Privacy Policy
Last updated: May 19, 2026
1. Introduction
Buettner Labs LLC (“Buettner Labs,” “we,” “us,” or “our”), a Wyoming limited liability company, operates the Biohack mobile application and the website at buettnerlabs.com (collectively, the “Service”). This Privacy Policy explains how we collect, use, disclose, and protect your personal information when you use our Service.
By using the Service, you agree to the collection and use of information in accordance with this policy. If you do not agree, please do not use the Service.
2. Information We Collect
2.1 Information You Provide
- Account information — when you create an account via email or Apple Sign-In, we collect your email address and, if provided, your name. If you sign in with Apple and choose to hide your email, we receive only the relay address Apple provides.
- Profile data — optional information you provide such as age, sex, dietary preferences, and health goals to personalize the Service.
- Meal and nutrition data — photos, text descriptions, barcode scans, and food intake data you voluntarily submit through the app.
- Supplement data — supplements you log, including name, dosage, and schedule.
- Fasting data — fasting start/stop times and related metrics you record in the app.
- Communications — when you contact us via email or support channels.
2.2 Information Collected Automatically
- Device information — device type, operating system version, unique device identifiers.
- Usage data — features used, actions taken, time spent, and interaction patterns within the app. We collect this data using our own first-party analytics system, not third-party analytics services.
- IP address — used for approximate location, security, and abuse prevention.
- Crash and performance data — diagnostic information to help us identify and fix technical issues.
2.3 Camera and Photo Library
With your permission, the app accesses your device camera to photograph meals for nutritional analysis and to scan product barcodes. With your permission, the app also accesses your photo library so you can select existing photos for meal analysis. Photos are processed to extract nutritional information and are not stored on our servers beyond the time needed to perform the analysis unless you choose to save the meal.
2.4 Information We Do Not Collect
We do not collect protected health information (PHI) as defined by HIPAA. We do not knowingly collect personal information from anyone under the age of 18. If you believe someone under 18 has provided us with personal information, please contact us at info@buettnerlabs.com and we will delete it promptly.
3. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the Service.
- Generate your personalized nutrition scores, nutrient tracking, coaching insights, and supplement recommendations within the app.
- Analyze usage patterns using our first-party analytics to improve the user experience.
- Send you product updates and service-related communications.
- Respond to your inquiries and provide customer support.
- Detect, prevent, and address technical issues, fraud, and abuse.
- Comply with legal obligations and enforce our terms.
4. How We Share Your Information
We do not sell your personal information. We may share your information with:
- Service providers — third-party vendors who help us operate the Service. These currently include:
- Supabase — database hosting, authentication, and backend infrastructure.
- Anthropic — AI meal analysis. When you submit a meal for scoring, the meal description and/or photo is sent to Anthropic's Claude API for nutritional analysis. Anthropic processes this data according to their privacy policy and does not use it to train their models.
- Apple — Apple Sign-In authentication, if you choose this sign-in method.
- USDA FoodData Central — nutrient database. When you log a meal, food queries may be sent to the USDA FoodData Central API to look up detailed nutrient information for the foods you consume.
- Open Food Facts — open-source product database. When you scan a barcode or log a packaged food, queries may be sent to Open Food Facts to retrieve product and nutrient information. Open Food Facts is a non-profit project; data is processed according to their privacy policy.
- Google Search Console — we use Google Search Console to monitor how our website appears in Google Search results. This service provides us with aggregated, anonymous data about search queries, impressions, and clicks. Google Search Console does not collect personal information from our website visitors and does not place cookies on your device.
- Google Ads — conversion tracking for advertising campaigns. When you visit our website, Google Ads may collect interaction data to measure ad effectiveness. Google processes this data according to their privacy policy. This tracking only activates after you accept cookies.
- Legal compliance — if required by law, regulation, legal process, or governmental request.
- Business transfers — in connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you of any such change.
5. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the Service. If you delete your account, we will delete your personal data within 30 days, except where we are required to retain it by law or for legitimate business purposes (such as resolving disputes or enforcing our agreements). You may request account deletion at any time through the app's Profile settings or by contacting info@buettnerlabs.com.
6. Data Security
We implement commercially reasonable technical and organizational measures to protect your personal information against unauthorized access, alteration, disclosure, or destruction. Data is encrypted in transit using TLS and at rest in our database. However, no method of transmission over the Internet or electronic storage is 100% secure, and we cannot guarantee absolute security.
7. Cookies and Tracking Technologies
Our website may use cookies and similar tracking technologies to enhance your experience. These may include:
- Essential cookies — required for the website to function properly (e.g., theme preference).
- Analytics cookies — may be used in the future to help us understand how visitors interact with our website. We will update this section accordingly.
- Marketing cookies — used to measure the effectiveness of our advertising campaigns. These include Google Ads cookies (such as _gcl_au). These cookies are only set after you accept cookies via our consent banner.
You can control cookies through your browser settings. Disabling certain cookies may affect the functionality of the website. The Biohack mobile app does not use cookies.
8. Your Privacy Rights
8.1 All Users
Regardless of your location, you may:
- Request access to the personal information we hold about you.
- Request correction of inaccurate information.
- Request deletion of your personal information and account.
- Request a copy of your data by emailing info@buettnerlabs.com. We will provide your data in a portable format within 30 days.
- Opt out of non-essential communications at any time.
