PRIVACY POLICY — I'M FINE

Last updated: January 16, 2026

This notice describes how the "I'm fine" app collects, uses, and protects personal data. The app has two modes: User (who confirms "I'm fine") and Caregiver (who receives and views check-ins). The app is not a medical device and does not replace emergency services.

DATA CONTROLLER
Owner: The Thinking Clouds
Privacy Contact: info@thethinkingclouds.com

WHAT DATA WE PROCESS

  1. Account data: email and login credentials (managed through authentication providers), technical account identifiers.
  2. Profile and configuration data: caregiver display name and/or username; user-entered name; app preferences and settings.
  3. Usage data: check-in (e.g., “I’m fine” confirmation), date/time, and information needed to display the status to the caregiver.
  4. Notifications: Push notification token (e.g. Expo/APNs/FCM token) required to send notifications and reminders.
  5. Technical data: minimum information for operation and security (e.g. app/OS version, error logs).

PURPOSE OF THE PROCESSING AND LEGAL BASIS
We process data for:

  • Provide the app's core functions (registration/login, profile management, sending and viewing check-ins): perform the service requested by the user.
  • Send notifications (reminders and caregiver notifications): User consent via notification permissions and/or legitimate interest in providing the requested functionality.
  • Security and abuse prevention: legitimate interest.
  • Legal compliance: legal obligation, where applicable.

WHERE THE DATA IS STORED AND SUPPLIERS
To run the app, we use third-party cloud services and infrastructure, in particular:

  • Google Firebase (Authentication, Firestore, Cloud Functions, Cloud Messaging) for accounts, databases and notifications.
  • Expo (Expo Push Notifications) for managing the sending of notifications via the underlying channels.
  • Apple APNs and/or Google FCM as notification delivery channels.

Suppliers may process data according to their respective policies. References:
Firebase: https://firebase.google.com/support/privacy
Expo: https://expo.dev/privacy
Apple: https://www.apple.com/legal/privacy/

DATA SHARING
We do not sell personal data. Data may be shared:

  • With the associated caregiver, to allow viewing of check-ins and status.
  • With technical providers (such as those listed above) strictly for the provision of the service and sending notifications.
  • With competent authorities if required by law.

TRANSFERS OUTSIDE THE EU
Some providers (e.g., Google/Expo/Apple) may also process data outside the European Economic Area. In such cases, appropriate safeguards required by applicable law (e.g., Standard Contractual Clauses) are adopted where required.

DATA RETENTION

  • Account and associated data: for as long as necessary to maintain the account and provide the service, or as required by law.
  • Notification token: as long as needed to send notifications, or until revoked/decommissioned by the device.
  • Technical logs: for the time strictly necessary for diagnosis, security, and service improvement.

USER RIGHTS
Where applicable (e.g., GDPR), you can request access, rectification, erasure, restriction, portability, and objection to processing. You can also withdraw your consent to notifications at any time through your device settings.
To exercise your rights: info@thethinkingclouds.com
You also have the right to lodge a complaint with the competent supervisory authority.

SAFETY
We take reasonable technical and organizational measures to protect your data (e.g., encrypted transmission, access controls). No system is 100% secure: keep your credentials confidential and your device up to date.

MINORS
The app is not intended for minors without adult supervision. If you believe a minor has provided personal data, please contact us to request its removal.

CHANGES TO THE INFORMATION NOTICE
We may update this policy from time to time. The updated version will be posted with the update date.

CONTACTS
Privacy email: info@thethinkingclouds.com