VH Scanner by Vital Health International, LLC — how we collect, use, protect, and share your personal and health information.
This Privacy Policy ("Policy") describes how Vital Health International, LLC ("Vital Health," "Company," "we," "us," or "our") collects, uses, processes, stores, shares, and protects information obtained through the VH Scanner mobile application ("App"), website, and related services (collectively, the "Services").
By downloading, installing, or using the VH Scanner App, you ("User," "you," or "your") acknowledge that you have read, understood, and agree to the practices described in this Policy. If you do not agree with this Policy, please do not use the Services.
Vital Health International, LLC
3325 Capitol Avenue, Suite 413A
Cheyenne, WY 82001
United States of America
Ricardo Tovar
Email: rtovar@vitalhealthglobal.com
Phone: +1 (928) 788-0204
This Policy applies to all users worldwide and is designed to comply with applicable data protection laws, including but not limited to the Health Insurance Portability and Accountability Act (HIPAA), the Federal Trade Commission Health Breach Notification Rule, the Illinois Biometric Information Privacy Act (BIPA), the California Consumer Privacy Act as amended by the California Privacy Rights Act (CCPA/CPRA), the General Data Protection Regulation (GDPR), the Children's Online Privacy Protection Act (COPPA), and applicable state biometric data laws in Texas, Washington, and other jurisdictions.
We collect the following categories of information when you use the VH Scanner App. For each category, we explain what is collected, why it is needed, and the legal basis for processing.
| Data Element | Purpose | Legal Basis |
|---|---|---|
| Full name | Account identification and personalization | Contractual necessity |
| Email address | Account login, communications, and password recovery | Contractual necessity |
| Password (hashed) | Account security and authentication | Contractual necessity |
| Data Element | Purpose | Legal Basis |
|---|---|---|
| Date of birth | Age verification (13+ requirement) and age-adjusted health baselines | Legitimate interest / Legal obligation |
| Biological sex | Sex-specific reference ranges for biomarkers (e.g., hemoglobin, hormones) | Explicit consent |
| Height | Body surface area calculations, BMI, cardiovascular risk models | Explicit consent |
| Weight | BMI, metabolic rate estimation, medication dosing models | Explicit consent |
| Race / Ethnicity | Calibration of optical sensing algorithms (melanin levels affect rPPG accuracy) and population-specific reference ranges | Explicit consent |
You may optionally provide the following to improve the accuracy and relevance of your scan results:
Before each scan session, the App may ask you about temporary factors that affect your current physiological state:
During a scan, the App captures the following raw sensor data:
Remote photoplethysmography (rPPG) is the core technology behind VH Scanner. From the raw camera data, we extract:
The App processes raw signals through proprietary algorithms to produce up to 346 derived biomarkers spanning the following categories:
The App retains a history of your scan results over time to provide:
VH Scanner allows you to create additional profiles to scan friends, family members, or other individuals. For each additional profile, the same data categories (2.2 through 2.8) may be collected. See Section 9 for consent requirements when scanning others.
If you participate in the VH Scanner referral program, we collect:
| Biometric Category | Specific Data | Purpose |
|---|---|---|
| Facial geometry | Facial landmark coordinates, skin region mapping, facial blood flow patterns | rPPG signal extraction for heart rate, blood pressure, and SpO2 measurement |
| rPPG biometric signals | Pulse waveforms, inter-beat intervals, blood volume pulse signals extracted from video | Cardiovascular health marker derivation |
| Voiceprint patterns | Vocal frequency analysis, speech cadence, respiratory patterns from audio | Respiratory health assessment, stress and fatigue detection |
| Fingerprint/palm vascular patterns | Fingertip PPG signals, palm vascular imagery | SpO2 measurement, peripheral circulation assessment |
| Iris/sclera imagery | Color analysis of the sclera and iris regions | Jaundice screening, eye health indicators |
Before the App performs its first biometric scan, you will be presented with a clear, separate consent screen that:
You may withdraw your consent at any time by navigating to Settings > Privacy > Biometric Consent in the App, or by contacting our Data Protection Officer. Withdrawal of consent will prevent future biometric scans but will not affect the lawfulness of processing based on consent before its withdrawal.
