Suppligo — Consumer Health Data Privacy Policy

Suppligo — Consumer Health Data Privacy Policy

Suppligo

Suppli is a supplement-intake tracking bot operated by a small independent team. This policy describes how we handle your consumer health data, as defined under Washington's My Health My Data Act.

Categories of consumer health data we collect

  • Supplements you track — their purpose and dose
  • Your intake and adherence history
  • Menstrual cycle data — only if you enable cycle tracking

Sources of this data

Directly from you — through manual entry in the bot, files you choose to upload, or the Suppli web app inside Telegram.

How we use it

To send you reminders, track your progress, and provide optional AI-generated tips. On the paid plan those tips are switched on for you when it starts, so they run without you asking; each can be turned off in /settings.

Categories of health data we share

We share your supplement names, purposes, doses, and adherence with our AI text-processing provider to power import and AI features. We do NOT share your cycle-tracking entries (the dates and cycle day you log) with anyone. If you import a plan file that mentions cycle phases, that text is processed by our AI provider as part of the file.

Categories of third parties and affiliates we share with

  • AI text-processing provider (OpenAI, USA) — receives supplement names, purposes, doses, and adherence; does not receive cycle data, your name, or your Telegram ID
  • Weather provider (OpenWeatherMap, USA) — receives only your city name, when morning greetings with a forecast are on; no identifier, no supplements, no health data
  • Cloud hosting provider (Railway)
  • Messaging platform (Telegram) — delivers messages

We have no corporate affiliates. We do NOT sell consumer health data and we do NOT share it for advertising.

We collect your consumer health data only after you give consent through a clear affirmative act. On your first /start, before any health data is collected, the bot shows a consent screen with a prominent link to our Privacy Policy; you must tap 'I agree to processing my health data' to proceed. We do not bundle this consent into any general terms of use. The same consent is required before you add a supplement, import a plan, or see anything in the Suppli web app — in the web app the check runs on our server, on every request.

Menstrual cycle data has its own separate consent: turning on cycle tracking shows a dedicated consent screen, and we process cycle data only after you tap 'I consent to processing my cycle data.' We record each consent together with the policy version and the date you granted it, and you can withdraw it at any time (see Your rights).

Your rights

You can access and export your data with /mydata at any time, directly in the bot. Because we process your consumer health data only with your consent, withdrawing it means we stop processing and delete that data — so withdrawing consent and deleting your data are the same action here, done with /deletedata. You can withdraw consent for cycle tracking on its own, without deleting anything else, by turning cycle tracking off — on any plan, paid or free. When you do, we erase your cycle data: the date your cycle started, the phase ranges set on your supplements, the notes on those supplements, and the day-by-day record of which doses were expected. The bot lists what will go before it deletes anything. You may request the list of third parties we have shared your data with via /feedback. We will not discriminate against you for exercising these rights.

Three limits, stated plainly. /deletedata erases your data from our database, but three things stay behind it. Payment records — we have to be able to account for payments, and each record carries the reference of that purchase, which contains your Telegram ID. A minimal stub of your account — its internal number, your Telegram ID, your language, and the date you first started the bot; your name, username, city, time zone, and everything you tracked are erased. Neither holds consumer health data. Technical logs. Separately from your account, our hosting platform keeps short-term technical logs of the service running — errors, restarts, internal account numbers, and, for the Suppli web app, requests recorded without your IP address, without the contents of the request and without the parameters in its web address. They hold no consumer health data, are kept for a limited period (7 days) and then deleted, are stored outside your account record, and are never used to build a profile of you.

Appeals

Your rights to access, export, and delete your data and to withdraw consent work instantly in the bot (/mydata, /deletedata). If you believe we have not fulfilled your request, you can appeal by messaging us via /feedback; we will review the appeal and respond in writing within 45 days. If we deny your appeal, we explain why and give you a way to submit a complaint to the Washington State Attorney General at atg.wa.gov/file-complaint.

Data security

We use reasonable measures to protect your consumer health data and to limit access to it. The Suppli web app — the page that opens inside Telegram — runs on the same server as the bot and adds no new recipient of your data. Traffic to it travels over TLS (HTTPS). Every request it makes is authenticated with the signed sign-in data Telegram issues for your session: our server verifies its HMAC signature with the bot's own key and refuses anything that fails to verify or is more than 24 hours old. The page loads no third-party scripts — no analytics, no advertising, no error tracking, no web fonts — and a Content Security Policy sent with every response limits it to code from our own server and Telegram's own platform SDK.

Age

This service is for adults 18+ and is not intended for anyone under 18.

Contact

For any privacy request, email supplitrack.info@gmail.com or use the /feedback command in the bot. Suppli is run by a small independent team of two founders (joint controllers) from Serbia.

Last updated: 3 September 2026.

Report Page