Atlas Atlas

Privacy Policy

Effective: May 11, 2026 · Last updated: May 11, 2026

This privacy policy describes how Atlas ("we," "us," or "the app") collects, uses, and protects your personal information.

Read this in plain English first: Atlas treats your data like the private medical record it is. We don't sell anything. We don't run ads. We only use your data to power features you've explicitly enabled in the app.

If you have questions, email support@atlashealth.app.


What We Collect

Atlas collects only information you explicitly provide or generate within the app. We do NOT collect device location, contacts, browsing history, advertising identifiers, or any data from outside the app.

Account Information. Your email address and password when you create an account. Passwords are never stored in plaintext — they're hashed and managed by our authentication provider (Supabase).

Profile Information. Your name, age, sex, height, weight, body fat percentage, goals (cut/maintain/bulk), training frequency, and unit preferences. You enter these during onboarding and can update or delete them at any time.

Health and Wellness Data. Bloodwork panels you import (markers, values, reference ranges, lab provider, date), supplements and protocol items you log, weight measurements, food log entries (calories, macros, foods consumed), workout history (exercises, sets, reps, durations, completion status), and AI chat conversations with Atlas.

Apple Health Data (optional). If you connect Apple Health, Atlas reads weight measurements and step counts from HealthKit, and writes your Atlas-logged weight entries back to Apple Health for two-way sync. This data stays on your device and is only synced to our servers when you explicitly take an action that records it. You can disconnect Atlas from Apple Health at any time in iOS Settings → Health → Sources → Atlas.

Subscription Information. When you purchase Atlas Pro or Atlas Premium, Apple processes the payment. We receive only the subscription tier and renewal status — never your credit card, Apple ID, or billing address.


How We Store Your Data

All Atlas data is stored on Supabase, a managed PostgreSQL provider that complies with SOC 2 Type II. Your data is stored in a private row protected by Row Level Security (RLS) policies — your records can only be read or modified by your authenticated account.

Data in transit between your device and our servers is encrypted with TLS 1.2+. Data at rest in Supabase is encrypted with AES-256.

The raw image bytes you upload for vision scans (meal photos, lab panel images, supplement labels) are not stored on our servers after extraction. Only the structured data extracted from them is saved to your account.


Artificial Intelligence Processing

Atlas uses Claude, an AI service operated by Anthropic, Inc., to power several features (Atlas Chat, meal photo scan, supplement label scan, lab panel scan, and lab AI insights). For each feature, only the data needed for that feature is sent.

Your consent

The first time you use any AI feature, Atlas displays an in-app consent screen identifying Anthropic and listing what data will be sent. You must explicitly tap "I agree, continue" before any data leaves your device. You can revoke consent at any time by deleting your Atlas account (Settings → Delete account).

How Anthropic uses your data

Anthropic processes the data Atlas sends solely to generate the response Atlas requested. Per Anthropic's commercial API terms, Anthropic does not use your data to train their AI models. Anthropic's privacy practices are published at anthropic.com/legal/privacy.

What Atlas does NOT send to Anthropic

Atlas never sends your password, payment information, account email, device identifiers, or any data unrelated to the specific AI feature you're invoking.


What We DON'T Do


Your Rights

Delete your account. Settings → Delete account. Deletion is immediate and irreversible — your profile, bloodwork, food log, weight history, workout history, protocol, recipes, and AI chat history are wiped from our servers within seconds.

Request a copy of what's stored. Email support@atlashealth.app from your account email and we'll send you everything within 30 days, free of charge.

Withdraw consent. Stop using Atlas at any time. Disconnect Apple Health in iOS Settings. Cancel your subscription via Apple's subscription management.

If you reside in California, the EU, the UK, or another jurisdiction with comprehensive privacy laws (CCPA, GDPR, UK-GDPR), you have additional statutory rights including data portability, correction, and the right to lodge a complaint with a supervisory authority.


Children's Privacy

Atlas is not intended for users under 13. We do not knowingly collect data from children. If you believe a minor has created an Atlas account, contact us and we'll delete it.


Medical Disclaimer

Atlas is not a medical device. Atlas does NOT diagnose, treat, cure, or prevent any disease. AI insights and recommendations are informational only and are not a substitute for professional medical advice. Always consult a qualified healthcare provider before making changes to your medications, supplements, or treatment.


Third-Party Services

ProviderPurposeWhat they receive
SupabaseAuth + databaseAll Atlas data, stored under Row Level Security
AnthropicAI processing (Claude)Per-request feature data. Not used for model training.
AppleDistribution + IAP + HealthKitSubscription status only. HealthKit data stays on your device.
Expo (EAS)Build pipelineSource code at build time

We have data processing agreements with Supabase and Anthropic. None of these providers sell your data or use it for advertising.


Changes to This Policy

We will update this policy as Atlas evolves. Material changes will be notified in-app at least 14 days before taking effect.


Contact

Questions, complaints, or data requests: support@atlashealth.app

Atlas is operated by Luke Harris (Individual).

PrivacyTermsSupportsupport@atlashealth.app