We will permanently destroy all biometric identifiers and biometric information when:
This destruction schedule meets or exceeds the requirements of BIPA Section 15(a) and applies regardless of the user's jurisdiction.
If you are a resident of Illinois, you have the right to:
The majority of VH Scanner's data processing occurs locally on your device:
Certain features require server-side processing. When you use these features, the following data may be transmitted:
We may share limited data with trusted service providers who assist in operating the Services:
| Provider Category | Data Shared | Purpose | Safeguards |
|---|---|---|---|
| Cloud infrastructure | Encrypted health data, account data | Data hosting and processing | BAA signed, SOC 2 certified, data encrypted at rest |
| Authentication provider | Email, hashed password | User authentication | Industry-standard OAuth/OIDC, no health data shared |
| Analytics (anonymized) | Aggregated, de-identified usage metrics | App performance and UX improvement | No PII, no health data, no re-identification possible |
| Payment processor | Payment information (not health data) | Subscription billing | PCI DSS Level 1 compliant, no health data shared |
| Customer support | Account data, app logs (no health data) | Technical support | Access controls, NDA, no health data access |
We may share your health data with third parties only when you provide separate, explicit, opt-in consent for each sharing instance:
We may disclose your information if required by law, including:
With your separate, opt-in consent, we may use de-identified, aggregated scan data to improve our algorithms. This data is:
VH Scanner is a direct-to-consumer wellness application. As such, Vital Health International may not currently qualify as a "covered entity" or "business associate" under HIPAA (45 CFR Parts 160 and 164). However, we have made the strategic decision to build and operate to HIPAA standards because:
Administrative Safeguards:
Physical Safeguards:
Technical Safeguards:
Depending on your jurisdiction, you have some or all of the following rights regarding your personal and health data. We honor all of the following rights for all users, regardless of location, as a matter of policy.
| Right | Description | How to Exercise |
|---|---|---|
| Access | Request a copy of all personal and health data we hold about you | Settings > Privacy > Download My Data, or email the DPO |
| Deletion | Request permanent deletion of your account and all associated data | Settings > Account > Delete Account, or email the DPO |
| Export / Portability | Receive your data in a structured, commonly used, machine-readable format (JSON, CSV) | Settings > Privacy > Export Data |
| Correction / Rectification | Request correction of inaccurate personal data | Edit directly in app profile, or email the DPO |
| Restriction of Processing | Request that we limit how we use your data while a dispute is resolved | Email the DPO |
| Objection | Object to processing of your data based on legitimate interests | Email the DPO |
| Withdraw Consent | Withdraw previously given consent at any time | Settings > Privacy > Manage Consent, or email the DPO |
| Non-Discrimination | You will not be penalized for exercising any privacy right | Automatic |
| Opt-Out of Sale/Sharing | Direct us not to sell or share your personal information (we never do, but you can formally opt out) | Settings > Privacy > Do Not Sell My Information |
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA):
To exercise CCPA/CPRA rights, submit a verifiable consumer request by emailing rtovar@vitalhealthglobal.com or using the in-app privacy controls. We will respond within 45 days (extendable by an additional 45 days with notice).
If you are located in the European Economic Area (EEA) or United Kingdom, you have additional rights under the GDPR:
| Jurisdiction | Response Deadline | Extension Allowed |
|---|---|---|
| California (CCPA/CPRA) | 45 days | +45 days with notice |
| EEA/UK (GDPR) | 30 days | +60 days for complex requests |
| All other jurisdictions | 30 days | +30 days with notice |
VH Scanner allows you to create additional profiles to scan other individuals. When you scan someone other than yourself, you assume legal responsibility for the following:
Biometric data laws (BIPA, Texas CUBI, etc.) require consent from the individual whose biometric data is being collected. When you scan another person:
Any individual whose data is stored in a multi-profile has the same data rights as the primary account holder (access, deletion, export, correction). They may exercise these rights by:
VH Scanner is intended for users aged 13 and older. We do not knowingly collect personal information from children under 13 years of age without verifiable parental consent, in compliance with the Children's Online Privacy Protection Act (COPPA).
