What we collect
Gyde stores the account details you provide, the wellness information you choose to track, and any supported integration data you connect so the product can personalize coaching and keep your progress in sync.
Privacy
This notice explains how Gyde handles product data today. Last updated July 26, 2026.
Gyde stores the account details you provide, the wellness information you choose to track, and any supported integration data you connect so the product can personalize coaching and keep your progress in sync.
Password-based accounts must verify their email before normal app, health-data, integration, or AI coaching access. Until then, the signed-in session is limited to email verification and recovery, support or safety contact, sign-out, and account deletion.
We use your data to power goal intake, daily coaching, progress views, notifications you opt into, and connected experiences such as Garmin sync. We do not need your data to do anything unrelated to the coaching experience.
Gyde uses automated AI processing to generate or prioritize wellness recommendations, summaries, coaching actions, and workout-plan adaptations from information such as your goals, settings, recent logs and conversations, connected wearable signals, plan history, and product safety rules. These outputs can be wrong, are not medical diagnoses, and do not decide your eligibility for employment, insurance, credit, health care, or another essential service. If an output is a decision based exclusively on automated processing, you may ask which personal information was used, the principal reasons, factors, and parameters behind it, request correction of that information, and submit observations to a human team member able to review the output.
This personalization is profiling: Gyde evaluates health, wellness, activity, conversation, and wearable information to infer characteristics such as your goals, preferences, activity patterns, recovery state, and likely coaching needs. Creating an account does not by itself connect a wearable. Profiling starts when you choose to provide goals, wellness logs, conversations, or other coaching inputs, or connect a supported integration. You can stop new data from a connected source by disconnecting it from that integration’s screen. Disconnecting does not erase information already stored. Core personalization cannot be disabled while continuing to use personalized Coach features; to stop it, stop submitting new coaching inputs and request deletion of the relevant data or your account through Privacy & Data settings or the Privacy Officer.
Where Gyde relies on your consent to use or communicate personal information, you may withdraw that consent, subject to applicable legal or contractual limits. Withdrawal does not undo processing that was lawful before it took effect and may cause an optional integration or personalized feature to stop working. You can disconnect a supported integration, turn off push notifications in Settings, request access to or correction of your information, request deletion, or contact the Privacy Officer with a subject beginning with "Privacy request."
Gyde sends AI requests from its main backend Cloud Functions in us-east1 to Vertex AI. During the current pre-production beta, conversational coaching, action extraction, workout-plan generation, and safety critique use Gemini 3.6 Flash through the Vertex global endpoint; a specific processing region cannot be selected for that route, so processing may occur outside Canada. Other active AI analysis and vision routes remain on Vertex AI in northamerica-northeast1 (Montréal). Firebase and Google Cloud services, storage, logs, and network paths may use other configured regions. Selecting Montréal for some model processing does not mean all account data or traffic remains in Canada.
Gyde does not use your account, wellness, chat, prompt, or model-response content to train or fine-tune Gyde or third-party AI models, and Gyde does not give Vertex AI permission or instruction to use that data for model training. Google Cloud states that managed Vertex AI customer data is not used to train or fine-tune AI or ML models without the customer’s prior permission or instruction. This training restriction is separate from limited provider processing, abuse-monitoring logs, in-memory caching, and other retention described by the provider and our retention controls.
Top-level AI retrieval and specialist-call telemetry is limited to identifiers, model route, timing, lengths and counts, scores or outcomes, and bounded error categories. Those application records are scheduled for deletion after 90 days and do not intentionally copy raw prompts, user queries, or model responses. Separate quota and cost counters, provider logs, and backups follow their configured retention controls. Saved chat messages are account content, not operational telemetry, and remain available until you delete them or the account.
Live voice and video are not currently available or approved for rollout. They will remain disabled until a direct browser-to-provider credential flow is replaced by a secure, server-controlled relay and the complete flow passes security and privacy review.
Gyde has no public profile, searchable member directory, contact import, or friend-of-friend access. A private, single-use friend link expires after seven days. Accepting it creates a reciprocal connection containing only a display name, connection status and date, record version, and the internal account identifier used as the record key. A friendship alone does not expose health data, workout history, email, location, private Coach content, rooms, or challenges.
Your one-to-one Coach chat, detailed sets, loads, RPE, pain notes, biometrics, and private workout drafts stay in your account. Workout rooms are separate, opt-in spaces: active participants can see the participant list, messages you send, and coarse set progress allowed by your privacy setting. Invite-only challenges expose the challenge definition, active roster, and authorized coarse scores derived from completed app workouts and activity summaries you chose to sync from Garmin or Strava; contributing provider names are shown with the score. Neither surface shares private Coach history, GPS routes, heart rate, or detailed workout drafts.
The Privacy & Data dashboard lets you replace your name with "Gyde member" for confirmed friends and active friend links, stop live room progress, and clear challenge scores and provider attribution. These account-wide limits are enforced by the server for current and future social activity. Joining a room or challenge remains a separate explicit action, and room messages are shared only when you press Send.
We keep account data while your account is active so your history, trends, and coaching context remain available. Either friend can remove a friendship immediately. Active workout rooms expire after 24 hours without activity; ended rooms and their sent messages are eligible for deletion after 30 days. Challenges are eligible for deletion 30 days after they end. Leaving or removal clears current coarse progress and ends your access, while an inactive membership may remain host-visible and room messages already sent remain visible to current participants until cleanup. Account deletion removes private app data, hosted rooms and challenges, and scrubs authored content in rooms hosted by someone else. Copies another person made and records held independently by payment or connected providers follow their own retention rules.
Verified members can request an export or delete their account from Privacy & Data settings. Password-based accounts awaiting verification can recover a mistyped email or delete the account from the verification screen. Exports include account-owned records and supported AI telemetry. Deletion removes private app data and supported top-level AI telemetry, removes hosted rooms and challenges, and scrubs authored content in rooms hosted by someone else; independently retained payment or connected-provider records follow those providers’ rules.
Gyde is a consumer wellness product. We do not represent Gyde as HIPAA compliant or approved for covered-entity or business-associate protected-health-information workflows. Do not use Gyde as a substitute for a regulated medical record or professional medical service.
Gyde investigates suspected confidentiality incidents and takes reasonable measures to contain them, reduce the risk of harm, and prevent recurrence. Any confidentiality incident will be entered in the register required by applicable law and retained for the required period. If an incident involving personal information presents a risk of serious harm, Gyde will notify affected people and the applicable privacy regulator diligently, as required by law.
Under Québec law, Gyde’s highest authority exercises the Privacy Officer function unless and until that function is delegated in writing. The public title for this function is Privacy Officer, Gyde. Contact the Privacy Officer at hello@nudgewell-ai.com or through the public Contact support form using a subject that begins with "Privacy request." Use this channel for access, correction, consent withdrawal, export, deletion, an automated-processing explanation or human review, a privacy complaint, or an incident question.
Verified members can review social sharing, request an export, or delete their account in Privacy & Data settings. Password accounts awaiting verification can recover or delete the account from the Verify email screen. Privacy requests can also be sent through the public Contact support form.