Privacy & data

Your health data
stays yours.

AMORTAL is built to hold the most sensitive information about you — your labs, your wearables, your body. The standard for handling it has to be higher than the industry norm. This is the standard we are building to.

Pre-launch commitment · Last updated June 2026
The short version

Four promises we are designing the whole company around — not fine print.

We will never sell your data

Not your email, not your health data, not anything in between. No data brokers, no ad networks — ever. It is not a revenue line we will build.

Consent-first by default

Nothing connects, syncs, or moves without you turning it on. You grant access deliberately, and you can revoke it just as deliberately.

Encrypted, in transit and at rest

Your information is encrypted on the way to us and while we hold it, with access tightly scoped and logged.

Margin-blind ranking

The engine that decides your next best move cannot see what makes us money. Your recommendation is never for sale to the highest bidder.

01

Where we are right now

AMORTAL is pre-launch. The product is in active development on a path toward Software as a Medical Device (SaMD) classification, and early access is a research preview — not yet a regulated medical device.

Because we aren't live, the only thing most people share with us today is an email address to join the Foundation cohort waitlist. This page describes both how we handle that now and the commitments we are engineering into the product before it ever touches your health data.

In plain terms: right now we hold an email so we can tell you when it's your turn. That's it. The deeper data only ever enters the picture later, on your explicit say-so.

02

What we collect — and when

Today, at the waitlist stage, we collect:

  • The email address you give us, so we can contact you about early access.
  • If you share a referral link, a simple count of how many friends joined through it — to fairly order the line. We don't build social graphs from it.
  • Basic, privacy-respecting analytics about how this site is used, so we can improve it.

Once the product is live, and only if you choose to connect it, AMORTAL is designed to work with:

  • Bloodwork and lab results you upload or order through us.
  • Wearable and device data you explicitly link.
  • The protocols, supplements, and notes you choose to log.

Each source is opt-in. You decide what AMORTAL gets to see, and AMORTAL is built to be honest about what missing data limits rather than guessing in the dark.

03

We will never sell your data

This is the one we will not bend on. We will never sell, rent, or trade your email or your health data — to advertisers, data brokers, insurers, employers, or anyone else. Your information is not our product, and we are deliberately not building a business that depends on monetizing it.

We also won't use your personal health data to train models for unrelated third parties, or hand it to partners who'd treat it as an asset. If that ever needs to evolve, it will only be with clear, specific, opt-in consent from you — never as a quiet default buried in an update.

04

Consent-first, and margin-blind

Two ideas sit at the center of how AMORTAL is built.

Consent-first means nothing moves without your permission. Connecting a data source, sharing a result, syncing a device — each is a deliberate action you take, and each is one you can undo.

Margin-blind means the engine that ranks your decisions literally cannot see what makes AMORTAL money. It can't tell whether the right next move happens to be profitable for us, because that information is walled off from it. Your recommendation is decided on evidence and your safety — not our economics.

05

How we intend to protect it

We are building to a medical-device standard from day one. As the product comes online, that means:

  • Encryption of your data both in transit and at rest.
  • Scoped, logged access — every read of sensitive data is traceable, with provenance, not vibes.
  • Least-privilege internals, so systems and people only touch what they genuinely need.
  • Safety gating on anything that reaches you, before it reaches you.

No system is perfectly secure, and we won't pretend otherwise. What we commit to is treating your data as the high-stakes material it is, and being straight with you if something ever goes wrong.

06

Your data, your controls

Your data belongs to you, and we are building the controls to make that real:

  • See it — review what AMORTAL holds about you.
  • Export it — take your information with you in a usable form.
  • Delete it — close your account and have your personal data removed.
  • Revoke access — disconnect any source you previously linked, at any time.

For now, if you're on the waitlist and want to be removed, a single note to us does it — see below.

07

Working with your clinician, not around them

AMORTAL is clinician-compatible by default. It's designed to help you prepare sharper questions and better-informed decisions, and to route anything that belongs with a licensed clinician straight to one. It is not a substitute for professional medical care, and the early-access preview is not a regulated medical device or a source of diagnosis or treatment.

08

How this will change

This is a living commitment for a product that isn't finished. As AMORTAL moves toward launch, we'll publish a full, formal privacy policy with the specific legal detail a live medical-grade product requires. The principles on this page — never selling your data, consent-first, encrypted, margin-blind — are the ones we intend to carry through unchanged.

If we make a material change, we'll tell the people on our list directly rather than relying on you to notice a quietly edited page.

Questions about your data?

Ask us anything — including to be removed from the waitlist.

privacy@amortal.health