How your data is handled

Where your data is stored and who can see it

This is a plain summary. The full detail, including the companies involved, is in the Privacy Notice.

Where it is kept

Your data is stored on infrastructure based in Europe and served from the UK. It is sent over encrypted connections, and it is protected at rest by the database host.

Kept to your own account

Bolus separates every account at the database itself, so each person can only ever reach their own data. One account cannot see another’s plans, preferences, or glucose.

Your CGM login, where there is one, never reaches Bolus servers at all. It stays in your phone. See your health and glucose data.

Who Bolus works with

Bolus uses a small number of trusted providers to run the service, for example to host the database, deliver notifications, monitor for errors, and, where it is switched on, power the in-app assistant. These providers only receive what they need to do their job:

  • Error monitoring and analytics do not receive your health data.
  • The assistant receives a purpose-built summary without your email, real name, or account identifier.

Bolus does not sell your data, and there are no advertising trackers in the app.

How long it is kept

Your data is kept while your account exists and removed when you delete it. A few limited records, like proof that you accepted the terms, are held for a set period for legal reasons and then removed. See delete your account.

Back to privacy & security

Still need help?

Email the team and we’ll help you sort it.

support@bolus.health