1. Who we are
HealMen is operated by Orhan Olgar (see Impressum). We take your privacy seriously. This policy explains what data we collect, why, and how it is protected.
2. Data we collect
We collect only what is necessary to run the service:
- Account data: email address and optional display name, used for login and personalisation.
- Progress data: lessons completed, streak, assessment results — stored to track your growth inside the app.
- Journal & reflection entries: private to you. We do not read, sell, or analyse these.
- Payment data: handled entirely by Stripe. We never see or store card numbers.
3. How we use your data
- To provide and improve the HealMen service.
- To send transactional emails (password reset, subscription receipts).
- We do not send marketing emails without explicit consent.
- We do not sell, share, or trade your data with third parties.
4. Data storage & security
Your data is stored on servers located in the EU. We use industry-standard encryption (HTTPS/TLS) for all data in transit. Passwords are hashed with bcrypt and never stored in plain text.
5. Your rights (GDPR)
You have the right to:
- Access the personal data we hold about you.
- Correct inaccurate data.
- Request deletion of your account and all associated data.
- Data portability — receive your data in a machine-readable format.
To exercise any of these rights, email hi@healmen.app.
6. Cookies & Analytics
We use the following cookies and similar technologies:
- Session cookie: required for login (set by NextAuth). Strictly necessary — no consent needed.
- Language preference: remembers your chosen language. Strictly necessary.
- Google Analytics (GA4): we use Google Analytics to understand how the site is used (page views, traffic sources). By default, GA4 runs in anonymous mode — no personal data is collected and IP addresses are anonymized. If you accept cookies via our consent banner, GA4 may store cookies for more detailed analytics. You can decline at any time.
No advertising cookies. No data is sold or shared with advertisers. You can withdraw your cookie consent at any time by clearing your browser storage or contacting us.