Scope
Who is responsible
Vital Thread is operated by Tomas Jonsson. This policy covers the Vital Thread iPhone app, web app, API, and the optional OAuth-protected MCP connection. It does not replace the privacy terms of Apple, Stytch, Cloudflare, ChatGPT, or another MCP client you choose to connect.
Information handled
What enters the thread
Account and access
A Stytch user identifier, invitation and membership state, your chosen display name, session information, and limited app, operating-system, device-model, screen-size, time-zone, and authentication-event information used to provide and secure sign-in. Sign in with Apple may provide Stytch with your Apple identity, name, and relay email address.
Apple Health information
The categories you permit: steps; active and resting energy; workouts; exercise and stand time; walking, running, cycling, swimming, and mobility measurements; sleep; weight; blood pressure; heart rate, resting heart rate, walking heart rate, recovery, and variability; respiratory rate; blood oxygen; body and wrist temperature; VO₂ max; body fat; lean body mass; waist circumference; and BMI. Source-app names and identifiers are kept so provenance remains visible.
Information you add
Meals, descriptions, nutrition estimates, photos, daily notes and tags, goals, unit preferences, reminder thresholds, and other context you deliberately save.
Device and operations
A random sync-device identifier, time zone, notification token and environment, request-security metadata, and limited operational information needed to deliver, secure, and troubleshoot the service. Vital Thread is designed not to log access tokens, health payloads, meal descriptions, or photos.
Approximate location
If you enable local weather, the iPhone sends approximate location directly to Apple WeatherKit. Vital Thread receives the resulting plain-language weather context, not your coordinates, and does not store or transmit your location to Vital Thread servers.
Purpose
How information is used
- Authenticate you and select only your private record.
- Import, display, and reconcile the health categories you authorize.
- Store meals, photos, notes, goals, preferences, and source provenance.
- Calculate your daily overview and trends and deliver reminders you enable.
- Protect the service, prevent abuse, recover failed operations, and provide support.
- Answer or update information through an MCP client only when you connect it and authorize the request.
Vital Thread does not sell personal information, show targeted advertising, track you across other companies' apps or websites, or use health information for advertising or unrelated model training.
Service providers
Who processes information
Cloudflare
Runs the web and API service. Each user's primary health database and private photo storage are configured for EU jurisdiction. Cloudflare also processes network and security metadata needed to deliver requests.
Cloudflare privacy policyStytch
Provides authentication, sessions, Sign in with Apple integration, OAuth access, and security controls used to prevent fraud. Its SDK can process authentication events and limited app, operating-system, device-model, screen-size, and time-zone information. Optional fraud controls can also process device-fingerprinting, CAPTCHA, IP-address, and IP-based approximate-location signals when enabled. Health records, meals, and photos are not sent to Stytch.
Stytch privacy policyApple
Provides Sign in with Apple, HealthKit, WeatherKit, and push notifications. The app reads HealthKit only after permission and does not write health information back to HealthKit.
Apple privacy policyYour chosen MCP client
If you connect ChatGPT or another compatible client, it can receive only the Vital Thread information requested through the scopes you approve. That transfer happens at your direction and is then governed by the client's privacy terms.
Health-data commitments
Extra limits for sensitive information
Health and fitness information is used only to provide and improve health-management features for you. It is not used for advertising, marketing, eligibility decisions, or unrelated data mining. Vital Thread does not support cross-user administrative health searches. Invitation administrators can manage access but cannot browse members' health records.
Retention and deletion
Kept until you remove it
Account content remains while your account is active unless you delete an individual item sooner. In the iPhone app, open Settings and choose Delete account and data to permanently remove your Vital Thread health database, private photos, membership profile, invitations associated with the account, and Stytch identity.
Deletion is retry-safe. A minimal opaque deletion receipt and completion timestamps may remain so the service can finish a partial deletion and prevent the deleted identity from regaining access. The Stytch subject used for deletion is cleared when identity deletion completes. Limited infrastructure security records may persist for their configured operational retention period.
Your choices
Permissions stay adjustable
- Change Health access in the Health app or iPhone Settings.
- Disable location or notification access in iPhone Settings.
- Turn Vital Thread reminders off inside the app.
- Disconnect an OAuth or MCP connection from the connected service.
- Delete individual meals or permanently delete the whole account.
Revoking a device permission stops future access but does not automatically remove information already synced to your private record. Use account deletion to remove the stored copy.
Security
Protection by structure
Vital Thread verifies access tokens before resolving a user partition, encrypts sensitive records and private photo objects, uses encrypted network connections, and physically separates health databases by verified identity. No security method is infallible; report a suspected problem without attaching health data or credentials.
Changes
When this policy changes
This page will be updated before a material change to how information is collected, used, or shared. The effective date at the top identifies the current version.
Contact
Questions about your information
Email tomas@jonsson.io. Do not include health readings, meal photos, account archives, access tokens, or other sensitive information in email.