8.2 California Residents (CCPA/CPRA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) and the California Privacy Rights Act (CPRA):
- Right to Know — you may request that we disclose the categories and specific pieces of personal information we have collected about you.
- Right to Delete — you may request that we delete your personal information, subject to certain exceptions.
- Right to Correct — you may request correction of inaccurate personal information.
- Right to Opt-Out — you have the right to opt out of the sale or sharing of your personal information. We do not sell or share your personal information.
- Right to Non-Discrimination — we will not discriminate against you for exercising your privacy rights.
To exercise any of these rights, contact us at info@buettnerlabs.com. We will respond to verifiable requests within 45 days.
8.3 Residents of Other U.S. States
If you reside in Virginia, Colorado, Connecticut, Texas, Oregon, Montana, Utah, or other states with comprehensive privacy laws, you may have similar rights to access, correct, delete, and opt out of certain data processing. Contact us at info@buettnerlabs.com to exercise these rights.
8.4 Canadian Residents (PIPEDA)
If you are a Canadian resident, the Personal Information Protection and Electronic Documents Act (PIPEDA) and applicable provincial privacy legislation provide you with rights regarding your personal information, including:
- Right to Access — you may request access to the personal information we hold about you.
- Right to Correction — you may request correction of inaccurate or incomplete personal information.
- Right to Withdraw Consent — you may withdraw your consent to our collection, use, or disclosure of your personal information at any time, subject to legal or contractual restrictions.
- Right to Complain — you may file a complaint with the Office of the Privacy Commissioner of Canada if you believe your privacy rights have been violated.
We collect, use, and disclose your personal information only for the purposes identified in this policy and with your consent. To exercise any of these rights, contact us at info@buettnerlabs.com.
8.5 Australian and New Zealand Residents
If you reside in Australia, the Australian Privacy Act 1988 and the Australian Privacy Principles (APPs) provide you with rights regarding your personal information. If you reside in New Zealand, the Privacy Act 2020 provides similar protections. These include:
- Right to Access — you may request access to the personal information we hold about you.
- Right to Correction — you may request correction of inaccurate, out-of-date, or incomplete personal information.
- Right to Complain — Australian residents may file a complaint with the Office of the Australian Information Commissioner (OAIC). New Zealand residents may file a complaint with the Office of the Privacy Commissioner.
We will not transfer your personal information outside of the countries listed in Section 4 (Service Providers) without ensuring that the recipients are bound by obligations consistent with the APPs or New Zealand Privacy Act. To exercise any of these rights, contact us at info@buettnerlabs.com.
8.6 European Economic Area (EEA) Residents (GDPR)
Buettner Labs LLC is a United States-based company. However, if you reside in the European Economic Area (EEA), we are committed to respecting your rights under the General Data Protection Regulation (GDPR).
Legal Basis for Processing (Art. 6 GDPR)
We process your personal data on the following legal bases:
- Consent — where you have given clear consent for us to process your personal data for a specific purpose (e.g., submitting meal photos for analysis).
- Contract Performance — where processing is necessary for the performance of a contract with you (e.g., providing the Service after you create an account).
- Legitimate Interest — where processing is necessary for our legitimate interests, such as improving the Service, ensuring security, and preventing fraud, provided these interests are not overridden by your rights.
Your Rights Under the GDPR
In addition to the rights listed in Section 8.1, EEA residents have the following rights:
- Right to Erasure (Art. 17) — you may request that we delete your personal data without undue delay where the data is no longer necessary for the purpose it was collected, you withdraw consent, or there is no other legal basis for processing.
- Right to Restrict Processing (Art. 18) — you may request that we restrict the processing of your personal data in certain circumstances, such as when you contest the accuracy of the data or object to processing.
- Right to Data Portability (Art. 20) — you may request to receive your personal data in a structured, commonly used, and machine-readable format, and to transmit that data to another controller.
- Right to Object (Art. 21) — you may object to processing of your personal data based on legitimate interests. We will cease processing unless we demonstrate compelling legitimate grounds that override your interests, rights, and freedoms.
- Right to Lodge a Complaint — you have the right to lodge a complaint with a supervisory authority in the EU/EEA member state of your habitual residence, place of work, or place of the alleged infringement if you believe our processing of your personal data violates the GDPR.
To exercise any of these rights, contact us at info@buettnerlabs.com. We will respond to your request within 30 days.
8.7 United Kingdom Residents (UK GDPR)
If you are a UK resident, you have the same rights as described in Section 8.6 above under the UK General Data Protection Regulation (UK GDPR). In addition:
- Supervisory Authority — you have the right to lodge a complaint with the Information Commissioner's Office (ICO) at ico.org.uk if you believe your data protection rights have been violated.
- International Transfers — your data may be transferred to the United States where our servers and service providers are located. We rely on appropriate safeguards, including standard contractual clauses, to protect your data during such transfers.
9. Third-Party Links
The Service may contain links to third-party websites or services. We are not responsible for the privacy practices of those third parties. We encourage you to review their privacy policies before providing them with any personal information.
10. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of material changes by posting the updated policy on this page with a new “Last updated” date and, where appropriate, notifying you through the app. Your continued use of the Service after any changes constitutes acceptance of the updated policy.
11. Contact Us
If you have any questions about this Privacy Policy or wish to exercise your privacy rights, contact us at:
Buettner Labs LLC
30 North Gould Street, Ste R
Sheridan, WY 82801
info@buettnerlabs.com