EverlyCare Privacy Policy

Effective Date: July 17, 2026 (supersedes the version dated July 15, 2026)

EverlyCare ("we", "our", "the app") is developed by Mingchi Zhang. This privacy policy explains how we collect, use, and protect your personal information when you use the EverlyCare mobile application. This policy is provided in English and Chinese; both versions are intended to be identical, and in case of any discrepancy the English version prevails.

1. Information We Collect

We collect the following types of information:

  • Account Information: Email address, display name, language preference, and an optional profile photo when you create and use an account.
  • Care Recipient Data: Information you enter about the person you are caring for — name, date of birth, gender, your relationship to them, medical conditions, allergies, care notes, an optional profile photo, and care-routine preferences such as their usual sleep window and quick water-logging presets.
  • Care Logs: Daily care records you enter, including:
    • toileting records (planned or spontaneous visits, incontinence episodes, volume, time seated, outdoor mode);
    • bowel movement records (type, Bristol scale rating, amount, accidents, location);
    • meal and fluid-intake records (meal type, description, fluid amount in ml, appetite);
    • medication records (medication name, dosage, taken/missed/skipped) and medication schedules;
    • mood and behavior observations (including sleep quality notes);
    • hygiene records (bathing, clothing changes, skin condition, oral care);
    • activity records and free-form care notes;
    • reminder schedules you configure.
  • Consent Records: When you agree to this policy at registration, and when you confirm proxy consent while creating a care recipient profile, we store an audit record of that consent (who agreed, when, which consent type, and which policy version). These records are append-only and cannot be edited.
  • Location Data (optional): If you enable the weather-aware prediction feature and grant location permission, the app reads your device's approximate coordinates to fetch local weather. See Section 4. If you decline the permission, the feature is simply skipped.
  • Apple Health Data (optional, iOS): If you enable Health Data reading in Settings and grant permission, the app reads (never writes) two data types from Apple Health — sleep analysis and step count — to refine toileting predictions. Raw health samples never leave your device; only derived results are stored (see Section 5). This feature is off by default, and declining the permission simply skips it.
  • Device Information: Device type, operating system version, and language preference, used only for app functionality.

2. How We Use Your Information

  • To provide and maintain the app's caregiving features
  • To generate care insights, trend analysis, and pattern-based predictions (such as likely toileting windows) for your personal caregiving use — see Section 6
  • To send local notification reminders you have configured
  • To enable care team collaboration with family members you invite
  • To generate PDF care reports for sharing with healthcare providers
  • To compute internal, aggregated usage statistics (for example, how many households log in a given week) so we can improve the app. These statistics are derived from logging activity, are not shared with anyone outside EverlyCare, and do not involve any third-party analytics SDK.

3. Data Storage and Security

Your data is stored securely using Supabase, a cloud database service with enterprise-grade security. All data is transmitted over HTTPS encryption. Row-level security policies ensure that only you and your invited care team members can access your care data.

Some data is also stored locally on your device only: your login session, a short-lived weather cache, and prediction records used to measure prediction accuracy on-device. On iOS, if you use the home-screen widget, the day's care summary and the current prediction are shared with the widget through Apple's protected App Group container on your device; quick logging on the widget uses your login credential to write the records you actively tap into your own account.

If you use the app in mainland China, your care data is kept only on your device and is not uploaded to the cloud infrastructure above (see Section 10). Because this on-device data is not backed up to our servers, we recommend exporting a PDF report before switching devices or reinstalling the app.

4. Data Sharing and Third-Party Services

We do not sell or trade your personal data, do not use it for advertising, and do not use any third-party analytics or crash-reporting SDKs. Your care data is only visible to:

  • You (the account holder)
  • Care team members you explicitly invite

The app relies on the following service providers:

  • Supabase (database, authentication, and hosting infrastructure): processes and stores the data described in Section 1 on our behalf.
  • Open-Meteo (weather service, optional): if you grant location permission, your device sends its approximate coordinates directly to the Open-Meteo weather API to retrieve local temperature and humidity, which the app uses to refine toileting predictions. No account information, name, or care data is sent with this request, and the result is cached on your device. If you never grant location permission, no data is ever sent to Open-Meteo.

No other third party receives your data.

5. Health Data

EverlyCare collects health-related information about care recipients (medication, toileting and bowel habits, fluid intake, mood, hygiene, etc.). This data is treated with the highest level of sensitivity. Apart from Supabase acting as our hosting infrastructure, we do not disclose health data to any third party, and it is only accessible to authenticated users with explicit access.