For users between 13 and 17:
If we discover that we have inadvertently collected personal information from a child under 13, we will:
If you believe we may have collected data from a child under 13, please contact our DPO immediately at rtovar@vitalhealthglobal.com.
| Data Category | Retention Period | Reason |
|---|---|---|
| Raw biometric captures (video, audio, images) | 60 seconds — deleted immediately after processing | Technical processing only; no storage needed |
| Biometric identifiers (facial geometry data) | Until purpose fulfilled or 3 years from last interaction, whichever is sooner | BIPA Section 15(a) compliance |
| Account data (name, email) | Duration of account + 30 days after deletion request | Account functionality; 30-day grace period for accidental deletion |
| Profile data (DOB, sex, height, weight) | Duration of account | Required for scan calibration |
| Medical history data | Duration of account | Voluntary; deleted on account deletion or user request |
| Per-session intake data | Duration of account | Linked to scan results for context |
| Derived health markers / scan results | Duration of account | Longitudinal trend analysis |
| Scan history and trends | Duration of account | User-facing trend features |
| Referral program data (fsDealerID) | Duration of account + 1 year | Referral attribution and dispute resolution |
| Device and technical data | 12 months from collection | Debugging and compatibility; auto-purged |
| Audit logs | 6 years | HIPAA-aligned audit trail requirement |
| Anonymized aggregate data | Indefinite | Cannot be linked to any individual; used for algorithm improvement |
Despite our security measures, no system is completely immune to breach. In the event of a security incident involving your personal or health data, we are committed to transparency and swift action.
| Regulation | Notification Deadline | Who Is Notified |
|---|---|---|
| FTC Health Breach Notification Rule | 60 days from discovery | Affected individuals, FTC, and media (if 500+ affected) |
| HIPAA (if applicable) | 60 days from discovery | Affected individuals, HHS, and media (if 500+ affected in a state) |
| GDPR | 72 hours to DPA; without undue delay to individuals | Supervisory authority; affected individuals if high risk |
| CCPA/CPRA | As expeditiously as possible | Affected California residents |
| Illinois BIPA | No specific timeline; prompt notice required | Affected Illinois residents |
| State breach notification laws | Varies by state (30-90 days typically) | Affected residents, state AG as required |
Breach notifications will include:
Vital Health International is based in the United States. If you use the Services from outside the United States, your data may be transferred to, stored in, and processed in the United States or other countries where our service providers operate.
When we transfer personal data internationally, we rely on the following legal mechanisms:
For users in jurisdictions with data localization requirements:
VH Scanner integrates with or relies on the following categories of third-party services. Each has its own privacy policy, and we encourage you to review them.
| Service Category | Purpose | Data Accessed |
|---|---|---|
| Cloud hosting / backend | Server infrastructure, database, and API hosting | Encrypted account and health data |
| Authentication | User login and identity verification | Email, hashed credentials |
| Push notification service | Delivering scan reminders and health alerts | Device tokens (no health data) |
| Crash reporting | App stability monitoring and bug fixing | Device info, crash logs (no health data) |
| App analytics | Usage patterns, feature adoption, performance metrics | Anonymized usage data (no health data, no PII) |
| Payment processing | Subscription management and billing | Payment method (no health data) |
| Content delivery network (CDN) | Delivering app assets and updates | IP address (transient, no logging) |
All third-party service providers must:
The App may contain links to third-party websites or services that are not operated by us. We are not responsible for the privacy practices of these external sites. We encourage you to review the privacy policy of any third-party site you visit.
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
After being notified of material changes:
If you have questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
Vital Health International, LLC
Attn: Privacy / Data Protection Officer
3325 Capitol Avenue, Suite 413A
Cheyenne, WY 82001
United States of America
If you are located in the EEA or UK and believe we have not adequately addressed your privacy concerns, you have the right to lodge a complaint with your local Data Protection Authority:
edpb.europa.euico.org.ukIf you are a California resident, you may also contact the California Attorney General's office regarding CCPA/CPRA matters at oag.ca.gov.
If you are an Illinois resident with concerns about biometric data handling, you may contact the Illinois Attorney General's office at illinoisattorneygeneral.gov.