Consumer Health Data Privacy Policy

Grounding LLC · Effective July 21, 2026

This is Kite’s dedicated policy for “consumer health data.” It describes how Kite (operated by Grounding LLC) collects, uses, shares, and protects consumer health data and the rights you have over it. It is provided to meet Washington’s My Health My Data Act and similar consumer-health-data laws (including Nevada’s and Connecticut’s), and it supplements our Privacy Policy. We are not a HIPAA covered entity; we protect this data under these consumer laws and the FTC Health Breach Notification Rule.

What we mean by consumer health data

Information, linked or reasonably linkable to you, that identifies your (or a person you manage care for) past, present, or future physical or mental health status. For Kite, that is the health context you put in your texts and the few basics you ask us to remember.

Categories of consumer health data we collect, and why

We collect the following categories, in each case to provide the service you asked for:
  • Health information you share in conversation — symptoms, conditions, medications and doses, allergies, vaccines, providers you see, and the contents of bills, lab results, or insurance documents you choose to send — so your agent can remember it, answer your questions with educational context, and help with logistics.
  • Photos and voice notes you choose to send (for example, a skin photo), stored as part of your record so your agent has the context you gave it.
  • Measurements and vitals you choose to log over time (for example, blood pressure, weight, blood sugar, or lab values), kept as a trend so your agent can show changes and help you prepare for visits.
  • A coarse demographic baseline you ask us to remember — your general home area (city and state), your year of birth, and, only when relevant to a screening, your sex — used to help find care near you and to surface age- and sex-appropriate preventive-screening information.
  • Care logistics you ask us to handle — reminders, referrals, and appointments (including, if you connect it, the calendar entries Kite adds and your free/busy availability) — used to carry out the tasks you request.
We deliberately keep the baseline coarse. We do not collect or store your precise geolocation, street address, ZIP code, or full date of birth, and we do not track your device location.

Categories of sources

We collect consumer health data from one source: you, directly — the text messages, photos, voice notes, and documents you send us, and the consent and details you provide at signup. We do not buy consumer health data about you, and we do not obtain it from data brokers.

How we use it

To provide the service you asked for: to remember your information so you don’t repeat it, answer your health questions with educational context, help find care near you, surface age- and sex-appropriate preventive-screening information, and run the reminders, appointments, and logistics you request. A small number of authorized team members may also review conversations when needed to support, troubleshoot, or secure the Service, under access controls, confidentiality obligations, and access logging. Separately, and only with your opt-in consent (we ask you directly, saying no changes nothing, and you can withdraw at any time), our team may review conversations to improve the Service, assisted by an AI analysis tool that is contractually barred from training on your data. We do not use your consumer health data for advertising, for profiling to serve ads, to train generalized AI models, or for any unrelated purpose.

Whether we sell or share consumer health data

We do not sell your consumer health data, and we never seek “authorizations” to sell it. We do not share it with advertisers, data brokers, or affiliates for marketing.

We share consumer health data only with the service providers (processors) that operate the Service on our behalf, by contract and strictly to deliver it. The categories of third parties are:

  • Cloud hosting, file storage, and database providers that store the data (Amazon Web Services; Supabase; Railway).
  • AI model-processing providers that generate your agent’s replies and, only if you separately opt in, assist our team's review of conversations to improve the Service (Amazon Web Services / Amazon Bedrock, and Anthropic); both operate under commercial terms that prohibit using your messages to train their models.
  • Messaging providers that deliver the texts between you and your agent (Twilio for SMS; Sendblue for iMessage).
  • Where relevant to a task you request: a transcription and email provider for your own voice notes and documents (Amazon Web Services), and, only when you ask Kite to book an appointment, a browser-automation provider (Browserbase) and a computer-use AI model (Anthropic or OpenAI) used to submit the booking details you authorize (such as your name and phone number, plus your date of birth or insurance if the office requires them) to a provider’s scheduling page.
  • When you ask Kite to find or compare nearby care: Google’s Places service, which receives a provider’s name and address (never your health data) and returns that office’s public ratings and reviews.
  • When you ask to see what a condition looks like: Wikimedia Commons, which receives only the condition name (never your health data) and returns a public medical illustration.
  • If you connect Google Calendar: Google, limited to the appointments Kite adds and your free/busy availability, used only to provide those features. If you connect Gmail: Google, used only to send the specific emails you approve from your own address (a send-only permission; Kite cannot read your inbox).
  • Product-analytics and error-monitoring providers that receive only event counts and technical diagnostics — never the content of your messages or your health data.

When a question needs current information, a third-party search provider receives only a generalized query with your name and identifying details removed — not your full messages. Where we work with de-identified data, we commit to never attempt to re-identify it, and we require the same commitment from anyone who receives it. Grounding LLC has no corporate affiliates with whom we share consumer health data. We do not use geofences around any location that provides in-person health services.

Consent

We ask for your explicit opt-in consent to collect and use your consumer health data during signup, before we collect it, and we record that consent. We will not collect or share consumer health data beyond what is necessary to provide the Service you asked for without your separate consent, and we will never sell it. You may withdraw consent at any time (see Your rights).

How long we keep it

For as long as your account is active, so your agent can remember it for you. Raw message transcripts and operational logs age out on a rolling basis; your distilled health memory, records, photos, and logs persist until you delete them or close your account. When you delete data, it also ages out of routine encrypted backups within 30 days.

Your rights

At any time, you can:
  • Confirm whether we collect, share, or sell your consumer health data, and access it.
  • Obtain a copy of your consumer health data.
  • Obtain a list of all third parties with whom we have shared your consumer health data, with a way to contact them.
  • Correct it — just tell your agent, and it updates.
  • Delete it. Text DELETE to your agent and your messages, health memory, saved basics, photos, logs, reminders, and calendar events are erased from our systems and from our encrypted backups within 30 days, and we direct our service providers to delete it as well.
  • Withdraw your consent to our collection and sharing of your consumer health data.
  • Appeal a denial of any of these requests.

To exercise any right, text your agent or email privacy@grounding.dev. We will verify your request (typically by confirming control of your account phone number) and respond within the timeframes the applicable law requires. An authorized agent may submit a request on your behalf with proof of authorization. If we deny a request, you may appeal by replying with “Appeal” in the subject line; if we deny an appeal, you may complain to your state Attorney General.

Security

We restrict access to your consumer health data to what is needed to run the Service, protect it with encryption in transit and at rest, and keep the demographic basics coarse on purpose so that, even in the unlikely event of a breach, the data is far less identifiable. If a breach affecting your health data occurs, we will notify you and the Federal Trade Commission (and, where required, the media) as the FTC Health Breach Notification Rule requires.

Contact

Grounding LLC · Texas, USA · privacy@grounding.dev