Privacy Policy

Last updated: January 2, 2026

1. Introduction

ilera ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and related services (the "Service").

Please read this Privacy Policy carefully. By using the Service, you agree to the collection and use of information in accordance with this policy.

2. Information We Collect

2.1 Information You Provide

When you create an account or use our Service, we may collect:

  • Account information: Name, email address, and profile picture (provided through Google or Apple Sign-In)
  • Professional information: Your healthcare role (e.g., pharmacist, doctor, nurse, student)
  • Waitlist information: Email address when you join our waitlist

2.2 Information Collected Automatically

When you use our Service, we may automatically collect:

  • Device information: Device type, operating system, and unique device identifiers
  • Usage data: Features accessed, search queries, and interaction patterns
  • Log data: IP address, access times, and app crashes or errors

2.3 Information We Do NOT Collect

We do not collect patient data

ilera is designed as a clinical reference tool. We do not collect, store, or process any patient health information, medical records, or personally identifiable patient data.

3. How We Use Your Information

We use the information we collect to:

  • Provide, maintain, and improve the Service
  • Create and manage your account
  • Process subscriptions and payments
  • Personalize your experience based on your healthcare role
  • Send you updates, security alerts, and support messages
  • Analyze usage patterns to improve our features
  • Detect, prevent, and address technical issues
  • Comply with legal obligations

4. Data Storage and Security

Your data is stored securely using Supabase, a trusted cloud database provider. We implement appropriate technical and organizational measures to protect your personal information, including:

  • Encryption of data in transit and at rest
  • Secure authentication via Google and Apple Sign-In
  • Regular security assessments and updates
  • Access controls limiting who can view your data

5. Data Sharing and Disclosure

We do not sell your personal information. We may share your information only in the following circumstances:

  • Service providers: Third-party vendors who assist in operating our Service (e.g., cloud hosting, analytics)
  • Legal requirements: When required by law, court order, or government request
  • Safety: To protect the rights, property, or safety of ilera, our users, or others
  • Business transfers: In connection with a merger, acquisition, or sale of assets

6. Third-Party Services

Our Service integrates with the following third-party services:

  • Google Sign-In: For authentication (governed by Google's Privacy Policy)
  • Apple Sign-In: For authentication (governed by Apple's Privacy Policy)
  • Supabase: For data storage and authentication
  • RevenueCat: For subscription management
  • OpenAI: For AI-powered clinical assistant features (Pro tier only)

These services have their own privacy policies, and we encourage you to review them.

7. Your Rights

Depending on your location, you may have the following rights regarding your personal information:

  • Access: Request a copy of the personal information we hold about you
  • Correction: Request correction of inaccurate or incomplete information
  • Deletion: Request deletion of your personal information
  • Portability: Request a copy of your data in a portable format
  • Objection: Object to certain processing of your information

To exercise any of these rights, please contact us at hello@ilerarx.app.

8. Data Retention

We retain your personal information for as long as your account is active or as needed to provide you with the Service. If you delete your account, we will delete or anonymize your personal information within 30 days, unless we are required to retain it for legal purposes.

9. Children's Privacy

The Service is not intended for use by anyone under the age of 18. We do not knowingly collect personal information from children. If you believe we have collected information from a child, please contact us immediately.

10. International Data Transfers

Your information may be transferred to and processed in countries other than your country of residence. These countries may have different data protection laws. By using our Service, you consent to such transfers.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the new policy on this page and updating the "Last updated" date. We encourage you to review this policy periodically.

12. Contact Us

If you have any questions about this Privacy Policy or our data practices, please contact us at:

Email: hello@ilerarx.app