Veni
HomeTerms of ServicePrivacy Policy

Veni Privacy Policy

Effective Date: August 31, 2026
Last Updated: August 31, 2026

Carlos Navas, an individual doing business as Veni ("Veni," "we," "us," or "our") built Veni (the "App") to help you collect your own lab results and medical documents in one place and track what's in them over time. This Privacy Policy explains what information we collect, why, how we use and share it, and the choices and rights you have — including the specific disclosures required for consumer health data under Washington's My Health My Data Act and similar state laws.

If you do not agree with this Policy, please do not use the App.


1. Notice at Collection: Consumer Health Data

Several U.S. states (Washington, Nevada, Connecticut, and others) now regulate "consumer health data" separately from general personal information, whether or not a company is a HIPAA-covered entity. Veni is not a HIPAA-covered entity or a healthcare provider — HIPAA generally applies to doctors, insurers, and clearinghouses, not to a consumer app like this one. We are choosing to apply health-data-grade protections anyway, because that's what the information in this App deserves.

Categories of consumer health data we collect:

CategoryExamples
Documents you importLab reports, imaging reports, and other medical PDFs you upload from Google Drive, your device's Files app, or a URL
Extracted health metricsBiomarker names, values, units, reference ranges, and collection dates parsed out of those documents
Patient profilesNames you assign to the people you're tracking (yourself and/or others, e.g. family members)
InferencesTrends we compute across your metrics over time (e.g. a value rising or falling between two dates)

Why we collect it: solely to provide the App's core function — importing, organizing, extracting, and displaying your own health documents and the trends within them back to you.

Sources: directly from you (the files you choose to import) and, if you connect it, from your Google Drive account (read-only, and only the files you explicitly select).

Categories of consumer health data we share, and with whom: we share the minimum necessary with the service providers listed in Section 4 ("Service Providers") strictly so they can perform services on our behalf (e.g., cloud hosting, document processing to extract metrics). We do not sell consumer health data. We do not share consumer health data with advertisers, data brokers, or anyone for advertising purposes, ever.

Your rights and how to exercise them: see Section 6. You can also reach us directly at carlosnavas1986@gmail.com.

Consistent with Washington's My Health My Data Act, we do not use geofencing around healthcare facilities to target ads, collect location data, or send notifications, and we have no plans to.


2. Information We Collect

2.1 Account information

When you sign in, we receive your name, email address, and a stable account identifier from whichever provider you choose:

  • Sign in with Apple — Apple may share your name and either your real email or a private relay address, per your choice.
  • Sign in with Google — Google shares your name, email, and profile identifier. If you also connect Google Drive to import files, this includes a read-only authorization scope limited to files you pick — we cannot browse, list, or access your Drive beyond what you explicitly select through Google's picker.

We use Firebase Authentication (a Google Cloud service) to manage the resulting session; your account is identified in our systems by the Firebase-issued identifier, not by a password we ever see or store.

2.2 Health documents and extracted data

The PDFs and other documents you import, plus the biomarker data (name, value, unit, reference range, date) our extraction process reads out of them. This is the core content of the App and the data described in Section 1.

2.3 Patient profiles

If you track more than one person (e.g., yourself and a family member), we store the name you give each patient profile and which documents/metrics you've assigned to them. We do not require or request separate identity verification for people other than the account holder.

2.4 Subscription and purchase information

We use RevenueCat and Apple's App Store/StoreKit to manage subscriptions. We receive your subscription tier (Free or Premium), renewal status, and purchase history from these providers. We do not receive or store your payment card details — those are handled entirely by Apple.

2.5 Usage and diagnostic information

To enforce fair-use import limits and to prevent abuse of our backend, we track how many documents you've imported in a given period, tied to your account identifier. We use Firebase App Check to verify that requests to our backend come from a genuine, unmodified copy of the App, rather than an automated script.

We do not use any analytics or advertising SDK — Firebase Analytics is explicitly disabled in our configuration, and no crash-reporting or advertising SDK is integrated into the App.


3. How We Use Information

We use the information above only to:

  1. Provide the App's core functionality — importing, storing, extracting, organizing, and displaying your health documents and metrics.
  2. Authenticate you and keep your account secure.
  3. Enforce the import limits attached to your subscription tier and process purchases/renewals.
  4. Detect, investigate, and prevent fraud, abuse, or security incidents.
  5. Provide customer support when you contact us.
  6. Comply with legal obligations.

We do not use your health data to train general-purpose AI models, and we do not use it for advertising, marketing profiling, or targeted ads of any kind — we don't run ads in the first place.


4. How We Share Information — Service Providers

We share the minimum information necessary with the following categories of service providers, each acting on our behalf under its own confidentiality and security obligations. We do not permit any of them to use your data for their own independent purposes.

