Legal

Privacy Policy

Last updated: March 2026

1. What data we collect

We collect your email address and name when you register. When you upload your DNA file, we extract only the rsID and genotype columns needed to generate your report. We do not store your raw DNA file after processing.

2. How we use your data

Your genetic data is used solely to generate your personalized nutrition and supplement report. Your email is used to send you your report, account notifications, and (if you opt in) updates when your report changes. We do not use your data for advertising, profiling, or any commercial purpose beyond delivering your results.

3. Who we share data with

We do not sell or share your personal or genetic data with any third party. We use Stripe to process payments — they handle payment data under their own privacy policy and receive no genetic information. We use Supabase for secure database hosting within the EU.

4. Data retention

Your account data and report are retained for as long as your account is active. If you delete your account, all personal data and genetic data is permanently deleted within 30 days.

5. Your rights (GDPR)

If you are based in the EU, you have the right to access, correct, or delete your personal data at any time. You can request a copy of your data or ask us to delete everything by contacting us via the contact form. We will respond within 30 days.

6. Security

All data is encrypted in transit (TLS) and at rest. Access to your data is restricted to the systems required to deliver your report. We conduct regular security reviews.

7. Cookies

We use a single session cookie to keep you logged in. We do not use tracking cookies, analytics cookies, or advertising cookies.

8. Changes to this policy

We will notify you by email at least 14 days before any material changes to this policy take effect.

9. Contact

For any privacy-related questions or data requests, use the contact form at genika.com/contact.