Back

Privacy Policy

SkinCalm is a private diary. This page explains what it stores, why, and how you stay in control.

PLACEHOLDER TEXT — this wording is a draft for internal review and must be replaced with legally reviewed text before launch.

Who is responsible

[PLACEHOLDER] Name, address and contact details of the organisation responsible for SkinCalm, plus a contact point for privacy questions.

What information we process

Account details (email address and the name you choose) and the entries you create: symptoms, body areas, possible triggers, food notes, skincare, medication, injections, mood, sleep, life-impact answers, free-text notes and skin photos. We do not ask for information that SkinCalm does not need.

Why we process it

To show you your own diary, history, charts and observations, and to run the app for you. [PLACEHOLDER] Final description of purposes and legal bases to be confirmed by legal review.

Health-related information

Much of what you record is health-related and treated as sensitive. Where the legal basis requires it, we ask for your separate, explicit consent before processing it. This consent is never bundled with anything else, and you can withdraw it at any time in Profile → Privacy & Data.

Storage and security

Your entries are stored in a managed cloud database with per-user access rules, so records can only be read by the account that created them. Skin photos are stored in a private bucket with per-user access rules and are served through short-lived links. Photo filenames are random identifiers and never contain your name or email address.

Retention

Your entries stay until you delete them. Deleting your tracking history removes those records and photo files immediately. Deleting your account removes your records and photos immediately; removal of the remaining account record is completed by our team within 7 days. [PLACEHOLDER] Final retention wording to be confirmed by legal review.

Your choices and rights

You can view, export (machine-readable JSON) and delete your information from inside the app. [PLACEHOLDER] Full description of data-protection rights and how to exercise them, including complaints, to be added after legal review.

Service providers

SkinCalm uses a managed backend provider for authentication, database and file storage, and a hosting provider to serve the app. [PLACEHOLDER] Final list of processors, locations and transfer safeguards to be confirmed.

Changes to this notice

[PLACEHOLDER] How changes are announced and how consent is re-collected when the wording changes materially.