  • Right to correct. You can edit your profile and rewrite journal or reflection content at any time in the app.
  • Right to confirm processing. You can confirm that we are processing your consumer health data, and which categories, by reviewing this policy and your account settings.
  • Right to appeal. If we deny a rights request, you may appeal by replying to the email we use to communicate the denial. Appeals are reviewed by the Mya support team.
  • Right to opt out via browser signal. We honor the Global Privacy Control (GPC) browser signal as a valid opt-out of the sale and sharing of personal data. When your browser sends this signal, our advertising and analytics trackers will not load, and if you are signed in, we will record an immutable opt-out tied to your account.

We never respond to health-data rights requests by sending your data through email. All data transfer happens inside your authenticated session, using your in-app download.

7. Consent

We process your consumer health data only with your consent. By signing up and using LVRS FRVR, you give explicit, affirmative consent for us to collect and process the categories listed above for the purposes listed above. You can withdraw this consent at any time; doing so ends your use of features that require processing consumer health data.

For Tier 2 (anonymized aggregate research) and Tier 3 (named study participation), we request separate, specific consent. Those consents are independently toggleable in your account settings.

8. Sale and sharing

We do not sell consumer health data. We do not share it for cross-context behavioral advertising. If this ever changes, we will obtain separate, specific, written authorization from you before any such sale or share, and that authorization will be revocable at any time. The Washington My Health My Data Act requires this level of separate authorization, and we meet that standard for all users, not only Washington residents.

9. Geofencing

We do not operate a geofence around any health care facility, health service location, or similar venue. We do not identify or track individuals on the basis of their location near such facilities, nor do we send advertising based on such presence.

10. Retention

We retain consumer health data for as long as your account is active, plus any additional period required by applicable law or needed to resolve disputes and enforce our agreements. When you delete your account, your consumer health data is removed from our active systems. See our Data Retention policy for specific retention windows by data category.

11. Security

We use encryption in transit, encryption at rest, strict access controls, and an immutable audit trail for sensitive operations. Private Thoughts are partitioned so that the content never reaches your partner through any channel. No system is perfectly secure; if a breach ever occurs, we will notify affected users and regulators as required by applicable law.

12. Children

LVRS FRVR is only for adults age 18 and older. We do not knowingly collect consumer health data from anyone under 18. If we learn that we have collected data from a person under 18, we will delete it promptly.

13. Changes to this policy

We will post material changes to this policy here and update the effective date at the top. For material changes, we will also prompt you to review and re-consent before continuing to use the Service.

14. How to reach us

Support for the Service is provided by the Mya team. For privacy-related questions that cannot be resolved in the app, you may contact us at support@lvrsfrvr.com. Please do not send consumer health data by email. We will not respond to rights requests with your data in an email; we will guide you to exercise the right inside the app, where the data stays inside your session.

LVRS FRVR

This policy is reviewed at least annually and whenever material product or legal changes require an update.