Apple Health (HealthKit) — iOS, optional. With your explicit permission, EverlyCare can read (never write) two data types from the Apple Health app — sleep analysis and step count — to improve toileting predictions. This feature is off by default; when enabling it you choose which single care recipient this device's health data belongs to, and the data informs predictions for that person only. Raw health samples never leave your device — the app uploads only derived results (each night's sleep onset/wake time and daily step totals), protected by the same access controls as your care logs. If you use China data-residency mode, these derived results also stay on your device and are never uploaded. This data is never used for advertising, never sold or shared with any third party, and never used for any purpose prohibited by Apple's HealthKit guidelines. You can turn reading off at any time in Settings → Health Data, effective immediately; stored derived results are deleted when you delete your account (in China data-residency mode they are on-device only and are removed when you uninstall the app, as described in Sections 3 and 10). Predictions do not depend on health data — declining or disabling access does not affect any existing feature.

6. Pattern Insights and Predictions

The app analyzes the care logs you enter to surface patterns — for example, typical toileting intervals, hydration trends, or likely upcoming toileting windows (optionally adjusted for the care recipient's sleep window and local weather). These insights are wellness and caregiving aids intended to help you plan daily care. They are not medical advice, diagnosis, or treatment, and should never replace the judgment of a qualified healthcare professional. Predictions are computed within the app for your care team's use; prediction accuracy is evaluated locally on your device.

7. Consent and Proxy Consent

  • Your consent: Creating an account requires you to read and accept this privacy policy. You may withdraw consent at any time by stopping use of the app and/or deleting your account (Section 9).
  • Proxy consent: When you create a care recipient profile, you confirm that you are entitled to record care and health information on behalf of that person — for example, as their family caregiver where the person may lack the capacity to consent themselves. You must not enter information about a person you are not entitled to record for. If a care recipient (or their legal representative) objects, the responsible caregiver should delete the relevant data.
  • Consent records: Each of these consent events is stored as a versioned, append-only audit record so that both you and we can verify what was agreed and when. You can view your own consent history data via your account; these records are deleted together with your account.

8. Push Notifications

Reminders (toileting, medication, fluids, custom) are delivered as local notifications scheduled on your device. We do not use remote push services and do not collect push tokens. Notification content is generated on your device from the reminders you configured. You can disable notifications at any time in your device settings or in the app.

9. Data Retention and Deletion

Retention. Your data is retained for as long as your account is active. Local caches (weather, prediction records) remain only on your device and are removed when you uninstall the app.

Deleting individual records. You can edit or delete individual care logs you created at any time in the app.

Deleting your account. You can delete your account yourself at any time in the app (Settings → Delete Account). Deletion takes effect immediately and works as follows:

  • Care recipient profiles that you created and that no other accepted care team member shares with you are permanently deleted, together with all of their care logs, reminders, and medication records.
  • Care recipient profiles that are shared with other accepted care team members are retained, because they contain the shared family record of that person's care. In that case, care logs you authored are retained for the remaining care team, but your authorship is removed (the logs are no longer linked to you), and the profile is no longer linked to your account.
  • Your account, profile, care team memberships, and consent records are permanently deleted.

If you have questions about deletion, or wish to request removal of data in a shared care record, contact us at the address in Section 14.

10. International Data Transfer

Your data is hosted on Supabase cloud infrastructure, which may be located outside your country of residence (including in the United States). By using the app, you acknowledge that your information will be processed on this infrastructure, protected by the measures described in Section 3. If you use the app in mainland China, your care data — including all health-related information (logs, medications, and care-recipient profiles and conditions), care-team data, and consent records — is stored only on your device and is not transferred outside mainland China. Only account-level information (your email and display name) is processed on the cloud infrastructure above so we can sign you in. Weather-based prediction is turned off in mainland China, so no location data leaves your device.

11. Children's Privacy

EverlyCare is intended for adult caregivers and is not directed at children under 13. We do not knowingly collect personal information from children.

12. Your Rights

You have the right to:

  • Access your personal data
  • Correct inaccurate data
  • Delete your account and data (self-service, in the app — see Section 9)
  • Export your care logs (via PDF report)
  • Withdraw consent at any time
  • View your consent history

13. Changes to This Policy

We may update this privacy policy from time to time. Any changes will be posted within the app and on this page with an updated effective date. For material changes, we will ask you to review and accept the updated policy in the app.

