Your information. Your choices.
Privacy Policy
The service this covers
Subjective Health is a personal wellness service operated by Centurion Movement, LLC, a Texas limited liability company. This policy covers the website, web companion, and connected Subjective iPhone app. The current service is for adults in the United States. It provides education and personal tracking, not clinical care.
Our Consumer Health Data Privacy Policy explains health information in more detail and governs where that information is concerned. Privacy questions and requests: dev@centurionmovement.com.
Subjective and Centurion use a shared account and health-record service. If you already have a Centurion account, signing in can make your existing records available in Subjective. Deleting that shared account affects both services; the app asks you to confirm this before deletion.
What we collect
Account information: your name, email address, account identifiers, authentication information, preferences, and records of choices or permissions you give us. Amazon Cognito handles account authentication.
Information you choose to save: food descriptions and nutrition estimates, weight and body measurements, goals and calorie or protein targets, estimated energy output, daily completion status, personal notes, medication details you enter, weekly reviews, and your starting program. Optional health connections and AI features are described below and in the health-data policy.
Support and earlier inquiries: information you send when contacting us and any information you previously submitted through an intake or inquiry form. Please do not email passwords or more health information than we need to help with your request.
Optional usage records: if you choose to help improve the website or companion, we collect selected screen and feature names, button actions, guide progress, broad screen-size categories, approved campaign/source codes, approximate time spent and scroll depth, and whether an action succeeded or encountered a general type of problem. Records include times and random identifiers; signed-in usage is associated with your account. These records can reveal use of a health service and are not anonymous.
For public guides and tools, optional analytics records which resource page you visit and whether you click to build a free plan. It does not record calculator activity, readings, results, or completed worksheet contents. Public-browser usage is kept separate from account usage.
Technical information: our hosting and service providers receive information needed to deliver and protect the service, such as IP address, browser or device details, request times, and error information. This is separate from advertising or marketing analytics.
How we use it
We use your information to create and secure your account, save and retrieve your records, provide features you request, calculate and display your daily and weekly summaries, respond to support requests, and manage privacy requests. We also use necessary information to investigate abuse, maintain the service, and comply with legal obligations.
With separate permission, we use optional usage records to understand which pages help people get started, which features people use or return to, and where steps fail or cause confusion. These usage records include session identifiers and times so we can calculate visit and completion patterns. A further choice lets our team use the built-in step-by-step activity view. The separate PostHog choice described below also permits session and activity-sequence analysis there. You can use the service without agreeing to either.
Your personal records are not a public profile. The current companion does not give a clinician, employer, health plan, advertiser, or affiliate a dashboard into your account. You decide whether to download or share a copy yourself.
Creating an account is not consent to promotional email or text messages. Account verification and password-recovery messages are service communications. Any future optional marketing subscription will have a separate choice and a way to unsubscribe.
Service providers and AI
Vercel delivers the website and web requests. Amazon Web Services hosts the shared account and record services, including Amazon Cognito authentication and storage services. These providers necessarily process information to operate the service.
Our own optional usage records pass through Vercel and are stored in AWS. If the separately labeled PostHog option is available and you enable it, PostHog receives a limited copy of those usage events to help us analyze product use, including visits and activity sequences. That option is unavailable until we verify the provider setup. It does not give PostHog your account email, saved health values, typed content, or access to your health record.
When you ask AI food logging to estimate a meal, the food description you submit is sent through our server to OpenAI. The estimate is returned for you to review before saving. AI features available in connected account services can also process the messages, images, and relevant record context you submit to those features. You can use manual food entry instead of AI estimation.
AI processing is not the same as keeping information only on your device. Provider processing and retention can apply to submitted content. We do not promise that AI requests have zero retention. Avoid including identifying details or unrelated medical information in a food description.
Where enabled, Sentry processes technical error diagnostics for troubleshooting. Existing billing services may use Stripe for payment records and Resend for service emails. These billing providers are not required to create or use the current free companion, and we do not receive your full payment-card number.
We may disclose information to comply with a valid legal obligation or to address fraud, unauthorized access, or a threat to safety, subject to applicable law. A privacy notice is not blanket permission to share your health information for unrelated purposes.
Optional analytics and browser storage
Optional analytics starts only after you choose it. The usage records include times and session identifiers for calculating visit and completion patterns. A separate option allows our team to use the built-in step-by-step activity view; it does not record a video of your screen, page contents, text you type, photos, or network contents. We exclude saved health values, guide answers, raw page addresses and referring links from these usage records. The action names themselves can still reveal use of a health feature.
Open Optional analytics to review your choices, download the associated usage records, or turn collection off and delete those records. You can decline and continue using the service. Website choices made before signing in and signed-in account choices are separate; we do not join the earlier website history to your account. Changing one choice does not change the other.
For website analytics before sign-in, a browser cookie lets this browser manage its own records without creating an account. It expires after 30 days. Use the controls in that browser before clearing site data if you want to download or delete the records yourself. Clearing the cookie does not send us a deletion request, and we may be unable to locate those records afterward. Contact us for help; do not send us cookies or account tokens.
The website and companion do not load advertising pixels or send these records to advertising networks or affiliates. We do not sell personal information or share it for cross-context behavioral advertising. Optional product analysis is not permission for advertising, audience targeting, or promotional messages.
Our no-sale and no-targeted-advertising settings apply to everyone, including browsers sending Global Privacy Control or another recognized opt-out signal. You do not need to identify yourself or turn on a setting to receive these protections. We do not use profiling to make decisions about eligibility for employment, insurance, lending, or health care.
