Eve Privacy Policy
Effective: May 1, 2026
1. Introduction
Webblabs LLC ("we", "us", "our") operates the Eve mobile application and the website at eve.webblabs.org (collectively, the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the Service.
2. Information We Collect
Account Data: When you create an account, we collect your email address and authentication credentials. If you sign in via Google or Apple, we receive your name and email from the provider.
Usage Data: We collect anonymous analytics events (e.g., screens viewed, features used, groups created) to improve the Service. Analytics are processed by our first-party analytics system (Subrail) and are not shared with third-party ad networks.
Expense and Group Data: When you create groups and add expenses, that data is stored on our servers so it can be synced across your devices and shared with your group members. Free-tier data is stored locally and synced in limited capacity; premium subscribers receive full cloud sync with longer history retention.
Device Data: We collect device type, OS version, app version, and locale for crash reporting and compatibility.
Payment Data: Payments are processed by Stripe. We do not store credit card numbers. We receive subscription status and transaction identifiers from Stripe.
3. How We Use Your Information
- Provide, maintain, and improve the Service
- Process subscriptions and payments
- Send transactional emails (e.g., receipts, password resets)
- Send push notifications (only if you opt in)
- Detect and prevent fraud and abuse
- Comply with legal obligations
4. Data Sharing
We do not sell your personal data. We share data only with:
- Supabase — database hosting and authentication
- Stripe — payment processing
- Firebase — push notifications and crash reporting
- Vercel — website hosting
Each provider processes data under their own privacy policies and our data processing agreements.
Provider Data and Patient Interactions (Eve)
For Eve provider accounts, we process additional business and professional profile data, including provider verification details, specialties, availability, booking metadata, service configuration, and operational analytics.
When users interact with providers, we may process consultation-related metadata, secure messaging metadata, appointment records, and limited interaction logs needed to operate, secure, and improve provider services.
Providers act as independent data controllers for the clinical or professional services they deliver. Webblabs acts as the platform operator and processes data to provide infrastructure, account management, billing, fraud prevention, and service reliability.
Health Data Collection & Usage (Eve)
Eve accesses and collects sensitive health-related data to provide its core cycle-tracking and wellness features. We treat all Health Data with the highest level of care and transparency.
Health Data We Access & Collect
- Menstrual Cycle Data: Period start and end dates, cycle length, flow intensity, and historical cycle patterns that you log within the app.
- Symptoms & Moods: Physical symptoms (e.g., cramps, headaches, bloating), emotional states, energy levels, and other wellness indicators you record.
- Apple Health (HealthKit) Data: When you explicitly grant permission, Eve may read and/or write the following HealthKit data types: menstrual flow, basal body temperature, cervical mucus quality, ovulation test results, sexual activity, sleep analysis, and heart rate. Eve only accesses Apple Health data categories that you individually authorize.
- Reproductive Health Indicators: Fertility window estimates, ovulation predictions, and related reproductive health markers derived from the data you provide.
How We Use Health Data
Your Health Data is used exclusively for the following purposes:
- Cycle Predictions & Insights: To generate personalized cycle predictions, fertility window estimates, and wellness insights based on your logged data.
- Symptom Tracking & Patterns: To identify trends in your symptoms and moods across cycles and present them to you in reports and charts.
- Apple Health Sync: To read data from and write data to Apple Health so your health information stays consistent across your health apps, only when you have granted explicit permission.
- Personalized Notifications: To send you timely reminders about upcoming periods, fertile windows, or symptom-logging prompts (only if you opt in).
- Service Improvement: Aggregated and de-identified Health Data may be used to improve prediction algorithms and app features. Individual Health Data is never used for this purpose without de-identification.
Health Data Protections
- Health Data is never sold to third parties.
- Health Data is never used for advertising or marketing purposes.
- Health Data is never shared with third parties for their own purposes, except as required by law.
- Health Data is encrypted in transit (TLS) and at rest (AES-256).
- Access to Health Data on our servers is restricted to essential service operations only.
- When you use Anonymous Mode, Health Data is stored locally on your device and is never transmitted to our servers.
- You may revoke Apple Health permissions at any time through your device’s Settings > Health > Data Access & Devices.
5. Data Retention
Account data is retained while your account is active. Expense and group data is retained for up to 2 years after last use. You may delete your account and all associated data at any time from Settings → Profile → Delete Account.
Account Deletion (Eve)
You have the right to delete your account and all associated data at any time. To delete your account:
- Open the Eve app
- Go to Settings
- Tap on Privacy
- Select “Delete Account”
- Follow the confirmation steps
When you delete your account:
- All your personal data will be permanently deleted from our servers
- All health data and cycle tracking information will be removed
- Your account will be immediately deactivated
- This action is permanent and cannot be undone
Alternative: If you’re concerned about privacy but want to keep your data, consider using Anonymous Mode instead. This allows you to continue using the app while keeping your data local to your device.
6. Your Rights
Depending on your jurisdiction, you may have the right to access, correct, delete, or export your personal data. You can exercise these rights from the app (Settings → Profile) or by emailing support@webblabs.org.
For users in the EU/EEA, you have rights under GDPR including data portability, restriction of processing, and the right to lodge a complaint with a supervisory authority.
For California residents, you have rights under the CCPA including the right to know, delete, and opt out of sale (we do not sell data).
7. Security
We use industry-standard measures including TLS encryption in transit, AES-256 encryption at rest for sensitive data, row-level security in our database, and regular security audits.
8. Children's Privacy
The Service is not directed to children under 13. We do not knowingly collect personal information from children. If we learn we have collected data from a child under 13, we will delete it promptly.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes via in-app notification or email. Continued use of the Service after changes constitutes acceptance.
10. Contact Us
If you have questions about this Privacy Policy, contact us at:
Email: support@webblabs.org
Webblabs LLC, United States
