Last updated: September 2, 2026
What this notice covers
This notice covers the Duet iPhone app, duetglp.com, the public care directory, and messages sent to Duet support. Duet is a tracking and educational product, not a healthcare provider, and it does not provide medical advice.
Information in the iPhone app
Duet stores the information you enter — such as medication and schedule details, dose history, weight entries, notes, and app settings — in a database on your device first. This local-first design keeps core tracking available while you are offline.
If you choose to create or open an account with Sign in with Apple, an email sign-in link, or an email and password, Duet receives an account identifier, your email address, and any name Apple provides with your permission. Duet uses Supabase to authenticate the account and privately sync your medication, dose, weight, note, and related tracking records across your devices. Synced records are linked to your account so they can be returned only to you under database access controls. Supabase also retains authentication and network logs — including the account identifier, IP address, user agent, event, and timestamp — for security, fraud prevention, reliability, and troubleshooting.
Apple Health access is optional and begins only when you use a related action. When you tap the import action, Duet can request read access to Body Mass, waist circumference, lean body mass, body-fat percentage, protein, water, dietary energy, and fiber. It uses incremental queries, imports Body Mass into your tracking record, and shows other supported progress values as private context for that import. On iOS 26 or later, Duet can also request per-medication access and import matching taken-dose events as a read-only source; Duet never creates or changes medication data in Apple Health, and its own dose log remains authoritative. Duet skips Health objects it has already imported.
When you add a manual weigh-in, an off-by-default control lets you choose whether Duet also saves that Body Mass sample to Apple Health. When you log a supported symptom and authorize Health access, Duet can save the matching Apple Health symptom category; red-flag observations without an Apple category are not written. The Duet record is saved on your device first even if Health is unavailable or you decline permission. Duet does not use advertising SDKs and does not sell your data. Product analytics (PostHog) are off unless you turn them on and record only a fixed set of app-action counts, such as opening a reminder or viewing the subscription screen. When enabled, PostHog processes a pseudonymous per-install identifier with those counts; Duet does not send your account name, email address, health records, or custom event properties to PostHog. Your doses, weights, nutrition entries, symptoms, photos and notes are never sent to it.
Partner sharing is optional and starts only when you create an invite and one other account redeems it. A connected partner can receive only the metric categories you select, such as dose history, side effects, a weight trend, adherence, or a streak. Duet stores the partner relationship and grant choices in Supabase, keeps partner payloads in a separate evictable cache on the device, and removes that cached copy when a grant or the relationship ends. You can change the selected categories or end the connection at any time.
A pair can also exchange short written responses to the shared weekly update (an acknowledgment or a brief note back) and contribute questions to a shared appointment list. These are stored in Supabase and visible only to the two accounts in the pair; either person can delete their own message or question. When you prepare a provider summary, only the questions you explicitly mark as included are added to it.
Duet uses RevenueCat to present optional subscription products, complete purchases through Apple, restore purchases, and determine whether Premium features are active. RevenueCat receives a pseudonymous app account identifier and purchase, product, store, environment, and entitlement status; it does not receive the medication, dose, weight, symptom, note, Apple Health, or partner payloads stored by Duet. Apple processes payment information under its own terms. RevenueCat sends signed entitlement updates to Duet's Supabase backend so Premium features can be verified server-side.
Apple may process information associated with downloading the app, device backups, crash diagnostics you choose to share with Apple, and other operating-system services under Apple's own privacy terms. Device backups may retain app data according to your Apple and device settings.
Information on the public website
The website does not need or receive the private medication, dose, weight, or note records stored in the app. Like most websites, its hosting providers may process standard request information such as IP address, browser and device type, requested pages, and timestamps for delivery, reliability, and security.
The public directory retrieves published business-listing data from Supabase and renders maps with Mapbox. The public directory and private tracker use the same Supabase project but separate tables, roles, row-level security policies, and explicit privileges. Public website visitors cannot query private tracker tables. These services may receive the technical request information needed to return listings or map tiles. The site does not currently request precise device location, set first-party cookies, or store search history in local or session storage.
Messages you send us
If you email hello@duetglp.com, we receive your email address and the content you choose to send. Please do not send medical records or urgent health information by email. We retain support messages only as long as reasonably needed to respond, maintain a record of the request, and meet legal obligations.
Sharing and sale
Duet does not sell your account or health-tracking information and does not use it for cross-app tracking or advertising. We disclose data to service providers such as Apple, RevenueCat, and Supabase only as needed to authenticate accounts, deliver the app, process and restore purchases, sync records, protect the service, and provide support. Private tracker records are not available to the public website or directory.
Deletion and retention
You can delete supported records, export your account data, or permanently delete your Duet account from the Account tab in the app. Confirmed account deletion deletes the authentication account, synced tracker records, and the tracking database stored on that iPhone. Deleting the app removes its local database from that device but does not by itself delete a synced account; use the in-app account-deletion control first. Copies may remain temporarily in encrypted backups, security logs, or provider recovery systems until those systems rotate under their retention schedules.
Public directory data is business-listing information rather than app health-tracking data. To request a listing correction or removal review, email us with the place name, city, and the detail to check.
Security
We use reasonable technical and organizational safeguards appropriate to the current product. No storage or transmission method is completely secure, so this notice does not promise absolute security or make a HIPAA-compliance claim.
Children
Duet is not directed to children under 13, and we do not knowingly collect personal information from children under 13 through the app or website.
Changes and contact
We will revise this notice when the product's data flow changes and update the date above. Questions, access requests, and deletion or correction requests can be sent to hello@duetglp.com.