Privacy
Privacy Policy
Draft for product launch preparation. This policy must receive legal review before broad public launch or paid subscriptions.
Draft policy: This page reflects the current FATChat product architecture and intended data practices. It is not a substitute for legal review.
1. What FATChat is
FATChat is a personal GLP-1 journey companion designed to help users organize medication history, weight, symptoms, hydration, activity, body changes, goals and related personal context.
2. Information you provide
Depending on the features you use, FATChat may process account information, profile preferences, medication and dose history, weight and body measurements, symptoms and check-ins, goals, notes, progress photos, Family Circle permissions and support requests.
3. Connected health data
If you choose to connect a supported health source, FATChat may receive only the categories you authorize. Connected-source records should retain source provenance so imported data can be identified, reconciled and deleted appropriately. Integrations should not be represented as active until they are actually available.
4. How information is used
Information is used to provide the product, maintain your history, calculate trends, generate user-facing observations, operate sharing controls, protect the service, provide support and improve reliability. FATChat is not designed around selling identifiable personal health data.
5. Analytics
The public marketing website should not send medication, weight, symptoms, health notes or other health values to general marketing analytics. If product analytics are added, their scope and processors should be disclosed here before launch.
6. Authentication and service providers
The application uses third-party service providers for functions such as account authentication. The current authentication provider is Clerk. Additional processors, including any AI or payment providers used at launch, should be listed here with accurate descriptions before they receive production data.
7. AI-assisted explanations
If FATChat uses an AI provider to explain insights, the product should minimize transmitted data, apply usage controls and disclose the provider and purpose here before production use. AI explanations do not replace the deterministic data underlying an insight.
8. Sharing
Health records are intended to be private by default. Family Circles are permission-based. A user’s participation in a family plan or circle does not transfer ownership of that person’s health record to another account holder.
9. Retention, export and deletion
FATChat is being designed with export, archive/soft-delete and permanent-purge paths. Exact retention periods and request procedures must be finalized and documented before general availability.
10. Security
FATChat uses technical and organizational measures appropriate to the stage of the service, but no system can be guaranteed completely secure. See the Security page for the current architecture-level approach.
11. Children
Age eligibility must be finalized in the Terms and onboarding flow before launch. FATChat should not knowingly collect data from users below the approved minimum age.
12. Changes
Material changes to this policy should be versioned and dated. Where appropriate, FATChat should record consent to material new uses rather than treating continued use as blanket consent.
13. Contact
Privacy questions can be submitted through the FATChat contact page. A dedicated privacy email address should be published before broad launch.
Last updated: August 15, 2026.
