Sunday (“we,” “us”) is a personal health app operated by Sunday Health. This policy describes what information we collect, how we use and protect it, and the control you keep.

What we collect

  • Account information. Your email address and sign-in credentials, used to create and secure your account.
  • Health data you connect. Apple Health data types you authorize through Apple’s permission screens; medical-record categories (such as lab results) you authorize through your Epic MyChart patient portal via Epic’s patient-authorized SMART on FHIR interface; and information you enter in the app yourself. Nothing is collected from a source before you explicitly connect it. We never receive your MyChart password — you authenticate directly with Epic.
  • Operational data. Basic technical logs needed to run and secure the service (such as request timestamps and error information). Our logging is designed to exclude your health information and credentials.

How we use it

  • To show your information back to you, organized in one place.
  • To compute trends, baselines, and meaningful changes from your own history.
  • Where you separately consent, to generate AI-assisted explanations of your data. This consent is distinct from connecting a source and can be revoked on its own.
  • To operate, secure, and improve the service.

What we never do

  • We do not sell your data — health data or otherwise.
  • We do not share your data with advertisers and we show no advertising.
  • We do not use your individual health data to train AI models.

When data is shared

We share data only with service providers that process it on our instructions to run the product — cloud infrastructure that hosts our systems, and, for AI-assisted features you have consented to, the AI processing service that generates explanations. These providers are not permitted to use your data for their own purposes. Beyond that, we would disclose information only if required by law, and we share your health information with your clinicians or anyone else only when you yourself choose to share it.

How it’s protected

  • Encrypted in transit between your device, our servers, and connected sources.
  • Stored in access-controlled databases where row-level security ensures only your own account can read your own records.
  • Credentials for connected health systems are stored encrypted.

Your control and your rights

  • Consent per source. Every data source requires its own explicit grant before anything is read.
  • Revoke any time. Revoking a source in the app stops all future syncing from it. You can additionally manage access in Apple Health settings or through your healthcare organization’s portal.
  • Delete your account. Account deletion removes your account and your associated health data from our systems.
  • Ask us. You can contact us to access, correct, or delete your information: privacy@getsundayhealth.com.

Retention

We keep your data while your account is active so the product can show your history over time — that is its purpose. When you delete your account, your associated health data is deleted from our systems.

Age

Sunday is intended for people 18 and older and is not directed at children.

Changes

If we make material changes to this policy, we will communicate them in the app before they take effect, and this page will always carry the current version and its effective date.

Contact

privacy@getsundayhealth.com