Essential browser storage also supports sign-in, unfinished entries, and sample previews. Authentication software stores session tokens so you can return to your account. Unfinished food and weight drafts use account-scoped tab storage; the app rejects drafts older than 24 hours and clears drafts on sign-out. A starting-plan draft can be held in tab storage while you move into your account. Sample-preview records can remain in local storage until you clear them.
Signing out and clearing this site’s browser data removes browser-held information. It does not delete records already saved to your account or copies you downloaded or shared. On a shared device, sign out when finished.
Storage and deletion
We keep saved account records to provide the service while your account is active. We keep support, security, and transaction records for the purposes for which they are needed, including applicable legal obligations. Our core AWS record services are hosted in the United States; other providers’ processing locations and retention practices can differ.
Our optional usage records expire from access and reports after 30 days; an hourly cleanup removes expired records from the active event store. Turning optional analytics off deletes its active usage records and stops new collection for that choice. We keep limited permission and deletion records to honor and document your choice. Account deletion also covers account-linked analytics; withdrawing account health-data permission turns off account analytics as well.
If you separately enabled PostHog, turning it off or deleting the associated analytics also requests deletion of the copies sent there. We also request removal of older provider copies as the associated usage identifiers expire. Provider deletion is processed separately and may take longer than removal from our own active records. We follow up on those requests; a queued request is not confirmation that every provider copy has been erased. Backups and limited records needed to document deletion follow the safeguards below.
In the web companion, open You → Your data & account to download your companion record, withdraw health-data permission, or request deletion of your shared account. The same controls are available on the permission screen without accepting again. The companion download does not include every historical Centurion feature. Contact us if you need a broader access request, an earlier intake submission removed, or help using these controls.
Account deletion removes records from active account systems through the deletion process. It is not a promise of instantaneous removal from every backup or service provider. A privacy deletion request also covers applicable processor and backup copies; any lawful exception or delay must be handled under the law that applies to your request. We will explain any denial or extension. Limited records may remain where required by law or necessary to document and enforce the deletion itself.
Your rights and requests
You can request access to, correction of, or deletion of your information, a portable copy, and information about collection, use, and specific recipients. You can also withdraw consent for future collection or sharing, or submit an opt-out request yourself or through an authorized agent. Email dev@centurionmovement.com or write to our mailing address below. We will verify your identity or the agent’s authority as appropriate to the request; do not send a password. You do not need to create an account to make a request.
We respond without undue delay and within the deadlines that apply. Consumer health-data requests are handled within 45 days, with an additional 45 days only where permitted and with an explanation before the first period ends. If a request is denied, reply to appeal; we will explain the appeal decision within 45 days. Other applicable laws may require a shorter response.
When you withdraw consent, we stop the processing that depended on that consent as soon as practicable. Where Oregon law applies, this must occur within 15 days of receiving the withdrawal. The web control pauses new health-data service requests and scheduled processing for your shared account. A request already running may finish, and the control cannot recall information already sent to a provider. Withdrawal does not automatically erase saved records; you can also request deletion. Privacy requests, export, deletion, and necessary account administration remain available without granting health-data permission again.
You may also contact your state privacy regulator. Washington users can submit a complaint to the Washington Attorney General. Oregon users can use the Oregon Department of Justice privacy complaint resources, including after an appeal is denied. We do not retaliate against you for using your privacy rights. If a feature needs information you choose not to provide, that feature may no longer work.
We treat the health information you provide as sensitive. The web companion asks for your affirmative choice before opening or saving health records with your account. The free starting guide uses your answers in your browser before that step. Optional Apple Health access requires its own device permission. Creating an account alone does not authorize health-data processing for unrelated purposes.
Nevada health-data requests
The categories, sources, uses, recipients, and request methods for consumer health data are described in our Consumer Health Data Privacy Policy. We process that information through electronic collection, account storage, calculations, optional AI estimation, and display or export of your records. Support and privacy requests may also be reviewed by an authorized person. We provide notice of material changes in the app or by email. The current website and companion do not enable third parties to track your health data across other websites or services.
Where Nevada health-data law applies, deletion and notification to recipients are due within 30 days after we authenticate the deletion request, subject to its permitted backup delay. This separate deadline is not extended by the ordinary 45-day request-response period. We apply any shorter requirement that also governs the request.
You can request review or correction and appeal a denial by replying to dev@centurionmovement.com. If an appeal is denied, you may contact the Nevada Attorney General.
Protecting your information
The service uses HTTPS, account authentication, and access controls designed to restrict personal records to the appropriate account and authorized service operations. No website, device, or online service can guarantee perfect security. These statements are not a security certification or a claim that the consumer companion is a HIPAA-covered medical service.
Use a unique password, protect your device, and contact dev@centurionmovement.com if you suspect unauthorized access. Reports, exports, and screenshots that you choose to share may contain sensitive information; review them before sharing.
Adults only
The service is intended for people 18 and older. We do not knowingly collect information from children. If you believe a child has provided personal information, contact us so we can investigate and handle deletion appropriately.
Changes and contact
We update this policy when practices change and revise the date above. We will provide additional notice and obtain new permission where required before using information for a materially different purpose.
Centurion Movement, LLC, 421 West 3rd Street Apartment 1215, Austin, TX 78701. Email: dev@centurionmovement.com.
For help using the service or making a privacy request, including an accessible format or an alternative to an account control, email dev@centurionmovement.com. Tell us the page or task you need help with and your preferred way to receive a response; you do not need to disclose a diagnosis. This contact is also available for accessibility feedback.