Privacy Policy
STEDTI PRIVACY POLICY
HeadMonkey Inc. (“we”, “us”, or “our”) respects your privacy and is committed to protecting your Personal Data. This Privacy Policy outlines how we collect, use, and safeguard your information when you use the STEDTI mobile application (the “Service”).
We comply with applicable Canadian privacy laws, including the Personal Information Protection and Electronic Documents Act (PIPEDA), and other applicable regulations in Ontario, Canada.
By using the Service, you consent to the practices described in this Privacy Policy. Consent is obtained within the app when users review this Privacy Policy and the Terms of Use and actively agree by checking a confirmation box. You may withdraw your consent at any time by discontinuing use of the Service and/or requesting deletion of your data.
1. Data We Collect
We collect the following categories of data:
- Identity Data: Name, email address, job title
- Health Data (with explicit permission): Apple HealthKit and Google Health Connect data (e.g., sleep, HRV)
- Engagement Data: Mood logs, journal entries, decision entries, and team interactions
- Technical Data: IP address, device identifiers, app usage logs, and performance data
2. Use of Health and Biometric Data
Our use of health-related data adheres strictly to the following principles:
- Limited Use: Data is used solely to provide personalized insights, coaching, and app functionality
- Non-Disclosure: We do not sell, trade, or share health data with advertisers, data brokers, or unauthorized third parties
- Local Processing: Raw biometric data is processed on your device wherever possible and is not centrally aggregated in identifiable form
STEDTI is not a medical service and does not provide diagnosis, treatment, or medical advice. The app is not a substitute for professional healthcare, therapy, or mental health support. Always consult a licensed healthcare provider before making changes to your health or wellness routines.
3. AI Processing (Google Gemini)
Certain features of the Service, including “Ask STEDTI AI,” use artificial intelligence powered by third-party providers such as Google Gemini.
- Data is transmitted securely using encryption protocols
- Inputs are used solely to generate real-time responses and are not used by us to train public models
- AI-generated responses are automated and may be inaccurate, incomplete, or not appropriate for your specific situation
- Users should not rely solely on AI outputs for decision-making, particularly in matters involving health, safety, or professional judgment
4. Third-Party Service Providers
We use trusted third-party providers to operate and support the Service, including:
- Firebase (Google): Authentication, database, and cloud storage
- Cloud Functions: Secure backend processing and deletion requests
These providers are contractually obligated to maintain confidentiality and safeguard your data.
5. Data Retention
We retain your Personal Data only for as long as necessary to fulfill the purposes outlined in this Privacy Policy, including providing the Service, complying with legal obligations, resolving disputes, and enforcing our agreements.
6. Data Deletion and Your Rights
You have the right to access, update, or delete your Personal Data.
- In-App Deletion: Users may permanently delete their account via the app (Profile → Delete Account)
- Deletion Process: Upon request, we perform a complete removal of associated records, including database entries, stored content, and authentication credentials
- Manual Requests: If you cannot access the app, you may request deletion by contacting info@headmonkey.com
We will process deletion requests within 30 days.
7. Data Breach Notification
In the event of a data breach that poses a real risk of significant harm, we will notify affected users and applicable regulatory authorities in accordance with applicable laws, including PIPEDA.
8. International Data Transfers
As a global service, your data may be stored and processed on servers located outside of your jurisdiction. By using the Service, you consent to such transfers in accordance with applicable data protection laws.
9. Children’s Privacy
The Service is intended for individuals 18 years of age or older. We do not knowingly collect or process data from individuals under 18. If we become aware that such data has been collected, we will promptly delete it.
10. Intellectual Property
All content, features, and functionality within the STEDTI application—including text, graphics, branding, and proprietary methodologies—are the exclusive property of HeadMonkey Inc. and are protected by applicable intellectual property laws.
11. Subscriptions and Payments
STEDTI is currently offered as a free service. Should subscription or paid features be introduced in the future, additional terms regarding billing, renewals, and cancellations will be provided and incorporated into this policy and/or the Terms of Use.
12. Contact Us
For any privacy-related questions, concerns, or requests, please contact:
Email: info@headmonkey.com