LEGAL

Privacy Policy

Last updated: April 30, 2026

1. Introduction

Longevity AI, operated by WNS Capital Management LLC ("we," "us," or "our"), is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and website (collectively, the "Platform"). By using our Platform, you consent to the practices described in this policy. If you do not agree, please discontinue use immediately.

2. Information We Collect

  • Personal Information: Name, email address, phone number (if voluntarily provided), age, and biological sex as entered during onboarding.
  • Health & Wellness Data: Weight, height, sleep ratings, energy ratings, dose logs, protocol configurations, body composition photos, journal entries, and daily check-in responses. This data is stored locally on your device and is NOT transmitted to our servers.
  • AI Advisor Messages: Text messages you send to the AI Advisor are transmitted to our server (longevityai.io/api/chat) to generate responses. We do not persistently store conversation history on our servers.
  • Technical Data: Device type, operating system version, and app version for crash reporting and performance monitoring.
  • Payment Information: Subscription transactions are processed entirely by Apple through the App Store. We do not collect or store credit card numbers, billing addresses, or payment credentials.

3. Data Architecture

Longevity AI v1.0 is designed with a privacy-first, local-storage architecture.

  • Local-Only Data (never leaves your device): Dose logs, protocol configurations, body composition photos, wellness scores, journal entries, daily check-ins, weight logs, water logs, injection site history, and Apple Health data.
  • Server-Transmitted Data: AI Advisor message text (for response generation), email address (for welcome email and account association), and phone number (if voluntarily provided).

Note: Longevity AI v1.0 does NOT currently handle Protected Health Information (PHI) as defined under HIPAA, because telehealth consultations and prescription services are not yet live. When those services launch in a future release, we will execute Business Associate Agreements (BAAs) with all partners and update this policy accordingly.

4. How We Use Your Information

  • Provide personalized wellness tracking and dose calculation tools
  • Generate AI Advisor responses based on your questions
  • Send transactional emails (welcome email, subscription confirmations)
  • Send marketing communications if you opted in (unsubscribe anytime)
  • Improve our AI models using anonymized, aggregated usage patterns
  • Comply with legal obligations and respond to legal requests

5. Information Sharing and Disclosure

We do not sell your personal information. We share data only in these circumstances:

  • Service Providers: Resend (email delivery), Apple (subscription processing), and our API hosting provider (Vercel) receive only the minimum data necessary to perform their functions.
  • Legal Requirements: We may disclose information if required by law, court order, or governmental regulation.
  • Business Transfers: In the event of a merger, acquisition, or sale of assets, user data may be transferred as part of the transaction. We will notify users of any such change.

We do NOT share data with advertisers, data brokers, or social media platforms.

6. Data Security

  • All data transmitted between your device and our servers uses TLS 1.3 encryption
  • Local data on your device is protected by iOS device encryption
  • Our API infrastructure is hosted on Vercel with SOC 2 compliant infrastructure
  • We do not store sensitive health data on our servers
  • Body composition photos never leave your device

7. AI Advisor — Third-Party Processor Disclosure

The Longevity AI Advisor is powered by Anthropic, PBC ("Anthropic"), a third-party AI service provider operating at anthropic.com.

What data is sent to Anthropic:

  • The text of the message you type into the AI Advisor
  • Limited conversational context required to generate a response
  • No identifying information (your name, email, account ID, or location) is transmitted

What Anthropic does with your data:

  • Processes your message in real-time to generate a response
  • Does not store your messages persistently per our processor agreement
  • Does not use your messages to train AI models per Anthropic's enterprise data agreement
  • Returns the generated response to our servers, which forward it to your device

Your control:

  • You may decline AI Advisor access at any time. Doing so disables the AI Advisor feature but preserves all other app functionality.
  • You may revoke previously-granted consent at any time via Settings → Privacy → AI Advisor Consent in the mobile app.
  • The first time you open the AI Advisor in the mobile app, an explicit consent prompt will appear. You must affirmatively consent before any data is sent to Anthropic.

Our commitment:

  • We do not log or store the content of AI Advisor messages on our servers in v1.0
  • We do not share AI Advisor messages with any party other than Anthropic for the purpose of generating responses
  • Anthropic's privacy practices are governed by their own privacy policy at anthropic.com/privacy

8. Data Retention and Deletion

  • Local Data: Persists on your device until you uninstall the app or reset onboarding. You control this data entirely.
  • Server Data: Email addresses and contact information are retained as long as your account is active. AI Advisor messages are processed in real-time and not persistently stored.

To delete all data: Uninstall the Longevity AI app from your device. To request deletion of server-side data (email from our mailing list), contact privacy@longevityai.io.

9. Your Rights

  • Access the personal information we hold about you
  • Request correction of inaccurate information
  • Request deletion of your data
  • Opt out of marketing communications at any time
  • Request a copy of your data in a portable format
  • Withdraw consent for data processing

To exercise any of these rights, contact us at privacy@longevityai.io. We will respond within 30 days.

10. Children's Privacy

Our Platform is not intended for individuals under 18 years of age. We do not knowingly collect personal information from minors. If we learn that we have collected data from someone under 18, we will delete it promptly. If you believe a minor has provided us with personal information, contact privacy@longevityai.io.

11. Contact Us

For privacy-related inquiries or to exercise your rights:

Email: privacy@longevityai.io
Entity: WNS Capital Management LLC
Web: longevityai.io/support