Privacy Policy
Last Updated: January 15, 2026
Introduction
SomniCue ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and related services.
By using SomniCue, you agree to the collection and use of information in accordance with this policy. If you do not agree with the terms of this privacy policy, please do not access or use the application.
Information We Collect
We collect the following types of information:
- •Account Information: Email address and encrypted password when you create an account
- •Study Data: Items you create, study sessions, cue preferences, and learning progress
- •Health Data: Sleep data from Apple HealthKit (only with your explicit permission), including sleep stages, duration, and quality metrics
- •Device Information: Device type, operating system version, app version, and unique device identifiers
- •Usage Data: How you interact with the app features, session duration, and feature usage patterns
- •Subscription Information: Subscription status and purchase history (processed through Apple's App Store)
How We Use Your Information
We use your information to:
- •Provide and maintain the SomniCue service
- •Sync your data securely across your devices (Mobile Phone e and Smart Watch)
- •Optimize sleep cue delivery based on your sleep patterns for maximum effectiveness
- •Improve our app and develop new features based on usage patterns
- •Communicate with you about updates, support, and important notices
- •Process your subscription and manage your account
- •Detect, prevent, and address technical issues
HealthKit Data
If you grant permission, SomniCue accesses your sleep data from Apple HealthKit to optimize cue delivery during appropriate sleep stages. This data is used to:
- •Detect when you enter deep sleep (optimal for memory consolidation)
- •Schedule cue delivery during ideal sleep windows
- •Provide sleep analytics and insights
Important:
Your HealthKit data is processed locally on your device whenever possible and is never sold or shared with third parties for advertising purposes. We comply fully with Apple's HealthKit guidelines.
Data Storage & Security
Your data is stored securely using industry-leading cloud infrastructure (Supabase) which provides:
- •Encryption at rest (AES-256)
- •Encryption in transit (TLS 1.3)
- •Regular security audits and penetration testing
- •SOC 2 Type II compliant infrastructure
We implement industry-standard security measures to protect your information. However, no method of transmission over the Internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
Data Sharing
We do not sell your personal data. We may share data only with:
- •Service Providers: Third parties who assist in operating our app (e.g., cloud hosting, analytics) under strict data processing agreements
- •Legal Requirements: Law enforcement or government agencies when required by law, court order, or governmental regulation
- •Business Transfers: In connection with a merger, acquisition, or sale of assets, with appropriate notice to users
Your Rights
You have the following rights regarding your personal data:
- •Access: Request a copy of your personal data
- •Correction: Request correction of inaccurate or incomplete data
- •Deletion: Request deletion of your account and all associated data
- •Export: Request your data in a portable, machine-readable format (GDPR)
- •Withdraw Consent: Withdraw consent for data processing at any time
- •Opt-Out: Opt out of certain data collection (California residents under CCPA)
To exercise these rights, use the Account Management section in the app settings or contact us at privacy@somnicue.com.
Data Retention
We retain your data for as long as your account is active or as needed to provide you services.
- •Active Accounts: Data retained while account is active
- •Account Deletion: All personal data permanently removed within 30 days of deletion request
- •Aggregated Data: Anonymous, aggregated data may be retained for analytics and service improvement
Children's Privacy
SomniCue is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us immediately at privacy@somnicue.com.
Upon verification, we will promptly delete such information from our records.
International Data Transfers
Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. We ensure appropriate safeguards are in place, including:
- •Standard Contractual Clauses approved by the European Commission
- •Data processing agreements with all third-party providers
- •Compliance with applicable international transfer mechanisms
Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes by:
- •Posting the new Privacy Policy on this page
- •Updating the "Last Updated" date
- •Sending an email notification for material changes
- •Displaying an in-app notification
Continued use of the app after changes constitutes acceptance of the updated policy.
Contact Us
If you have questions or concerns about this Privacy Policy or our data practices, please contact us:
Email: privacy@somnicue.com
Data Protection Officer: dpo@somnicue.com
Response Time: We aim to respond to all inquiries within 30 days.