Nevada Consumer Health Data Privacy Notice
Applies to: consumers in the State of Nevada (Nevada SB 370, effective 31 March 2024). This notice supplements our Privacy Policy; where they differ for Nevada consumers, this notice governs the consumer-health-data points it covers.
Nevada's consumer-health-data law (SB 370) gives Nevada consumers specific rights over "consumer health data" and places obligations on us as a "regulated entity." This notice explains how Me Journal (operated by Astronero Ltd) handles that data. Our practices mirror those in our Washington Consumer Health Data Privacy notice; this notice states the Nevada-specific position.
1. Consumer health data we process
When you choose to use them, we process data that identifies your past, present or future health status, including:
-
Body Compass — menstrual-cycle, fertility-sign, pregnancy/postpartum and symptom data you log;
-
Mood logs and the wellbeing content of your journal;
-
a health profile (e.g. allergies, blood type) if you choose to add one;
-
your medication register and dose log (medication name, dose, schedule and category — e.g. contraception, hormones, fertility, mental health) if you use the medication tracker;
-
wellbeing check-in results — the answers and score of the Edinburgh Postnatal Depression Scale (EPDS) questionnaire offered in postpartum mode, if you take it;
-
inferences we derive from the above (e.g. cycle predictions, fertile window) — these are calculated, not collected, but we treat them as consumer health data too.
Most of this is end-to-end encrypted on your device (see §4). We process it only to provide the features you have turned on.
2. We do NOT collect
- Biometric identifiers, genetic data, or pharmacy/prescription-fill records.
- Precise geolocation for tracking, profiling, advertising, or any routine or background purpose. The single exception is the personal-safety (SOS) feature: when you actively trigger an SOS alert and choose to share your location, the app captures one location fix, stored only while the alert is live, shared with the emergency contacts you chose, and deleted when you stand the alert down. It is never used for any other purpose.
3. No sale of consumer health data
We do not sell your consumer health data, and we do not share it with advertisers, data brokers, or third-party analytics platforms. Under SB 370 a "sale" requires your written authorization — we do not seek one, because we do not sell this data. We also do not use it to serve advertising or to train AI models without your separate, specific consent.
In the current version of Me Journal we also do not share your Body Compass health data with any other user, including a partner. Body Compass partner sharing is disabled by default (see ADR-2026-06-15); the previous partner cycle-code sharing feature is turned off and retained only as dormant, configurable functionality. It would become available again only if explicitly re-enabled under a future configuration, which is subject to updated authorisation, a refreshed data-protection impact assessment, and advance notice to you. We likewise do not send your Body Compass health data to any AI/LLM for processing in the current version.
One AI feature does use mood data. The AI Recommendation section of the mood screen sends your recent mood ratings (the one-word labels, e.g. "happy"), your current mood and your check-in streak count — with no name, email or account identifier attached — to our servers, where our AI service provider (OpenAI, acting as our processor) generates two short wellbeing suggestions. Your journal text, mood notes and Body Compass content are never included. This data is not used for advertising and, under OpenAI's API terms, is not used to train OpenAI's models. If the AI service is not available, generic non-personalised suggestions are shown instead.
4. Encryption
Body Compass entry content, journal content, mood notes and your health profile are end-to-end encrypted by default (AES-256-GCM under a key derived from your vault password). Me Journal staff cannot read them — only you can decrypt them on your devices. In the current version (private Body Compass scope — ADR-2026-06-15), partner sharing is disabled by default, and your Body Compass entry content — including whether a given day is a period day — is end-to-end encrypted on your device whenever your vault is set up and unlocked when you save.
A small, defined set of the consumer health data listed in §1 is not end-to-end encrypted. It is held on our servers encrypted at rest with our provider's keys — meaning we could technically read it — because reminder, calendar and prediction features need it server-side:
- the date and timestamps of each Body Compass entry — the fact that you logged something on a day, not what;
- your tracker settings — the tracking mode you chose (cycle, perimenopause, menopause, pregnancy or postpartum), optional anchor dates (e.g. pregnancy due date, delivery date) and the derived average cycle and period lengths;
- your medication register — name, dose, schedule and category are server-readable so missed-dose reminders can run; the free-text reason and notes fields are end-to-end encrypted;
- EPDS wellbeing check-in answers and scores (the postpartum questionnaire);
- mood check-in ratings and their timestamps (a note attached to a check-in is end-to-end encrypted);
- a Body Compass entry saved while your vault is locked or not yet set up, which is stored server-encrypted rather than end-to-end encrypted.
If partner sharing were ever re-enabled under a future configuration — subject to updated authorisation, a refreshed data-protection impact assessment and advance notice to you — you would be told at the point of sharing exactly how any data you chose to share is handled.
5. No geofencing
We do not create, use or sell a "geofence" around any health-care facility (or anywhere else) to identify or track consumers, send notifications, or build profiles. Me Journal collects no precise geolocation at all outside the single user-triggered SOS fix described in §2.
6. Your Nevada rights
Nevada consumers may:
- Confirm whether we are collecting, sharing or selling your consumer health data and access it;
- Obtain a list of the third parties with whom we have shared or to whom we have sold your consumer health data — today that list is empty: we have never sold it, and we do not share it with third parties (our processors, listed on our sub-processors page, act only on our instructions);
- Request deletion of your consumer health data;
- Withdraw consent to our collection or sharing of it.
To exercise these rights, email privacy@me-journal.com or use the app: Settings → Privacy & Security → Export my data for a copy of your data, and Settings → Danger Zone → Delete account for deletion. We respond within 45 days of receiving a verifiable request; where reasonably necessary we may extend once by a further 45 days, and we will tell you if we do. If we decline a request we will explain why, and you may appeal by replying to our response; if we deny your appeal, we will give you a way to raise it with the Office of the Nevada Attorney General (§7). Deleting your account erases all of this data (see Privacy Policy §7.1).
7. Enforcement
SB 370 is enforced by the Nevada Attorney General; it does not create a private right of action. If you believe we have not complied, you may contact us at privacy@me-journal.com and you may also contact the Office of the Nevada Attorney General.
8. Contact
Astronero Ltd, a private company limited by shares registered in England & Wales (Companies House number 15024376) — privacy@me-journal.com.