Privacy Policy
Last updated: August 2, 2026
At SrceČuvar ("Heart Guardian", "we", "us", or "our"), we treat your personal and biometric health telemetry with absolute reverence. This Privacy Policy describes how we collect, use, store, and protect your information when you connect smart devices, Google Fitness API, or use our tele-health guardian application.
1. Information We Collect
We collect only the minimum data required to deliver real-time heart rate monitoring, fall detection, and emergency family safety alerts:
- Google Profile Data: Basic profile information (name, email address) provided during Google OAuth authentication.
- Biometric Telemetry Data: Instantaneous heart rate (BPM), Resting Heart Rate (RHR), Heart Rate Variability (HRV), sleep duration/architecture, and physical step counts fetched via authorized Google Fitness API scopes.
- Emergency Contact Information: Names, email addresses, and phone numbers of family guardians you explicitly configure for emergency alert routing.
- Family Access Passcodes: 4-digit Family PINs set by users to grant authorized family members access to their live telemetry dashboard.
2. How We Use Your Data
Your health data is processed strictly for the following purposes:
- Displaying continuous real-time heart rate animations and biometric analytics on your personal dashboard.
- Detecting cardiac anomalies (e.g., resting BPM spikes above safety thresholds) and sudden fall impacts with post-fall inactivity.
- Dispatching 1-second transactional emergency alert emails via Resend API to your designated emergency contacts, attaching live Belgrade Cardiology Center (Klinički Centar Srbije) GPS routing when critical alarms trigger.
- Generating anonymized clinical AI summaries via Google Gemini 2.5 Flash API to help family physicians review 7-day health digests.
3. Zero Data Selling & Google User Data Policy
We never sell, rent, monetize, or share your personal health telemetry or Google user data with any third-party advertisers, data brokers, or commercial entities.
Our use of information received from Google Fitness APIs adheres strictly to the Google API Services User Data Policy, including the Limited Use requirements.
4. Data Storage & Security
Biometric data streams are processed in secure memory and encrypted in transit using HTTPS/TLS protocols. Access to family dashboards requires explicit 4-digit Family Access PIN verification set by the device wearer.
5. Data Control & Deletion
You may disconnect your Google Health / Fitness account at any time by clicking "Exit" or revoking access via your Google Account Security Settings. You may also request total deletion of your profile data by contacting our team.
6. Contact Us
If you have any questions regarding this Privacy Policy or data security, please contact us at:
Email: privacy@srcecuvar.com