Who is responsible
LiverWare is built and run by the LiverWare Capstone Team, an independent student team affiliated with the University of the Immaculate Conception for academic purposes. The University is not the operator and does not control or take responsibility for the service.
Under the Data Privacy Act of 2012 (Republic Act No. 10173), the LiverWare Capstone Team is the Personal Information Controller that decides why and how your information is processed.
Responsible team members
Stephen Nailes
Paula Honrada
Troy Peralta
Kert Abajo
Information we collect
What we collect depends on the features you use. Health and medical information is treated as sensitive personal information under Philippine law.
- Account and profile
- Name, email, hashed password, verification status, phone number, date of birth, profile image, and your preferences and security settings.
- Screening and health
- Age, sex, body measurements, lifestyle and history answers, blood-pressure and lipid ranges, alcohol-screening answers, optional laboratory values, and calculated scores and risk tiers.
- Care activity
- Medications, dosages and schedules, dose and refill activity, notes, allergies, reminder preferences, and receipts or images you upload.
- Livvy conversations
- Your prompts, generated replies, titles and summaries, feedback, cited sources, and basic model, timing, and safety metadata.
- Technical and consent records
- Session identifiers, necessary cookies, consent timestamps, the IP address saved with screening consent, and standard server and security logs.
- Location (only when you ask)
- Approximate or precise location is used only for doctor-finder and navigation features. We never track your location in the background.
Google sign-in data
Choose "Continue with Google" and LiverWare requests only the standard openid, email, and profile scopes. These let us sign you in and receive your Google account identifier, name, email address, profile image, and verification status.
We never request or access your Gmail, Google Drive, Google Calendar, Google contacts, Google passwords, or any other Google content, and we do not store Google OAuth access or refresh tokens. Your Google identity is used only to create, link, and secure your LiverWare account.
Google sign-in is optional and handled under Google's own terms and privacy practices. You can use standard registration instead when it is available.
How we use information
Run the service
Create and secure accounts, save screening records, calculate results, and power the medication and food-guidance tools.
Personalize education
Show relevant explanations, reminders, and guidance based on the information you choose to share.
Keep it safe
Prevent unauthorized access, investigate problems, enforce user boundaries, and keep audit records.
Communicate
Send verification, requested reminders, and important account or privacy notices.
Sensitive health information is processed with your consent for the screening, education, tracking, and safety purposes above. You can stop using optional features or adjust your preferences at any time.
AI and service providers
LiverWare relies on trusted providers to operate. We send only the information a feature actually needs.
- Google Identity and Gemini
- Handle optional sign-in and generate Livvy's educational replies and summaries from your prompts and limited context.
- Supabase
- Hosted database and storage for application records and private medication uploads in configured deployments.
- Voyage AI and Tavily
- Process a query or derived search text for retrieval and ranking, and fetch current public web sources when Livvy needs them.
- Mapbox
- Processes map, route, and location requests when you actively use doctor-navigation features.
- Email delivery
- Resend or another configured provider sends your verification, reminder, and account messages.
- Hosting and security
- Hosting, queue, logging, and security services process request metadata needed to run and protect the app.
Each provider follows its own privacy terms. As this capstone develops, providers may change. We will update this policy if a change materially affects how your personal data is processed.
Security
We use safeguards suited to a health-focused capstone: hashed passwords, authenticated and owner-scoped access, private-file controls, session protection, input validation, and encrypted connections in production.
No online service is perfectly secure. If we learn of a data incident that requires notice under the law, we will act to contain it and provide the required notifications.
Your rights and choices
Under the Data Privacy Act of 2012 and its implementing rules, you can:
Be informed
Know whether and how your personal information is processed.
Access
Request reasonable access to the information held about you.
Correct
Ask for inaccurate or incomplete information to be fixed.
Object
Object to processing when a lawful basis lets you.
Erase or block
Request deletion or blocking where the legal conditions apply.
Data portability
Request an electronic copy where portability applies.
File a complaint
Raise a concern with us or the National Privacy Commission.
Claim damages
Seek damages when the law provides for them.
Account deletion
Settings includes an account-deletion request flow. Requests are reviewed rather than completed instantly, and we may need to verify your identity or retain limited information for security, legal, or technical reasons.
Children
LiverWare is designed for adults and is not intended for children under 18. We do not knowingly invite children to create accounts or submit health information. If you believe a child has provided personal information, contact us so we can review it.
Updates and contact
We may update this policy as LiverWare, our providers, or the law changes. The new effective date will appear at the top of this page, and we will flag material changes inside the app where practical.
Privacy questions and requests can be sent to privacy@liverware.example. You can also learn about your rights or file a complaint with the Philippine National Privacy Commission.