Privacy Policy
Last updated: May 11, 2026
1. Who We Are
Resident Life OS ("the App", "we", "us") is a wellness and financial tracking platform built for medical residents in Tanzania. The App is operated by Dr. Ally Said. This Privacy Policy describes how we collect, use, store, and protect your information.
2. Information We Collect
We collect the following categories of information:
Account information: Email address, name (if provided), and authentication credentials managed through Supabase Auth (including Google OAuth if chosen).
Wellness data: Self-reported scores for sleep, nutrition, stress, financial wellbeing, burnout risk assessments, and free-text reflections you write or generate through the AI summary feature.
Financial data: Income sources, expenses, loan and debt records that you voluntarily enter to track your financial health.
Usage data: Login streaks, rank progression, daily log timestamps, and feature usage patterns to improve the App experience.
3. How We Use Your Information
Your information is used to:
Provide and personalise the App's features including wellness tracking, financial dashboards, streak and rank systems, and schedule management. If you enable AI analysis, your wellness scores are sent to our AI provider to generate personalised feedback through the Dr. Mentor feature. We do not use your data for advertising or sell it to third parties.
4. AI Data Processing & Consent
Important: AI features require your explicit consent.
The Dr. Mentor AI feedback feature is opt-in only. No wellness data is sent to any AI provider unless you explicitly enable the "AI Analysis" toggle on the Wellness page.
When enabled, the following data is sent to our AI provider for processing: sleep hours and quality score, stress score, energy level, meal/nutrition information, expense amounts (if logged), and any wellness notes you include. This data is sent per-request only when you click "Generate" โ it is not continuously streamed.
AI providers: We use Groq (cloud API) for production and local AI models (Ollama) during development. Groq processes data on their servers subject to their privacy policy. We do not use OpenAI or any provider that retains training data from API calls.
You can revoke AI consent at any time by toggling off "AI Analysis" on the Wellness page. Revoking consent immediately stops all future AI data processing. Previously generated summaries that you saved remain in your records unless you delete them.
5. Data Storage & Security
Your data is stored in Supabase (hosted on AWS infrastructure). All data is encrypted in transit using TLS 1.2+ and encrypted at rest. Access to your data is protected by Row Level Security (RLS) policies, ensuring that only you can read and modify your own records. Authentication tokens are handled securely and sessions expire after periods of inactivity.
The App is hosted on Vercel. No personal health data is stored on Vercel's servers โ it serves only the application code. All persistent data resides in Supabase.
6. Data Retention
We retain your data for as long as your account is active. Wellness scores, financial records, and AI-generated summaries are kept to provide you with historical tracking and trend analysis. You may request deletion of your account and all associated data at any time by contacting us at the email below.
7. Your Rights
You have the right to:
Access all personal data we hold about you. Correct inaccurate data in your profile or records. Delete your account and all associated data. Withdraw AI consent at any time without affecting your ability to use the rest of the App. Export your data in a portable format upon request.
8. Third-Party Services
The App integrates with the following third-party services:
Supabase โ database, authentication, and storage. Vercel โ application hosting and deployment. Groq โ AI inference for the Dr. Mentor feature (only when consent is given). Google OAuth โ optional sign-in method.
Each provider operates under their own privacy policies. We recommend reviewing them if you have concerns about how your data is handled by these services.
9. Children's Privacy
The App is designed for medical professionals and is not intended for use by individuals under the age of 18. We do not knowingly collect data from minors.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated through the App or via email. Continued use of the App after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at: privacy@resident.health
ยฉ 2026 Resident Life OS ยท Built for medical residents in Tanzania ๐น๐ฟ