Privacy here is not a vague promise. It is a set of concrete choices about where information lives, what leaves the device and who can unlock it.
What reaches a server
Authentication information reaches the sign-in service. In the owner's current early-access setup, an iPhone Shortcut sends selected Apple Health aggregates to a private graph so the app can read them after sign-in. Meal-photo analysis is off by default and only works when a user supplies their own endpoint and key.
What this page does not claim
This is a technical description of the current product, not a blanket claim of HIPAA, GDPR, medical-device or other regulatory compliance. The applicable obligations depend on who offers the service, which markets it enters and how each data flow is operated.
Before public launch
A complete legal privacy notice, terms of service, retention policy, incident process and region-specific data map will be required. They should be written against the deployed architecture and actual business entity, not copied from a generic template.