Overview
Thrive Forever ("Thrive", "we", "us", or "our") provides a personal health intelligence app that uses wearable summaries and user-provided context to generate simple daily guidance. Thrive is designed for personal wellness support and is not a replacement for professional care.
Information We Collect
Depending on what a user chooses to connect or share, Thrive may collect:
- Account identifiers needed to operate the app.
- User profile details, goals, recent context, and preferences entered in Thrive.
- Apple Health summaries imported after user permission.
- WHOOP connection status, authorization scopes, sync metadata, and encrypted access tokens.
- Normalized WHOOP daily summaries, including sleep duration, resting heart rate, HRV, respiratory rate, blood oxygen, wrist temperature, active energy, exercise minutes, and workout count.
- Chat messages, context notes, prompt answers, completions, skips, and guidance history.
- Technical logs needed to keep the service reliable and secure.
Information We Do Not Collect or Use
- Thrive does not sell user data.
- Thrive does not use wearable or chat data for advertising.
- Thrive does not store raw WHOOP API response snapshots in the current implementation.
- Thrive does not collect WHOOP step count in the current WHOOP integration scope.
- Thrive does not add a separate rating or display WHOOP-branded readiness outputs.
How We Use Information
Thrive uses collected information to:
- Import and summarize user-authorized wearable data.
- Maintain a secure connection to WHOOP and refresh access when needed.
- Build a personal baseline from health summaries and user context.
- Generate daily actions and refine guidance over time.
- Remember completed, skipped, or adjusted guidance.
- Improve reliability, security, and support.
AI-Assisted Personalization
Thrive may send wearable summaries, profile context, chat context, and guidance history to an AI service provider so the Thrive agent can generate personalized responses and daily actions. Thrive uses these inputs to provide app functionality, not to sell data or build advertising profiles.
How We Share Information
Thrive may share information with service providers that help operate the app, such as hosting, database, security, analytics or crash reporting if enabled, and AI processing providers. These providers are used to deliver Thrive and are not permitted to use user information for their own advertising.
Thrive may also disclose information when required by law, to protect users or the service, or in connection with a business transfer subject to appropriate safeguards.
Security
Thrive uses HTTPS for production traffic. WHOOP access and refresh tokens are encrypted before storage. The WHOOP OAuth code exchange happens on the Thrive backend so the WHOOP client secret is not placed in the iOS app.
User Choices
- Users can choose whether to connect Apple Health or WHOOP.
- Users can change Apple Health permissions in Apple Health settings.
- Users can disconnect WHOOP in Thrive when that control is available, or revoke access through WHOOP.
- Users can request access, correction, export, or deletion of their Thrive data.
Retention
Thrive keeps normalized health summaries, context, and guidance history while needed to provide the service or until a user requests deletion, subject to legal and security requirements. Disconnected WHOOP connections are marked inactive, and Thrive attempts to revoke WHOOP access where supported.
Children
Thrive is not intended for children under 13. If we learn that we collected information from a child under 13, we will take reasonable steps to delete it.
Changes
We may update this policy as Thrive changes. The effective date above shows when this version became active.
Contact
For privacy requests or questions, contact privacy@thriveforever.app.