Privacy Policy
Last updated: July 25, 2026 · Version 1.2.0
1. Overview
Bracken is built privacy-first. We do not sell your health data or use it for targeted advertising.
2. Data we collect
- Account: email, name, date of birth (18+ verification)
- Health logs: injections, weight, symptoms, food, supplies, and related entries you save while signed in. These are stored in your Bracken account on our servers so the web app, iOS app, and Android app show the same history when you sign in on any device
- Progress photos:image files you add in Progress photos. These stay on your device only (your phone's Bracken album or private storage in the browser profile you used). Bracken does not upload progress photo files to our servers. You can include them in an encrypted backup you export yourself under Settings → Backup
- Payment: Stripe, Razorpay, or Dodo customer IDs for subscriptions (region-dependent). We do not store full card numbers
- Feedback: messages you send through in-app feedback or support
- Service usage: basic operational data needed to run the product (for example sign-in sessions and error diagnostics), not used for health-data advertising
3. Legal basis (GDPR)
- Consent: explicit health-data opt-in at registration (special-category health data)
- Contract: account and subscription services you request
4. How we use data
We use your data to:
- Provide the tracker, charts, reminders, and educational reports you request
- Store and sync your health logs in your Bracken account across devices
- Process billing and manage subscriptions
- Send transactional email (for example password reset and optional reminders)
- Improve the product in ways that do not sell or ad-target your health data
5. Third-party processors
- Stripe, web subscriptions (US/EU and fallback regions)
- Razorpay, subscriptions in India when enabled
- Dodo Payments, subscriptions in supported regions
- Resend, transactional email (password reset, optional injection reminders)
- Apple Health / HealthKit, optional on iOS when you grant permission (for example weight import or write-back)
6. Where your data lives
Your log is in your account. Shots, weight, check-ins, food, supplies, and most settings you enter while signed in are stored on Bracken servers and tied to your account. Sign in on the web, iOS, or Android to see the same history.
Progress photos stay on your device.Photo files are stored locally on the phone or in the browser profile where you added them. They are not uploaded to Bracken. On the mobile app, they typically live in a “Bracken Progress” album or app storage. In a desktop or mobile browser, they live in that browser's private site storage, not in your computer's general Photos library.
To move progress photos to a new phone or browser, export a backup ZIP under Settings → Backup and import it on the new device. Clearing browser site data or uninstalling the app without a backup can remove local photos.
A small number of older Pro accounts may still have progress photos stored on our servers from before this policy; you can view and delete those in the app.
You can export or delete your account data at any time from Settings.
7. Your rights
You can access (export), delete, rectify, and withdraw consent via Settings, or by deleting your account. Export and account deletion are available under Settings.
8. Security
TLS encryption in transit, bcrypt password hashing, audit logging, and no sale of health data.
9. Chrome extension (quick links)
The optional “Bracken. GLP-1 quick links” browser extension opens getbracken.com pages when you click a toolbar menu item. It does not read website content, inject scripts, store data on your device, or send information to Bracken. No account or health data passes through the extension. See the extension page for details.
10. Contact
Privacy questions: support@getbracken.com. Also see our Terms of Use.