Soma AI logo
Soma AI by Hephaestus Soft
Legal

Soma AI Privacy Policy

Last updated: September 4, 2026 · This policy will be finalized at public launch; material changes will be announced in-app before taking effect.

Our promise, in one paragraph

Soma AI handles some of the most sensitive data a consumer app can hold: your body metrics, what you eat, how you train, how you recover, and photos of your physique. That data exists for one reason — to run your feedback loop. We don't sell it, we don't advertise against it, and we never use it to train AI models. Safeguards are architectural: encryption, row-level security, private media buckets, and hard deletion you control.

What we store, and how it's protected

Soma is an account-based service, so the following is stored server-side — encrypted in Cloud SQL for PostgreSQL, with row-level security so your rows are isolated and keyed to your account:

  • Account profile and baseline biometrics (age, height, weight, activity level).
  • Logs: meals, macros, fasting windows, workout sets, rest intervals, and weight entries.
  • AI companion conversations and their timestamps (the telemetry that powers rest timers and meal/fast correlation).
  • Wearable sync tokens (WHOOP, Fitbit OAuth) and synced biometrics such as recovery, strain, HRV, sleep, and active energy.
  • Physique check-in photos and AI-derived estimates — held in private, encrypted Google Cloud Storage buckets, never in a public or shared location.

Your photos take the private path

Meal and physique photos are uploaded directly from your device to private, encrypted cloud storage using short-lived signed URLs — they bypass our application servers entirely. They are processed for analysis and retained only to power your progress history; you can delete any photo, and deleting your account deletes all of them.

What leaves your account, and why

  • AI Companion & vision: when you send a message or photo, its contents are sent to our AI provider (Google Vertex AI / Gemini) solely to generate your reply, tool actions, or analysis. They are never persisted by us for any other purpose, and never used to train models.
  • Wearables: if you link WHOOP or Fitbit, we receive recovery, strain, HRV, sleep, and activity metrics via OAuth 2.0 — read-only scopes, revocable any time from the provider or in-app.
  • Health platforms: Apple Health (HealthKit) and Google Health Connect data flows on-device through their own permission systems; we receive only the metric types you approve.
  • Account & billing: your sign-in identifier and entitlement status are shared with RevenueCat so your subscription works across devices and reinstalls. We never see your payment card details.
  • Food databases: barcode scans query Open Food Facts / Nutritionix. We send the barcode number — never your identity.
  • Diagnostics: scrubbed crash traces and event counts. Your logs, conversations, photos, and biometrics are never included in analytics, crash reports, push payloads, or URLs.

What we never do

  • Sell or rent your personal or health data. There is no ads business here.
  • Use your conversations, photos, or biometrics to train AI models.
  • Send your health content in notifications (a rest timer says “Rest complete”, nothing more).

Deletion & your controls

You can delete individual photos, logs, or conversations in-app at any time. Deleting your account triggers a hard delete across databases, media storage, billing identifiers, and analytics, satisfying Apple's and Google's account-deletion requirements. You can also request a machine-readable export of your data by email.

Children

Soma AI is intended for adults 18 and over and is not directed at children. We do not knowingly collect data from anyone under 18.

Contact

Questions, data access, export, or deletion requests: jack@hephaestussoft.com.
Hephaestus Soft LLC · 30 N Gould St, Ste N, Sheridan, WY 82801, USA.