Loading...
Loading...
Effective date: March 26, 2026 · Gabriel Labs LLC
When you create a Gabriel account, we collect your name, email address, and password (hashed). If you sign in via OAuth (Google, Apple, or X), we receive only your public profile and email from those providers.
You may choose to share health information to help Gabriel personalize recommendations. This includes:
We store your messages with Gabriel to maintain context across sessions and improve the quality of responses. Your conversations are encrypted at rest and never used to train third-party AI models without your explicit consent.
If you connect a wearable (Apple Health, Oura, Whoop, Garmin, etc.), we receive the data you authorize — such as heart rate variability, sleep, activity, and blood glucose. You can disconnect any device at any time.
We automatically collect standard usage data: IP address, browser type, OS, pages viewed, session duration, and click patterns. This is used to improve the product, not to identify you personally.
We do not use your data for advertising, and we do not sell your data. Ever.
Your data is stored on Supabase with AES-256 encryption at rest and TLS 1.3 in transit. Databases are hosted in SOC 2 Type II certified data centers in the United States.
We are designed with HIPAA-intent security practices: strict access controls, audit logging, and minimal data retention. Only engineers with a documented need-to-know may access production data.
We do not sell, rent, or broker your personal health data to any third party.
You may request deletion of your account and all associated data at any time from your account settings or by emailing hello@askgabriel.com. Deletion is processed within 30 days.
We integrate with the following third-party services to power Gabriel:
You have the following rights regarding your data:
To exercise any of these rights, email us at hello@askgabriel.com with the subject line "Data Request." We respond within 30 days.
Gabriel is not a licensed medical provider. The information, recommendations, and insights provided by Gabriel are for educational and informational purposes only. They do not constitute medical advice, diagnosis, or treatment. Always consult a qualified healthcare professional before making changes to your diet, supplements, medications, or health routine. In an emergency, call 911 or your local emergency number.
We use a minimal set of cookies: a session cookie for authentication and a preference cookie to remember your settings. We do not use advertising or cross-site tracking cookies.
Our analytics partner (Plausible) is cookieless. You can disable session cookies in your browser, but Gabriel will not function without them.
Gabriel is intended for users 13 years of age and older. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has created an account, please contact us at hello@askgabriel.com and we will delete the account promptly.
We may update this Privacy Policy as Gabriel evolves. When we make material changes, we will notify you by email and display a prominent notice in the app at least 14 days before the changes take effect.
Your continued use of Gabriel after the effective date of any update constitutes acceptance of the revised policy. If you disagree with a change, you may delete your account before it takes effect.
Questions, requests, or concerns about this Privacy Policy or how we handle your data:
Gabriel Labs LLC
hello@askgabriel.com
We take privacy seriously and will respond to all inquiries within 5 business days.