Last updated: October 1, 2025
We collect information that you provide directly to us, including when you create an account, use our services, or communicate with us. This may include your name, email address, phone number, and health-related information.
We use the information we collect to:
We do not share your personal health information with third parties except:
We implement appropriate technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction.
You have the right to:
We are committed to protecting your health information in accordance with HIPAA regulations and other applicable privacy laws.
If you have any questions about this Privacy Policy, please contact us through the app or at our support email.
Ygetit retains your information only as long as necessary for the purposes described in this Privacy Policy, to comply with our legal obligations under the Health Insurance Portability and Accountability Act (HIPAA) and other applicable laws, to resolve disputes, and to enforce our agreements.
The table below lists the data categories we collect and how long we keep each one.
| Data category | What it includes | How long we keep it |
|---|---|---|
| Account profile | Name, email address, phone number, ZIP code, profile photo, gender, date of birth, role (patient / provider / facility admin) | While your account is active. Permanently deleted 7 days after you submit an account-deletion request (the 7-day window allows you to cancel the request). |
| Authentication credentials | Password (stored as a one-way hash, never in plain text), JWT refresh tokens, device IDs you've signed in from | While your account is active. Tokens are rotated on every password change and on every sign-out. Permanently deleted with your account. |
| Health and wellness records (Protected Health Information / PHI) | Medications, mood-tracking entries, hydration logs, health journal entries, nutrition logs, uploaded health documents, lab reports, allergies, health goals, appointment requests, comments on health content | Retained while your account is active. Permanently deleted from active storage when your account is deleted. Immutable copies are kept in a HIPAA-compliant audit log for 6 years as required by 45 CFR §164.530(j). |
| HIPAA audit trail | A record of who accessed which PHI and when (e.g., when a care-team provider opens your shared mood report) | 6 years from the date the record was last in effect, as required by 45 CFR §164.316(b)(2)(i). This is a legal floor and cannot be reduced even by your account-deletion request. |
| Care-team chat messages | Messages you send to and receive from facility administrators or providers | Retained while your account is active. Deleted from your account when your account is deleted. The provider's facility may retain its own copy under its independent HIPAA retention obligations. |
| Push-notification tokens and device identifiers | Firebase Cloud Messaging tokens, mobile device fingerprint identifiers used to deliver appointment and chat notifications | While your account is active and the device is registered. Tokens are rotated periodically by Firebase. Permanently deleted with your account. |
| One-time codes (OTP), password-reset codes | The 6-digit codes we email you for verification, password reset, and account setup | 10 minutes from issue. After that, the code is permanently deleted from our database. |
| Account-deletion request audit | The deletion-request ticket itself: who requested deletion, when, and the email address used | 6 years as a HIPAA audit record, even after the user data the ticket refers to has been deleted. |
| Server logs | IP address, request timestamp, HTTP status, user-agent, geographic region (city-level only) | 13 months for security and abuse-investigation purposes. After 13 months, logs are aggregated and de-identified for trend analysis only. |
| Crash reports and analytics (Sentry) | Anonymized crash stack traces, device model, OS version, app version. Does not include PHI. | 30 days in detail. Aggregated trend data may be retained longer in de-identified form. |
When you delete your account through the in-app Settings → Manage Account → Delete my account flow, or by emailing support@ygetit.ntc-us.com, the 7-day grace-period clock starts. During that window you can cancel the deletion. After 7 days the data is permanently deleted from our active databases. The HIPAA audit log entries (rows in the table above marked 6 years) are retained as a legal requirement and cannot be cancelled by you; they contain only metadata (who, what, when), not the underlying health content.
We do not retain personal information solely to keep it. If you want to know what we currently hold about you, contact support@ygetit.ntc-us.com.