Privacy Policy

Last updated: September 9, 2025

1. Introduction

Welcome to Humanome.AI ("we," "our," or "us"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our DNA testing platform and related services (collectively, the "Services").

We are committed to protecting your privacy and maintaining the confidentiality of your personal and genetic information. Your genetic data belongs to you, and we take our responsibility to protect it seriously. This policy complies with applicable privacy laws including HIPAA, GDPR, and CCPA.

2. Information We Collect

2.1 Personal Information

  • Name, email address, and contact information
  • Date of birth and biological sex (required for genetic analysis)
  • Account login credentials
  • Billing and payment information

2.2 Genetic Information

  • DNA sequence data from your test sample
  • Genetic variant information and analysis results
  • Health survey responses you provide
  • Family health history (if you choose to share it)

2.3 Technical Information

  • Device and browser information
  • IP address and location data
  • Usage patterns and analytics data
  • Log files and system access records

3. How We Use Your Information

  • Analyze your DNA and provide personalized health insights
  • Generate your genetic reports and recommendations
  • Provide Sentinel monitoring and research update notifications
  • Process pharmacogenomics analysis (for Concierge customers)
  • Maintain and improve our platform functionality
  • Ensure security and prevent unauthorized access
  • Comply with legal and regulatory requirements
  • Communicate with you about your account and test results

4. Information Sharing and Disclosure

4.1 We Do Not Sell Personal Information

We do not sell, trade, or rent your personal or health information to third parties.

4.2 Limited Sharing

We may share your information only in the following circumstances:

  • With your explicit consent
  • To comply with legal obligations or court orders
  • To protect rights, property, or safety
  • With trusted service providers under strict confidentiality agreements
  • In connection with business transfers (with continued privacy protection)

5. Data Security

We implement industry-standard security measures to protect your information:

  • End-to-end encryption for data transmission
  • Encryption at rest for stored data
  • Multi-factor authentication
  • Regular security audits and vulnerability assessments
  • Access controls and audit logging
  • HIPAA-compliant infrastructure and procedures

6. Your Rights and Choices

6.1 Access and Control

  • Access your personal information
  • Correct or update your information
  • Delete your account and associated data
  • Export your data in portable formats
  • Opt-out of marketing communications

6.2 GDPR Rights (EU Users)

  • Right to rectification
  • Right to erasure ("right to be forgotten")
  • Right to restrict processing
  • Right to data portability
  • Right to object to processing

7. Cookies and Tracking

We use cookies and similar technologies to enhance your experience. For detailed information about our cookie practices, please see our Cookie Policy.

8. Data Retention

We retain your information only as long as necessary for the purposes outlined in this policy:

  • Active accounts: Data retained while your account is active
  • Genetic data: Your DNA data is retained to enable Sentinel monitoring and future analysis
  • Analytics data: Aggregated, de-identified data may be retained indefinitely
  • Legal compliance: Data retained as required by law
  • Data deletion: You may request deletion of your genetic data at any time

9. International Data Transfers

Your information may be processed in countries other than your own. We ensure appropriate safeguards are in place for international transfers, including:

  • Standard contractual clauses
  • Adequacy decisions
  • Binding corporate rules
  • Certification schemes

10. Children's Privacy

Our Services are not intended for individuals under 18 years of age. We do not knowingly collect personal information from children under 18. If we become aware that we have collected such information, we will take steps to delete it promptly.

11. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any material changes by:

  • Posting the updated policy on our website
  • Sending email notifications to registered users
  • Providing in-app notifications

12. Contact Information

If you have any questions about this Privacy Policy or our privacy practices, please contact us:

Email: privacy@humanome.ai

Address: Humanome.AI Privacy Office

Data Protection Officer: dpo@humanome.ai