Company logo
Legal

Privacy Policy

Last updated: November 11, 2025

Introduction

Lōnova Ltd ("Lōnova," "we," "us," or "our") respects your privacy and is committed to protecting your personal data. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use the Lōnova longevity dashboard and companion app, which help you track, optimize, and extend your healthspan.

By using Lōnova, you agree to the terms of this Privacy Policy. If you do not agree, please do not use our services.

1. Information We Collect

We collect information that you provide directly to us, as well as data from connected devices and integrations:

Account Information

Name, email address, password, and authentication details when you create an account.

Health & Wellness Data

  • Data imported from wearables and third-party integrations (e.g., Apple Health, Oura, Whoop, Google Fit).
  • Manually entered health metrics, goals, supplement logs, and journal entries.
  • Uploaded lab or diagnostic results, including biomarker, epigenetic, or physiological data.

Device & Technical Data

IP address, browser type, operating system, and device identifiers for performance and security.

Usage Data

Interactions with features, settings, and insights to improve user experience and platform functionality.

Communication Data

Messages or feedback you send to our support team or via in-app chat.

2. How We Use Your Information

We use your data to:

  • Provide, maintain, and improve Lōnova's services and insights.
  • Generate personalized recommendations and visualizations.
  • Sync data from connected devices and integrations.
  • Track progress toward health and longevity goals.
  • Communicate important updates, feature releases, or security notices.
  • Respond to inquiries and provide customer support.
  • Detect, prevent, and mitigate technical or security issues.
  • Send marketing communications if you have opted in (you can unsubscribe anytime).

3. Legal Basis for Processing

We process your personal data under the following legal bases:

  • Contractual Necessity: To provide the services you request.
  • Legal Obligation: To comply with applicable data protection or accounting laws.
  • Consent: For optional data sharing, health tracking, or marketing communications.
  • Legitimate Interests: To enhance the platform, improve user experience, and ensure security.

You may withdraw consent at any time without affecting prior lawful processing.

4. Data Storage and Security

Lōnova uses industry-standard encryption, secure servers, and restricted access controls.

We follow ISO 27001-aligned security practices and store all personal data in jurisdictions offering adequate legal protection (e.g., the UK or EEA).

While we take every reasonable step to protect your data, no electronic storage or transmission method is completely secure. We encourage you to use strong passwords and keep login details confidential.

5. Data Sharing and Disclosure

We do not sell your personal data. We may share information only in these limited cases:

  • Service Providers: With trusted third-party partners who help operate our platform (e.g., cloud hosting, analytics, authentication).
  • Legal Compliance: When required by law, regulation, or legal process.
  • Business Transfers: In connection with a merger, acquisition, or restructuring, with equivalent data protection guarantees.
  • With Your Consent: When you explicitly authorize data sharing or integrations.

All partners are bound by strict confidentiality and data processing agreements.

6. Data Retention

We retain data only as long as necessary to fulfill the purposes outlined in this policy:

Data TypeRetention Period
Account InformationUntil account deletion
Health & Wearable DataUntil deletion request or account closure
Lab / Epigenetic ResultsUntil deletion request
Financial or Transactional Data (if applicable)Up to 7 years (legal requirement)
Communication LogsUp to 3 years

After these periods, data is securely deleted or anonymized unless required by law.

7. Your Rights

Depending on your jurisdiction (UK, EU, or California), you may have the following rights:

  • Access: Obtain a copy of your personal data.
  • Correction: Update or correct inaccurate data.
  • Deletion: Request deletion of your data.
  • Portability: Receive your data in a structured, machine-readable format.
  • Restriction / Objection: Limit or object to processing in certain contexts.
  • Withdrawal of Consent: Revoke consent at any time.

To exercise these rights, email us at privacy@lonova.io. We will respond within 30 days.

8. Supervisory Authority Rights

If you are in the EEA, UK, or Switzerland, you may contact your local Data Protection Authority (DPA) if you believe your rights have not been adequately addressed.

We encourage you to contact us first so we can resolve concerns promptly.

9. Cookies and Tracking Technologies

We use cookies and similar technologies to enhance your experience and understand how Lōnova is used.

  • Essential Cookies: Required for login, authentication, and core functionality.
  • Analytics Cookies: Used to improve user experience and performance (e.g., usage metrics).
  • Preference Cookies: Remember settings like theme or dashboard layout.

You can manage or disable cookies in your browser or through our cookie banner.

10. International Data Transfers

If data is transferred outside your jurisdiction (e.g., to the U.S. for hosting), we ensure equivalent protection through Standard Contractual Clauses (SCCs) or other lawful mechanisms recognized under GDPR and the UK Data Protection Act 2018.

11. California Privacy Rights (CCPA)

If you are a California resident, you have specific rights under the California Consumer Privacy Act (CCPA):

  • Right to Know: Request details of personal data collected or disclosed.
  • Right to Delete: Request deletion of personal data, with exceptions.
  • Right to Opt-Out: We do not sell personal information.
  • Right to Non-Discrimination: You will not face discrimination for exercising your rights.

Requests can be made by emailing privacy@lonova.io. Verification of identity may be required.

12. Children's Privacy

Lōnova is not intended for users under 16 years of age.

We do not knowingly collect personal data from children. If a parent or guardian believes a child has provided us with information, please contact privacy@lonova.io, and we will delete it promptly.

13. Changes to This Policy

We may update this Privacy Policy periodically to reflect new laws, technologies, or features.

We will post any updates here with a revised "Last updated" date. Material changes will be communicated via email or in-app notice.

14. Contact Us

If you have any questions, concerns, or complaints regarding this Privacy Policy or Lōnova's data practices, please contact:

Lōnova Ltd

Email: privacy@lonova.io

Website: www.lonova.io

© 2025 Lōnova Ltd. All rights reserved.