Foundation Health

Privacy Policy

Effective date: March 1, 2026

What information we collect

We collect information you provide directly, including account details (such as name and email), responses you submit through health assessments, contact form messages, and waitlist signups. When biomarker testing is available, we will collect and display lab results connected to your account.

How we use your information

We use data to operate Foundation Health, generate your personalized health reports, improve product quality and safety, communicate important service updates, and respond to support requests. We may use de-identified and aggregated insights to improve our models and platform performance.

Health information and clinical context

Foundation Health processes health-related information to provide risk intelligence and educational insights. We treat this data with heightened care and limit access to personnel and systems that need it to deliver the service. Foundation Health is a health technology company and may not be a HIPAA covered entity in all contexts, but we apply privacy and security controls consistent with handling sensitive health data.

How we protect your information

We use administrative, technical, and organizational safeguards to protect your data, including access controls, encryption in transit, and secure infrastructure practices. No internet-based system is perfectly secure, but we continually monitor and improve our protections.

Data retention

We retain information for as long as needed to provide the service, meet legal obligations, resolve disputes, and enforce our agreements. We may retain de-identified or aggregated data for product analytics and model quality improvements.

Your rights: access, correction, and deletion

You can request access to your personal data, ask us to correct inaccurate information, or request deletion of your account data by contacting us at hello@foundationalhealth.ai. We may retain certain records where required by law or for legitimate security and compliance purposes.

Cookies and analytics

We use cookies and similar technologies to keep you signed in, understand site usage, and improve performance. We also use standard web analytics tools to understand traffic and product behavior.

Third-party services

Foundation Health relies on trusted service providers to operate the platform, including Vercel (hosting), Supabase (database), and Anthropic Claude models (report generation and processing). These providers process data under contract for service delivery purposes.

Data sharing commitments

We do not sell personal data. We do not share individual health data with employers. Employer features, where offered, are designed to use anonymized or aggregated reporting rather than identifiable individual records.

Children's privacy

Foundation Health is not intended for people under 18. We do not knowingly collect personal information from children under 18.

For Users in the European Economic Area

If you are in the EEA, we process personal data based on lawful bases that include performance of a contract, legitimate interests, legal obligations, and your consent where required. Your data may be processed or stored outside the EEA, including in the United States, using appropriate safeguards and contractual protections. You have the right to lodge a complaint with your local supervisory authority. For data protection questions, contact our privacy team at hello@foundationalhealth.ai.

Changes to this policy

We may update this Privacy Policy from time to time. If we make material changes, we will update the effective date and post the revised policy on this page.

Contact us

Questions about this policy or your data can be sent to hello@foundationalhealth.ai.

This privacy policy is provided for transparency. For specific legal questions about your data, contact us at hello@foundationalhealth.ai.