Draft — subject to lawyer review
Privacy policy
This policy explains what information is collected when you use the Dorban website and app (The Smart Window Method), why it is used, who receives it, how long it is kept, and how you can access, correct, export or delete it.
Version:
Who is responsible
The service is operated by [Business name], [Company / business ID], [Address]. Privacy questions: [Privacy email].
What we collect
- Account details: name, email address, password (stored as a one-way hash, never readable), language and time zone.
- Profile and health data you provide: date of birth, height, weight and weigh-in history, goal, energy-calculation basis, everyday activity level and, if you choose, waist size and body-fat percentage.
- Suitability answers such as pregnancy or breastfeeding, diabetes medication or insulin, kidney disease or a history of an eating disorder. They are used so that no automatic deficit is suggested to people for whom it is not suitable.
- Journal: meals and portions, calories, protein and nutrients, water, exercise and weigh-ins you confirmed.
- Food photos and progress photos you upload.
- Voice recordings and transcripts, if you choose voice logging.
- A face photo, if you choose to create a personal avatar from a photo.
- Lab reports (for example blood tests), if you choose to upload them.
- Steps: a daily step total from Apple Health or Health Connect, only after you allow it on your device.
- Conversations with the AI coach and an optional coaching profile (past experience, challenges, strengths and goals).
- Technical data: a device token for notifications, notification preferences, minimal usage events (event type and time only) and security server logs.
- Payments (once paid plans go live): plan, amounts, billing dates and references. Card details are entered on the payment provider’s page; we never store a full card number or security code.
- Support and deletion requests: email address, optional name and your message.
Why we use it
- To provide the service: estimate a daily target, keep your journal and show trends.
- AI support: analyse a meal from a photo, voice or text and answer in chat. Every food or weight estimate stays a draft until you confirm it.
- Reminders and notifications you asked for.
- Support, security and abuse prevention.
- Billing, invoices and cancellations once paid plans go live.
- Improving the service using minimal, aggregated usage data.
We do not sell personal information and do not use health data for advertising.
What is required and what is optional
You are not legally required to provide information. An account needs account details, and a target needs height, weight, date of birth and a calculation basis.
Everything else is optional: photos, voice, a face photo, lab reports, steps, the coaching profile, notifications and the AI coach. AI features need a separate consent that you can withdraw in settings and keep using the journal without them.
Who receives it
- OpenAI (United States) — our AI provider. When you use the coach, photo analysis, voice transcription or avatar creation, the content needed for that request is sent: text, image or recording, plus context from your journal and profile. Under the provider’s terms published at the time of writing, data sent through the API is not used to train models by default and may be retained by the provider for a limited period for abuse monitoring.
- Notification services — Expo (United States), Google Firebase Cloud Messaging and Apple Push Notification service, plus the browser vendors’ Web Push services. A device token and the notification text are sent; notifications are written without health data.
- The payment provider (currently iCredit by Rivhit, Israel) once billing goes live: order details, amount and contact details. App-store purchases are also subject to Apple’s or Google’s terms.
- Hosting and infrastructure providers that run our servers: [hosting provider and server location].
- Authorities, when the law requires it.
Service providers receive only what their role requires and are bound to confidentiality and security.
Transfers outside Israel
Some providers operate outside Israel, mainly in the United States. Transfers are made to provide the service you requested and in line with the Israeli Privacy Protection (Transfer of Data to Databases Abroad) Regulations, 2001. AI features involve such a transfer; you can use the journal without them.
How long we keep it
- Voice recordings: deleted automatically 90 days after recording. A temporary transcript is kept encrypted for up to 7 days.
- Usage events (event type and time only): 90 days. Sign-up and subscription milestones (for example sign-up, plan confirmation, purchase or cancellation and a cancellation reason you chose): up to 400 days.
- Account, profile, journal, conversations, photos, face photo, lab reports and steps: while your account is active or until you delete them. You can delete single items, disconnect and delete steps, or delete the whole account.
- After account deletion: data and files are removed from the live system. Backup copies are removed as backups rotate, within [backup retention period].
- Records of completed payments: up to 7 years, as required by tax and accounting law. After account deletion they are kept without name, email or payment method.
- Support and deletion requests: up to 24 months after the request is closed.
Your rights
- Access and correction: most data can be edited in your profile and settings.
- Export: “Download my data” in settings creates a ZIP file with your data and files.
- Deletion: delete items, delete steps or delete your whole account. How to delete your account
- Withdraw consent for AI, photos or notifications at any time.
- Complain to the Israeli Privacy Protection Authority if you believe your rights were not respected.
For anything you cannot do yourself, write to [Privacy email]. We verify that a request comes from the account owner before acting on it.
Security
Traffic is encrypted (HTTPS), passwords are hashed, and private files — photos, recordings and reports — are never public and are served only to the account owner. Access to systems is restricted and we follow the Israeli Privacy Protection (Data Security) Regulations, 2017. No security is perfect; if an incident happens we will act and notify as the law requires.
Age
The service is for people aged 18 and over. We do not knowingly collect data from minors; an account found to belong to a minor will be deleted.
Cookies and browser storage
The website uses essential cookies for sign-in and security, and local browser storage for drafts and preferences. There are currently no advertising cookies or third-party trackers on the website.
Changes
Each version of this policy is dated. We will announce material changes in the app or by email before they take effect and ask for consent again where the law requires.