14. Contact Us

If you have questions about this privacy policy or your data, please contact:

EverlyCare Team
Email: everlycarecore@googlegroups.com


EverlyCare 隐私政策

生效日期:2026 年 7 月 17 日(取代 2026 年 7 月 15 日版本)

EverlyCare(下称"我们"或"本应用")由 Mingchi Zhang 开发。本隐私政策说明当您使用 EverlyCare 移动应用时,我们如何收集、使用和保护您的个人信息。本政策提供英文与中文两个版本,两版本内容一致;如有歧义,以英文版本为准。

1. 我们收集的信息

我们收集以下类型的信息:

  • 账号信息:您创建和使用账号时的电子邮箱、显示名称、语言偏好,以及可选的头像照片。
  • 被照护者信息:您录入的关于被照护者的信息 —— 姓名、出生日期、性别、您与其的关系、病史、过敏史、护理备注、可选的头像照片,以及护理习惯设置(如日常睡眠时段、快捷饮水量偏好)。
  • 护理日志:您录入的每日护理记录,包括:
    • 如厕记录(计划/自主如厕、失禁情况、尿量、坐便时长、外出模式);
    • 排便记录(类型、Bristol 大便量表评分、量、是否事故、地点);
    • 进食与饮水记录(餐别、描述、饮水量毫升数、食欲);
    • 用药记录(药名、剂量、已服/漏服/跳过)及用药时间表;
    • 情绪与行为观察(含睡眠质量备注);
    • 卫生记录(洗浴、更衣、皮肤状况、口腔护理);
    • 活动记录与自由笔记;
    • 您配置的提醒日程。
  • 同意记录:当您在注册时同意本政策,以及在创建被照护者档案时确认代理同意时,我们会保存该同意事件的审计记录(谁、何时、哪种同意、对应的政策版本)。该记录仅可追加,不可修改。
  • 位置数据(可选):若您启用天气感知预测功能并授予定位权限,应用会读取设备的大致坐标以获取当地天气(见第 4 条)。若您拒绝该权限,该功能将被跳过。
  • Apple 健康数据(可选,iOS):若您在设置中开启"健康数据"读取并授予权限,应用会从 Apple 健康 App 只读(绝不写入)睡眠分析与步数两类数据,用于优化如厕预测。原始健康样本不会离开您的设备,仅存储派生结果(见第 5 条)。该功能默认关闭,拒绝授权即跳过。
  • 设备信息:设备类型、操作系统版本和语言偏好,仅用于实现应用功能。

2. 我们如何使用您的信息

  • 提供并维护应用的照护功能
  • 生成供您个人照护使用的护理洞察、趋势分析和基于模式的预测(如可能的如厕时间窗)—— 见第 6 条
  • 发送您配置的本地通知提醒
  • 支持您邀请家人组成照护团队协作
  • 生成 PDF 护理报告,便于与医护人员共享
  • 计算内部的去标识聚合使用统计(例如某周有多少家庭在记录),用于改进产品。该统计不对外共享,也不接入任何第三方分析 SDK。

3. 数据存储与安全

您的数据安全地存储于 Supabase(具备企业级安全能力的云数据库服务)。所有数据均通过 HTTPS 加密传输。行级安全策略(RLS)确保只有您和您邀请的照护团队成员可以访问您的护理数据。

部分数据仅存储在您的设备本地:登录会话、短时效的天气缓存,以及用于在设备端评估预测准确率的预测记录。在 iOS 上,若您使用桌面小组件,当日照护摘要与当前预测通过 Apple 受保护的 App Group 容器共享给小组件;小组件上的快捷记录会使用您的登录凭证,将您主动点按的记录写入您自己的账户。

若您在中国大陆使用本应用,您的护理数据仅保存在您的设备本地,不会上传至上述云基础设施(见第 10 条)。由于该本地数据不会备份至我们的服务器,建议您在更换设备或重装应用前先导出 PDF 报告。

4. 数据共享与第三方服务

我们不会出售或交易您的个人数据,不将其用于广告,也不使用任何第三方分析或崩溃收集 SDK。您的护理数据仅对以下人员可见:

  • 您(账号持有人)
  • 您明确邀请的照护团队成员

应用依赖以下服务提供方:

  • Supabase(数据库、鉴权与托管基础设施):代表我们处理和存储第 1 条所述数据。
  • Open-Meteo(天气服务,可选):若您授予定位权限,您的设备会将大致坐标直接发送至 Open-Meteo 天气 API,以获取当地温湿度,用于优化如厕预测。该请求不附带任何账号信息、姓名或护理数据,结果缓存在您的设备上。若您从未授予定位权限,则不会向 Open-Meteo 发送任何数据。

除此之外,没有任何第三方会收到您的数据。

5. 健康数据

EverlyCare 收集与被照护者相关的健康信息(用药、如厕与排便习惯、饮水量、情绪、卫生等)。此类数据以最高敏感级别对待。除作为我们托管基础设施的 Supabase 外,我们不向任何第三方披露健康数据,且仅限拥有明确访问权限的已认证用户访问。

