Consumer Health Data Privacy Policy
Grounding LLC · Effective July 21, 2026
This is Kite’s dedicated policy for “consumer health data.” It describes how Kite (operated by Grounding LLC) collects, uses, shares, and protects consumer health data and the rights you have over it. It is provided to meet Washington’s My Health My Data Act and similar consumer-health-data laws (including Nevada’s and Connecticut’s), and it supplements our Privacy Policy. We are not a HIPAA covered entity; we protect this data under these consumer laws and the FTC Health Breach Notification Rule.
What we mean by consumer health data
Categories of consumer health data we collect, and why
- Health information you share in conversation — symptoms, conditions, medications and doses, allergies, vaccines, providers you see, and the contents of bills, lab results, or insurance documents you choose to send — so your agent can remember it, answer your questions with educational context, and help with logistics.
- Photos and voice notes you choose to send (for example, a skin photo), stored as part of your record so your agent has the context you gave it.
- Measurements and vitals you choose to log over time (for example, blood pressure, weight, blood sugar, or lab values), kept as a trend so your agent can show changes and help you prepare for visits.
- A coarse demographic baseline you ask us to remember — your general home area (city and state), your year of birth, and, only when relevant to a screening, your sex — used to help find care near you and to surface age- and sex-appropriate preventive-screening information.
- Care logistics you ask us to handle — reminders, referrals, and appointments (including, if you connect it, the calendar entries Kite adds and your free/busy availability) — used to carry out the tasks you request.
Categories of sources
How we use it
Whether we sell or share consumer health data
We do not sell your consumer health data, and we never seek “authorizations” to sell it. We do not share it with advertisers, data brokers, or affiliates for marketing.
We share consumer health data only with the service providers (processors) that operate the Service on our behalf, by contract and strictly to deliver it. The categories of third parties are:
- Cloud hosting, file storage, and database providers that store the data (Amazon Web Services; Supabase; Railway).
- AI model-processing providers that generate your agent’s replies and, only if you separately opt in, assist our team's review of conversations to improve the Service (Amazon Web Services / Amazon Bedrock, and Anthropic); both operate under commercial terms that prohibit using your messages to train their models.
- Messaging providers that deliver the texts between you and your agent (Twilio for SMS; Sendblue for iMessage).
- Where relevant to a task you request: a transcription and email provider for your own voice notes and documents (Amazon Web Services), and, only when you ask Kite to book an appointment, a browser-automation provider (Browserbase) and a computer-use AI model (Anthropic or OpenAI) used to submit the booking details you authorize (such as your name and phone number, plus your date of birth or insurance if the office requires them) to a provider’s scheduling page.
- When you ask Kite to find or compare nearby care: Google’s Places service, which receives a provider’s name and address (never your health data) and returns that office’s public ratings and reviews.
- When you ask to see what a condition looks like: Wikimedia Commons, which receives only the condition name (never your health data) and returns a public medical illustration.
- If you connect Google Calendar: Google, limited to the appointments Kite adds and your free/busy availability, used only to provide those features. If you connect Gmail: Google, used only to send the specific emails you approve from your own address (a send-only permission; Kite cannot read your inbox).
- Product-analytics and error-monitoring providers that receive only event counts and technical diagnostics — never the content of your messages or your health data.
When a question needs current information, a third-party search provider receives only a generalized query with your name and identifying details removed — not your full messages. Where we work with de-identified data, we commit to never attempt to re-identify it, and we require the same commitment from anyone who receives it. Grounding LLC has no corporate affiliates with whom we share consumer health data. We do not use geofences around any location that provides in-person health services.
Consent
How long we keep it
Your rights
- Confirm whether we collect, share, or sell your consumer health data, and access it.
- Obtain a copy of your consumer health data.
- Obtain a list of all third parties with whom we have shared your consumer health data, with a way to contact them.
- Correct it — just tell your agent, and it updates.
- Delete it. Text DELETE to your agent and your messages, health memory, saved basics, photos, logs, reminders, and calendar events are erased from our systems and from our encrypted backups within 30 days, and we direct our service providers to delete it as well.
- Withdraw your consent to our collection and sharing of your consumer health data.
- Appeal a denial of any of these requests.
To exercise any right, text your agent or email privacy@grounding.dev. We will verify your request (typically by confirming control of your account phone number) and respond within the timeframes the applicable law requires. An authorized agent may submit a request on your behalf with proof of authorization. If we deny a request, you may appeal by replying with “Appeal” in the subject line; if we deny an appeal, you may complain to your state Attorney General.