Provider / CategoryPurposeWhat they receive
Firebase / Google Cloud (Auth, Functions, App Check)Authentication, backend processing, abuse preventionAccount identifier, document content during processing, device attestation signals
Google (Gemini API)Reads each document you import to extract structured biomarker data (name, value, unit, reference range, date)The document's content, sent for the duration of that single extraction request only
Google Sign-In / Google Drive APIAuthentication; reading files you explicitly selectProfile info; read-only access to selected Drive files
Apple (Sign in with Apple, App Store, StoreKit)Authentication; purchase processingProfile info per your Apple ID sharing choice; purchase/subscription events
RevenueCatSubscription management and entitlement trackingAccount identifier, subscription/purchase status

We do not sell your personal information or consumer health data. We do not share it with data brokers. We do not disclose it to advertisers.

We may disclose information if required to by law, subpoena, or other legal process, or if we believe in good faith it's necessary to protect the rights, property, or safety of Veni, our users, or the public — and, where legally permitted, we will attempt to notify you first.

If Veni is involved in a merger, acquisition, or asset sale, your information may be transferred as part of that transaction, subject to this Policy's commitments continuing to apply or you being notified of any change.


5. Data Security

  • Data in transit between the App and our backend is encrypted (TLS/HTTPS).
  • Backend access is gated by Firebase Authentication and Firebase App Check, which verifies requests originate from a genuine copy of the App.
  • Your imported documents, extracted metrics, and patient profiles are stored locally on your device (via Apple's SwiftData framework). Our servers process a document only transiently, for the seconds it takes to extract its data — we do not persist document content or extracted metrics in our backend database. Our backend does keep two small server-side records tied to your account: your monthly import count (to enforce fair-use limits) and your subscription tier — neither contains your health data itself.
  • Access to backend infrastructure is limited to personnel who need it to operate the service.

No method of transmission or storage is 100% secure, and we cannot guarantee absolute security. If we experience a breach affecting your consumer health data, we will notify you and any applicable regulators as required by law.


6. Your Privacy Rights

Regardless of where you live, we extend the following rights to all Veni users:

  • Right to know / access — what data we hold about you and how we use and share it.
  • Right to correct — inaccurate metrics can be fixed via the App's conflict-resolution tools, or by re-importing the source document; other inaccuracies, contact us.
  • Right to delete — see below.
  • Right to data portability — export your extracted metrics as a PDF report directly from the App at any time.
  • Right to opt out of sale/sharing — not applicable; we don't sell or share your data for cross-context advertising in the first place.
  • Right to non-discrimination — we will not deny you service, charge you a different price, or provide a different level of service because you exercised any of these rights.
  • Right to appeal — if we deny a rights request, you may appeal by replying to our denial email; if we uphold the denial, we'll explain how to escalate to your state Attorney General (for Washington residents) or applicable regulator.

How to exercise these rights:

  • In the App: Profile → Account → Delete Account… immediately and permanently deletes every patient, document, and health metric stored on your device; deletes the two server-side records described in Section 5 (your import-quota and subscription-tier records); deletes the sign-in account itself; and signs you out. This one step removes your data completely, both on-device and on our servers.
  • By email:carlosnavas1986@gmail.com — for any request the in-app tool doesn't cover, or if you no longer have access to the App.

We will verify your identity (typically via the email associated with your account) before fulfilling a request, and will respond within the timeframe required by applicable law (generally 45 days, with one possible 45-day extension for complex requests).


7. Data Retention

We retain your account and health data for as long as your account is active. If you delete your account, we remove the data described in Section 6 immediately upon your request; certain minimal records (e.g., billing history required for tax/accounting purposes, or records of a rights request itself) may be retained for the period required by law, then deleted.


8. Medical Disclaimer

Veni is not a medical device, and it does not provide medical advice, diagnosis, or treatment. The App is an organizational and informational tool. Document extraction is automated and can contain errors — misread values, wrong units, or misattributed dates. Always verify an extracted value against the original document (available in the App's built-in viewer) and consult a licensed healthcare professional before making any medical decision. Do not use the App for medical emergencies — call your local emergency number instead. See the Terms of Service for the full disclaimer.


9. Children's Privacy

Veni is not directed to, and we do not knowingly collect personal information from, children under 16. If you believe a child has provided us with personal information, contact us at carlosnavas1986@gmail.com and we will delete it.


10. Where We Operate

Veni is currently offered in the United States (including Puerto Rico), Canada, and Spanish-speaking Latin America: Mexico, Guatemala, Honduras, El Salvador, Nicaragua, Costa Rica, Panama, Colombia, Venezuela, Ecuador, Peru, Bolivia, Paraguay, Chile, Argentina, Uruguay, and the Dominican Republic. Your information is processed on servers located in the United States (Google Cloud's us-central1 region, via Firebase). By using the App, you consent to this transfer and processing.


11. Changes to This Policy

We may update this Policy from time to time. If we make a material change, we'll notify you in the App or by email before it takes effect, and update the "Last Updated" date above. Continuing to use the App after a change takes effect means you accept the updated Policy.


12. Contact Us

Carlos Navas, an individual doing business as Veni
Avenida Roosevelt, Edificio Sea Garden, Torre 1, Maldonado, Uruguay, ZC 20001
Email: carlosnavas1986@gmail.com

Washington residents may also contact the Washington State Attorney General's office regarding consumer health data concerns.

© 2026 Veni. All rights reserved.

Terms of ServicePrivacy Policy