Apple 健康(HealthKit,iOS,可选):在您明确授权后,EverlyCare 可从 Apple 健康 App 只读(绝不写入)睡眠分析与步数两类数据,用于优化如厕预测。该功能默认关闭;开启时您需指定这台设备的健康数据属于哪一位被照护者,数据仅用于该被照护者的预测。原始健康样本不会离开您的设备 —— 应用仅上传派生结果(每晚的入睡/醒来时间与每日步数合计),并以与护理日志相同的访问控制保护。若您使用中国数据驻留模式,这些派生结果同样仅保存在您的设备本地、绝不上传。此类数据不用于广告,不出售或与任何第三方共享,也绝不用于 Apple HealthKit 指南所禁止的用途。您可随时在"设置 → 健康数据"中关闭读取,关闭后立即停止;已存储的派生结果将在您删除账号时一并删除(在中国数据驻留模式下,派生结果仅存于本机,随卸载应用清除,详见第 3、10 条)。预测功能不依赖健康数据 —— 拒绝或关闭授权不影响任何现有功能。

6. 模式洞察与预测

应用会分析您录入的护理日志以呈现规律 —— 例如典型如厕间隔、饮水趋势,或即将到来的可能如厕时间窗(可结合被照护者的睡眠时段和当地天气进行调整)。这些洞察是帮助您安排日常照护的健康生活与照护辅助工具,不构成医疗建议、诊断或治疗,不能替代专业医护人员的判断。预测在应用内计算、供您的照护团队使用;预测准确率在您的设备本地评估。

7. 同意与代理同意

  • 您的同意:创建账号需要您阅读并接受本隐私政策。您可以随时通过停止使用应用和/或删除账号(见第 9 条)来撤回同意。
  • 代理同意:创建被照护者档案时,您需确认自己有权代表该人记录护理与健康信息 —— 例如,作为其家庭照护者,而该人可能已缺乏自行同意的能力。请勿录入您无权代为记录之人的信息。若被照护者(或其法定代理人)提出异议,负责的照护者应删除相关数据。
  • 同意记录:上述每次同意事件都会保存为带版本号、仅可追加的审计记录,以便您和我们都能核实同意的内容与时间。您可以查看自己的同意历史;这些记录会随您的账号一并删除。

8. 推送通知

提醒(如厕、用药、饮水、自定义)通过在您设备上调度的本地通知送达。我们不使用远程推送服务,也不收集推送令牌(push token)。通知内容由您配置的提醒在设备上生成。您可以随时在系统设置或应用内关闭通知。

9. 数据保留与删除

保留:您的数据在账号有效期间保留。本地缓存(天气、预测记录)仅存于您的设备,卸载应用即随之清除。

删除单条记录:您可以随时在应用内编辑或删除自己创建的护理日志。

删除账号:您可以随时在应用内自助删除账号(设置 → 删除账号)。删除立即生效,规则如下:

  • 由您创建、且没有其他已接受的照护团队成员共同照护的被照护者档案,将被永久删除,其全部护理日志、提醒和用药记录一并删除。
  • 与其他已接受成员共同照护的被照护者档案将被保留,因为其中承载的是该家庭共享的照护记录。此时,您撰写的护理日志将为其余照护团队成员保留,但会移除您的署名关联(日志不再指向您),该档案也不再与您的账号关联。
  • 您的账号、个人资料、照护团队成员关系及同意记录将被永久删除。

如您对删除有疑问,或希望请求移除共享照护记录中的数据,请通过第 14 条的联系方式与我们联系。

10. 数据跨境传输

您的数据托管于 Supabase 云基础设施,其所在地可能位于您居住国家/地区之外(包括美国)。使用本应用即表示您知悉您的信息将在该基础设施上处理,并受第 3 条所述措施保护。若您在中国大陆使用本应用,您的护理数据——包括全部健康相关信息(记录、用药,以及被照护者档案与病史)、照护团队数据与同意记录——仅存储在您的设备本地,不传输至中国大陆境外。仅账号层信息(您的邮箱与昵称)会在上述云基础设施上处理,以供您登录。在中国大陆,天气预测功能已关闭,不会有任何定位数据离开您的设备。

11. 儿童隐私

EverlyCare 面向成年照护者,不面向 13 岁以下儿童。我们不会有意收集儿童的个人信息。

12. 您的权利

您有权:

  • 访问您的个人数据
  • 更正不准确的数据
  • 删除您的账号与数据(应用内自助操作,见第 9 条)
  • 导出您的护理日志(通过 PDF 报告)
  • 随时撤回同意
  • 查看您的同意历史

13. 政策变更

我们可能不时更新本隐私政策。任何变更都会在应用内及本页面公示,并更新生效日期。对于重大变更,我们会在应用内请您重新阅读并确认更新后的政策。

14. 联系我们

如您对本隐私政策或您的数据有任何疑问,请联系:

EverlyCare 团队
邮箱:everlycarecore@googlegroups.com