Consumer Health Data Privacy Policy
Last updated: 28 September 2026
This policy is published by HYSA TECH SH.P.K. (Hysa Tech, "we") for Amberjar (the "App") under Washington's My Health My Data Act, Nevada's consumer health data law, and similar laws. It supplements the Amberjar Privacy Policy. Amberjar tracks when things expire, including medicines. Most of what it handles never reaches us at all, and this page says exactly what does.
1. Consumer Health Data We Handle, and Why
- Medicines you add to your shelf: their names, brands, expiry dates, lot numbers, notes, photos and where you keep them, and what you choose to record about them: what each is for, its form and strength, who it is for, how to take it and whether it is a prescription. Purpose: to show you what expires when, to remind you ahead of time, and to keep these details at hand for you. These are stored only on your iPhone. We do not collect or receive them.
- Photos of medicine labels that your iPhone cannot read itself. Purpose: to read the product name and date for you, once. A downsized copy is sent to our service provider, Google (Gemini, through Firebase), to be read and is not kept by us or by the App.
- Your reminder settings for medicines, stored only on your iPhone, to schedule reminders on the device.
We do not collect health records, diagnoses, symptoms, location data, biometric data or data about reproductive or sexual health, and we do not use any data to infer a health condition.
2. Sources
The only source is you: what you photograph, scan or type into the App. We do not buy or receive consumer health data from anyone else.
3. Sharing
The only consumer health data that leaves your iPhone is a label photo sent to be read, as described in section 1. It goes to one category of recipient:
- Service provider (processor): Google LLC, which runs the Gemini model through Firebase AI Logic on our behalf, only to read the label, and which may retain a request for a limited period only to detect abuse and meet legal obligations.
We have no affiliates that receive consumer health data. We never share consumer health data with RevenueCat, Meta or any advertising or analytics provider, and we do not sell consumer health data. The App's usage analytics and crash reports are built so that they cannot tell a medicine apart from anything else on your shelf. We do not use geofencing around any health care location.
4. Your Rights
You have the right to:
- confirm whether we collect, share or sell your consumer health data, and access it, including a list of the third parties that received it;
- withdraw your consent;
- have your consumer health data deleted;
- appeal our decision on any request.
Because your medicines are stored only on your iPhone, you can access, export and delete them yourself at any time: delete them in the App, export your shelf from Settings, or delete the App. You can withdraw consent at any time by typing medicines in or adding them by their code instead of photographing the label; then no label photo leaves your iPhone.
To make a request to us, write to [email protected]. We may ask for information to confirm the request is yours. We respond within 45 days, and if we need up to 45 more days, we tell you why within the first 45. We act on deletion requests across our systems and pass them on to our service providers. We do not hold your medicines or your label photos, so in most cases our answer will confirm that we have nothing stored about you.
If we decline your request, you can appeal by replying to our answer within 45 days with the word "Appeal". We decide appeals within 45 days and explain our decision in writing. If your appeal is denied, you may contact the Washington State Attorney General at atg.wa.gov/file-complaint, or the attorney general of your state.
5. Contact
HYSA TECH SH.P.K. (Hysa Tech), Tirana, Albania. Email: [email protected].
