Privacy Policy
TNiC is local-first: your labs, profile, stack, and notes stay in your browser by default. This page maps, feature by feature, what stays on your device and what is transmitted only when you choose an optional integration.
Last updated: July 20, 2026
The short version
- Lab values and personal notes never leave your browser unless you export them.
- No accounts, cookies for health data, or server-side databases.
- Stack URL params share compound IDs only — never lab values.
- You can purge all data or switch to session-only storage anytime.
What stays on your device
The core TNiC workspace runs entirely in your browser. The following are stored in your browser's local (or session) storage and are never sent to a TNiC server:
- Your profile inputs (age and lifestyle sliders)
- Lab and biomarker values you enter or import
- Your saved stack, checklist progress, hallmark notes, and milestones
- Questionnaire results and tool state
- Your privacy mode (local vs. session-only) and consent choice
You can switch to session-only storage or erase everything at any time from the Health Data controls.
What is transmitted — only when you choose it
A few optional features do involve sending data off your device. Each is opt-in and clearly initiated by you:
Protocol Brief (email)
- What leaves
- The email address you submit.
- Who receives it
- Resend (email delivery) and, if configured, a subscribe webhook.
- Why
- To send the research digest you signed up for and let you unsubscribe.
Lab-partner import
- What leaves
- Order and biomarker data exchanged with a lab partner you connect (currently Longevity Direct) via OAuth.
- Who receives it
- The lab partner you authorize. TNiC proxies the request; it does not maintain a health database of your results.
- Why
- To pull results into your local workspace. You initiate the connection and can decline.
Contact form
- What leaves
- Whatever you type into your own email client. The form opens a pre-filled mailto: — it does not POST to TNiC.
- Who receives it
- Your email provider and TNiC's inbox. A local draft is also saved in your browser.
- Why
- To answer content, evidence, privacy, or partnership questions. Do not send sensitive health details by email.
Product / affiliate links
- What leaves
- A standard outbound click; some links carry affiliate tags.
- Who receives it
- The destination retailer.
- Why
- To let you buy from third parties. See the sponsorship principles for how this is separated from editorial.
Analytics
TNiC uses Vercel Analytics and Vercel Speed Insights to measure aggregate traffic and page performance. These do not receive your lab values, profile inputs, selected conditions, medications, or any free-text you enter. No wellbeing or health-topic content is included in analytics payloads.
What TNiC does not do
- No sale of user health data — there is no such business model.
- No accounts or server-side database of your labs, stack, or notes.
- No cookies used to store health data.
- No health information placed in URLs (shared stack links carry compound IDs only).
Your controls
Because your data lives in your browser, you hold it directly: switch to session-only mode, export it, or purge all health-adjacent data. See Your Health Data.
Legal review status
This policy describes current, verifiable data behavior in the product. It has not yet been reviewed by qualified legal counsel and does not assert compliance with any specific statute or framework (for example GDPR, CCPA, or HIPAA). If you operate TNiC and need a jurisdiction-specific policy, have counsel review and finalize this text before relying on it.
This is a plain-language summary of current data behavior. It is not yet reviewed by legal counsel — see the note at the end.