Peptalk Privacy Policy
How Peptalk handles information in the iOS app and backend gateway.
Effective Date
Effective date: June 6, 2026
Overview
Justin Nam operates Peptalk ("Peptalk," "we," "us," or "our"). Peptalk is a harm-reduction memory and research assistant for adults tracking peptide-related goals, dose logs, source evidence, and safety events.
Summary
- Peptalk can use Apple or Google account sign-in for account and payment management.
- Peptalk does not currently use advertising SDKs, tracking SDKs, HealthKit, location, contacts, camera, microphone, photos, or direct payment-card collection.
- Peptalk stores durable app memory locally on your device in PeptalkMemory.json.
- When you use chat or guided research features, Peptalk sends your message and relevant Peptalk memory to the Peptalk backend so the app can generate a response, use evidence search, and assemble memory updates.
- The Peptalk backend uses third-party services, including AWS infrastructure, MiniMax AI, and Brave Search API.
- Peptalk is not emergency care, medical care, diagnosis, treatment, prescribing, or a dose-selection calculator.
Information You Provide
- Chat messages and free-form notes.
- Peptide interests, goals, cycle context, schedules, dose logs, routes, timing, side-effect notes, source evidence, vendor or COA questions, and safety events.
- Guided research answers such as goals, current medications, health conditions, weight context, GLP-1/GIP history, injury context, source status, or other peptide-relevant context.
- Account information returned by Apple or Google sign-in, such as provider user ID, email address, display name, provider email verification status, and Peptalk session token metadata.
- Support information if you contact us directly, such as your email address and the content of your request.
On-Device Storage
Peptalk stores durable memory locally on your device so the app can remember peptide interests, goals, dose logs, schedules, source evidence, and safety events. The current app does not use HealthKit or iCloud for this memory. Removing local memory can be done by using Memory Wipe in Peptalk settings, deleting supported remembered items when the app flow supports it, or uninstalling the app.
Backend and Third-Party Processing
- When you use chat or guided research features, Peptalk transmits your message and relevant local memory to the Peptalk backend.
- The backend uses this information to generate responses, retrieve evidence, assemble validated memory updates, and apply rate limiting, abuse prevention, reliability, and security controls.
- Peptalk currently uses AWS services including CloudFront, AWS WAF, Lambda, CloudWatch, and S3; MiniMax AI for language-model responses; Brave Search API for web evidence retrieval; Apple services for Sign in with Apple, App Store distribution, TestFlight, and Apple-controlled diagnostics or analytics where applicable; and Google Sign-In for Google account authentication.
- Peptalk does not intentionally persist full chat messages or app memory on the Peptalk backend after servicing a request. Operational logs may be created by infrastructure providers. The current AWS backend documentation sets CloudWatch log retention to 14 days. Third-party providers may process and retain data according to their own terms, privacy policies, and data processing agreements.
How We Use Information
- App functionality, including chat, memory, guided research, source evidence, safety-event tracking, and local context.
- Product personalization, such as tailoring responses to user goals, active compounds, remembered context, and prior safety events.
- Account and payment management, including signing into a Peptalk account and linking future billing or purchase-management flows to that account.
- Security and reliability, including rate limiting, abuse prevention, debugging, and service monitoring.
- User support, if you contact us.
- Legal compliance and enforcement of our terms.
Sensitive Health Information
Peptalk may process user-provided health or medical information because users can enter medications, symptoms, dose logs, routes, conditions, reactions, and other health-related context. Peptalk is not a healthcare provider, health plan, pharmacy, drug manufacturer, or emergency service. Unless Justin Nam separately enters a covered relationship that says otherwise, Peptalk is not intended to operate as a HIPAA-covered entity or business associate.
AI Processing Consent
Before Peptalk sends chat, guided research, or memory context to the backend and third-party AI/search providers, the app requires explicit AI/Data Consent. The consent screen names MiniMax and Brave Search API, explains what is sent, and requires an affirmative action before chat or guided research can continue.
Disclosure of Information
- To service providers that help operate Peptalk, including AWS, MiniMax, Brave Search API, Apple, and Google.
- When you direct us to process information through the app.
- To comply with law, legal process, or enforceable government requests.
- To protect rights, safety, security, and service integrity.
- In connection with a merger, acquisition, financing, or sale of assets, subject to appropriate protections.
Retention and Deletion
Local Peptalk memory remains on your device until you delete it, wipe memory through Peptalk, or uninstall the app. The Peptalk backend is designed to process chat and memory context transiently for each request. Account session tokens and provider account identifiers may be retained as needed for account, payment, security, and support records. AWS operational logs are currently configured for 14-day retention in the production backend documentation. Support emails may be retained as long as reasonably needed for support, legal, security, or business records. To request deletion of information you have sent to us outside the local app, contact namjustin148@gmail.com.
Your Choices
- You can avoid sending data to the backend by not using chat or guided research features.
- You can ask Peptalk to wipe remembered app memory or use Memory Wipe in Peptalk settings.
- You can sign out of the account section in Peptalk settings.
- You can uninstall the app to remove local app data from your device.
- You can contact namjustin148@gmail.com for privacy requests.
- You can review privacy choices at https://d2774w1jqc988b.cloudfront.net/privacy-choices.
Children
Peptalk is for adults. It is not intended for children or minors. Do not use Peptalk if you are under 18.
Security
We use reasonable technical and organizational measures intended to protect information. No system is perfectly secure. Peptalk users should not submit emergency information or information they are unwilling to have processed by the backend and third-party providers.
International Processing
Peptalk and its providers may process information in the United States and other countries where they operate. By using Peptalk, you understand that information may be processed outside your location.
Changes
We may update this policy. The effective date above will change when we publish updates. Material changes should be reflected in the App Store listing and in-app privacy disclosures.
Contact
Justin Nam 423 N Donahue Drive, Auburn, AL 36832 namjustin148@gmail.com https://d2774w1jqc988b.cloudfront.net/privacy