Skip to content

Legal

Privacy Policy

Privacy is EasyCheckUp's core principle: the platform is designed NOT to store your health answers. This policy explains which data we process, why, and your rights under the GDPR.

Last updated: 10/07/2026

1. Data controller

The data controller is True Believers, Unipessoal, Lda., a Portuguese sole-shareholder private limited company operating EasyCheckUp (tax number 517851466, registered office in Cascais, 2750, Portugal). Privacy contact: info@easycheckup.io.

Non-clinical data is hosted in the European Union (Supabase project in an EU region).

2. What we do NOT store

Questionnaire answers and derived health information are not stored in databases, files, logs or analytics tools — neither by the platform nor by third parties acting for us. The PDF report is never stored or transmitted to our servers.

This data exists only: (a) in your browser's memory during the session; (b) in the PDF generated and downloaded on your own device. Nothing is sent by email. Closing the page erases everything, by design.

3. What we store and why

Account: email, name (optional), language and market — for authentication and operating the service (performance of contract).

Physical data (optional): the height and weight you enter in your profile, only if you give explicit consent to store them — to show your personal overview and pre-fill future assessments. This is health data (special category, GDPR Art. 9; processed on the basis of your explicit consent — Art. 9(2)(a)), kept separately, encrypted in transit and under per-user access control. BMI is never stored (it is computed on the fly). You can withdraw consent and delete this data at any time; it is also removed when you delete your account.

Purchased assessments: when you buy the report, we store the generated suggestions — cards, exam plan, risk level and the assessment date; never your questionnaire answers or measurements —, based on the explicit consent recorded with the purchase (GDPR Art. 9). They let you revisit the results and regenerate the PDF in your account. You can delete each assessment at any time; they are also removed when you delete your account.

Billing: name, tax number, email, payment reference, amount and invoice reference — to process payment and meet tax obligations (legal obligation).

Consents: accepted consent version and types, and the date — to demonstrate consent (legal obligation).

Check-up reminder (optional): only the chosen date, if you ask to be reminded — based on your consent, revocable at any time.

Anonymous usage statistics: journey event counters — check-up started, completed or abandoned (and, in the latter case, which question was last shown), results viewed, sign-in requested, payment started, completed or declined, and report generated or failed — never linked to your account, session or answers, used to improve the service (legitimate interest).

Anonymous audience profile: when a check-up is completed and, if you buy the report, when the purchase completes, we record three bands — sex, age band (for example, 40–49) and body mass index band (for example, overweight). These are bands derived from what you entered, never your answers, your date of birth, your height, your weight or your BMI value. Each record is stored on its own, dated without a time and with no identifier, so it cannot be linked to you, to your account, to your session or to the other counters. It only tells us which profiles the service serves (legitimate interest).

4. Processors

If you choose to sign in with Google, Google acts as an authentication provider under its own privacy policy; we receive only your basic identification (email and name). Supabase (authentication and non-clinical database, including purchased assessments under per-user access control), Stripe (payments), InvoiceXpress (invoicing) and Resend (account and reminder emails). Each processes only the data strictly necessary to its function. None receives your health answers or the report.

5. Report delivery

The report is generated in your browser and downloaded directly to your device — it is never sent by email and never passes through our servers. From the moment you save it, protection of that file depends on your device and your security practices. Your account keeps only the generated suggestions, which you can review and delete at any time.

6. Retention periods

Account data and consents: until you delete your account. Billing records: for the applicable statutory tax periods. Reminders: until sent or until you withdraw the request.

7. Your rights

You have the rights of access, rectification, erasure, restriction, portability and objection. You can delete your account directly on the profile page — non-clinical data is erased immediately (issued invoices are kept for the statutory period).

You may lodge a complaint with the CNPD (the Portuguese data protection authority). To exercise any right, contact info@easycheckup.io.

8. Cookies and local storage

We use no advertising cookies. The browser stores only: your language preference and the authentication session token (non-clinical data required for operation).

We use aggregate, cookieless usage metrics (Vercel Analytics) to understand the performance of the informational and account pages. These metrics use no personal identifiers and are never collected on the questionnaire or results pages, which are fully excluded from this measurement.

9. Security

All communication is encrypted (TLS). Access to non-clinical data is restricted by per-user access policies (RLS). The no-persistence architecture reduces health-data risk at the source.

10. International transfers

Non-clinical data is hosted in the European Union. Some processors (for example, the payment processor) may process data outside the European Economic Area; in those cases the transfer relies on the European Commission’s standard contractual clauses or another mechanism under Chapter V of the GDPR. Your health answers and the report are never transferred, because they never leave your device.

11. Automated decisions

Suggestions result from applying deterministic rules to the answers you provide. There is no solely automated decision producing legal effects or similarly significantly affecting you within the meaning of Article 22 of the GDPR: the suggestions are purely informational and are meant to be weighed by you and your doctor.