Privacy Policy
Last Updated: November 3, 2025
Introduction
Lenzie ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and services.
1. Information We Collect
We collect information that you provide directly to us, including:
- Account Information: Email address, password (encrypted), date of birth
- Profile Information: Name, timezone, notification preferences
- Contact Lens Data: Brand, replacement schedule, start dates, eye assignments
- Eye Health Information: Appointment dates, eye doctor information, notes
- Usage Data: App interactions, features used, notification engagement
- Device Information: Device type, operating system, unique device identifiers
- Location Data: Timezone for accurate reminders (device-level only)
2. How We Use Your Information
We use your information for the following purposes:
- Provide and maintain the App's core functionality
- Send lens replacement and reorder reminders
- Track your wear streak and usage analytics
- Provide eye health tips and recommendations
- Customize content based on age (COPPA compliance)
- Improve and optimize the App experience
- Respond to customer support requests
- Send service-related notifications and updates
- Analyze usage patterns and app performance
- Comply with legal obligations
3. Data Storage and Security
Your data is stored securely using Supabase, a secure cloud database platform. We implement industry-standard security measures including:
- Encryption in transit (HTTPS/TLS)
- Encryption at rest for sensitive data
- Row-level security (RLS) policies
- Secure authentication with bcrypt password hashing
- Regular security audits and updates
However, no method of transmission over the internet is 100% secure. While we strive to protect your data, we cannot guarantee absolute security.
4. Data Sharing and Disclosure
We do NOT sell your personal information. We may share your information only in the following circumstances:
- Service Providers: Third-party services that help us operate the App (e.g., Supabase for database, Firebase for analytics)
- Analytics: Anonymized usage data with Firebase Analytics to improve the App
- Legal Compliance: When required by law, subpoena, or legal process
- Business Transfers: In the event of a merger, acquisition, or sale of assets
- With Your Consent: When you explicitly authorize us to share specific information
5. Third-Party Services
Lenzie uses the following third-party services:
- Supabase: Database and authentication (Privacy Policy: supabase.com/privacy)
- Firebase Analytics: Usage analytics (Privacy Policy: firebase.google.com/support/privacy)
- Affiliate Partners: VSP, eHealth (links only, no data sharing)
These services have their own privacy policies and data handling practices. We recommend reviewing their policies.
6. Children's Privacy (COPPA Compliance)
Lenzie complies with the Children's Online Privacy Protection Act (COPPA):
- Users under 13 are prohibited from creating accounts
- Users ages 13-17 have restricted access to affiliate content
- We do not knowingly collect data from children under 13
- Age verification is required during signup
- Sponsored content and advertisements are hidden for minors
If we discover that a child under 13 has provided personal information, we will delete it immediately.
7. Your Privacy Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of your personal data
- Correction: Update or correct inaccurate information
- Deletion: Request deletion of your account and data
- Portability: Export your data in a machine-readable format
- Opt-Out: Disable notifications and promotional content
- Withdrawal: Withdraw consent for data processing
To exercise these rights, contact us at support@lenzieapp.com or delete your account through the App settings.
8. Data Retention
We retain your personal information for as long as your account exists (has not been deleted) or as needed to provide services. When you delete your account:
- Personal data is permanently deleted within 30 days
- Anonymized analytics data may be retained for statistical purposes
- Backup copies are purged within 90 days
- Legal compliance data is retained as required by law
Inactive Accounts: Accounts that have not been accessed for 3+ years may be automatically deleted after providing 30 days' notice to your registered email address.
9. Cookies and Tracking
Lenzie uses local storage and session tokens to maintain your login state and app preferences. We use Firebase Analytics to collect anonymized usage data. You can disable analytics tracking in the App settings (Settings > Privacy > Analytics).
10. International Data Transfers
Your information may be stored and processed in the United States or other countries where Supabase and our service providers operate. By using Lenzie, you consent to the transfer of your information to countries outside your country of residence.
11. California Privacy Rights (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA):
- Right to know what personal information is collected
- Right to delete personal information
- Right to opt-out of sale (we do not sell your data)
- Right to non-discrimination for exercising your rights
To exercise these rights, contact us at support@lenzieapp.com.
12. European Privacy Rights (GDPR)
If you are in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR):
- Legal basis for processing: Consent, contract performance, legal obligations
- Right to access, rectification, erasure, and data portability
- Right to object to processing and withdraw consent
- Right to lodge a complaint with a supervisory authority
Contact us at support@lenzieapp.com to exercise your rights.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by:
- Posting the new Privacy Policy in the App
- Sending an email notification to your registered email
- Displaying an in-app notification
Your continued use of Lenzie after changes constitutes acceptance of the updated policy.
14. Do Not Track
Lenzie does not currently respond to "Do Not Track" (DNT) browser signals. However, you can opt out of analytics tracking in the App settings.
15. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us at:
Email: support@lenzieapp.com
Website: www.lenzieapp.com
For privacy-related inquiries, please include "Privacy Request" in the subject line.
By using Lenzie, you acknowledge that you have read and understood this Privacy Policy and agree to our data practices.