Privacy Policy
Effective date: 18 April 2026
Last updated: 18 April 2026
Bishopp Lab Pty Ltd (ABN 54 695 338 946, ACN 695 338 946) ("we", "us", "our") operates the NeuroGut AI mobile app ("the App"). This policy explains what information we collect, how we use it, and your rights. We comply with the Australian Privacy Principles under the Privacy Act 1988 (Cth), and where applicable, the EU General Data Protection Regulation (GDPR).
1. Summary (plain English)
- By default, your audio recordings stay on your device. You can optionally share recordings to support gut-brain research or help improve NeuroGut's AI. These choices can be changed any time in Settings.
- We send anonymous biomarker numbers (e.g. heart rate, breathing rate, motility score) to our AI coaching service to generate personalised insights. We do not send your name, email, or any identifying information with these.
- A random device token (a UUID generated on first launch) is used to rate-limit requests. It cannot be traced back to you personally.
- We do not sell your data. Ever.
- NeuroGut AI is a wellness biofeedback tool, not a medical device. It does not diagnose, treat, cure, or prevent any disease.
2. Information we collect
2.1 Information stored on your device
The following is stored locally on your device using encrypted storage. By default it stays on your device. Raw audio recordings leave your device only if you turn on optional sharing (see 2.2a):
- Audio recordings of abdominal sounds (m4a files)
- Accelerometer / motion sensor data captured during a recording
- Profile information you provide: first name, age, condition (e.g. IBS, Crohn's, general wellness)
- Session history: previous recording results, biofeedback comparisons, events you log, intervention history (up to 30 entries, automatically pruned)
- Subscription state: whether you are on a free trial or paid subscription
You can delete all of this at any time through Settings → Clear all data.
2.2 Information sent to our servers
To generate AI-powered coaching insights and audio voiceovers, we send the following to our backend (hosted on Cloudflare Workers) and our AI partners:
- Biomarker values from the current session: heart rate, heart rate variability, breathing rate, gut motility score, vagal readiness score, recording quality score
- Session context: approximate time of day, user-selected posture (e.g. sitting, supine), user-selected stress level (1–10), whether a meal was recent
- Text of coaching messages (for text-to-speech audio generation)
- Anonymous device token: a random UUID generated on first launch, stored locally
We do not send:
- Your name, email address, phone number, date of birth, or other identifying information
- Precise location, IP-based location, or device identifiers linked to your identity
- Contents of your device outside the App
2.2a Optional recording contribution
During setup you can separately choose to contribute recordings to gut-brain research or help improve NeuroGut's AI. These choices are optional, are not required to use the App, and can be changed any time in Settings. If you opt in, the following is uploaded to our secure cloud storage (Google Cloud Platform / Firebase) and used only for the choices you selected:
- Audio recordings of abdominal sounds from your sessions
- Derived measurements and session context (the biomarker values and tags described above)
Contributed data is associated with an app account identifier and is encrypted in transit and at rest. If you separately provide an email for reports or account restoration, it may be stored with your upload metadata. We do not sell contributed data. If you do not opt in, none of your recordings are uploaded. You can change either choice in Settings and request deletion of contributed data at any time (see Section 7).
2.3 Information collected automatically
- Technical diagnostic data for crash reporting and performance (anonymised) — app version, operating system version, generic device model (e.g. "iPhone 15 Pro"), crash stack traces. No user-identifying information is included.
- Subscription status from Apple App Store or Google Play (the stores themselves collect payment information; we receive only a subscription entitlement flag).
3. How we use information
- To generate personalised biofeedback insights using on-device algorithms
- To generate AI coaching text via Anthropic Claude, using only anonymous biomarker values
- To generate spoken audio prompts via ElevenLabs, using only coaching text
- To operate and maintain the App (crash diagnostics)
- To provide customer support when you contact us
- To comply with legal obligations
We do not use your information for advertising, behavioural profiling, data brokering, or training external AI models.
4. Who we share information with
We share only what is strictly necessary for the App to function:
| Recipient | Purpose | What they receive |
|---|---|---|
| Cloudflare, Inc. (USA) | Backend API hosting (Cloudflare Workers) | Anonymous device token, biomarker values, coaching text |
| Anthropic PBC (USA) | AI coaching text generation via the Claude API | Anonymous biomarker values and context, coaching prompt |
| ElevenLabs, Inc. (USA) | Text-to-speech audio generation | Anonymous coaching text only |
| Google LLC (Google Cloud Platform / Firebase) | Secure cloud storage of contributed recordings — only for users who opt in to contribute | Audio recordings and derived measurements, linked to an anonymous identifier only |
| Apple Inc. / Google LLC | App distribution and subscription billing | Payment information (handled directly by the store; we never see it) |
We do not sell, rent, or license your data to any third party for marketing or advertising purposes.
5. Data location and international transfer
Some of our service providers (Cloudflare, Anthropic, ElevenLabs, Apple, Google) are located outside Australia, primarily in the United States. By using the App, you consent to the transfer of anonymous biomarker data to these providers. If you opt in to contribute recordings, those recordings are stored in Google Cloud Platform / Firebase and may be processed or stored in the United States. All providers named above are bound by contractual data protection obligations and industry-standard security practices.
6. Data retention
- On-device data: retained until you delete it. Session history auto-prunes to the most recent 30 entries.
- Server logs (Cloudflare Workers request logs): retained no longer than 30 days, then automatically deleted.
- AI provider logs: subject to each provider's retention policy (typically 30 days or less for the Anthropic API with data retention opted out).
7. Your rights
You have the right to:
- Access the information we hold — your on-device data is viewable directly in the App; for any recordings you have contributed, contact us to request a copy
- Correct any information you believe is inaccurate (via the App's profile settings)
- Delete all your on-device data at any time (Settings → Clear all data). To delete recordings you have contributed to our cloud, use www.neurogutai.com/delete-account or email privacy@neurogutai.com — we will delete them and confirm.
- Withdraw your research contribution or AI-training permission at any time in Settings; no further recordings will be uploaded for withdrawn permissions
- Export your session data (Settings → Export data as PDF)
- Withdraw consent for AI coaching by disabling AI insights in Settings
- Lodge a complaint with the Office of the Australian Information Commissioner (OAIC) at www.oaic.gov.au, or your local data protection authority
To exercise any of these rights, contact us at the email below.
8. Security
- On-device data is stored in each operating system's secure application storage (iOS Keychain / sandboxed file system; Android app-private storage).
- All network communication with our backend is encrypted in transit via HTTPS (TLS 1.3).
- The device token used to authenticate with our backend is a random UUID with no link to your identity.
- We do not require account creation, email addresses, or passwords to use the App.
9. Children
NeuroGut AI is not directed at children under the age of 16, and we do not knowingly collect information from anyone under 16. If you are a parent or guardian and believe your child has provided information to us, please contact us and we will delete it.
10. Not a medical device
NeuroGut AI is a wellness biofeedback tool. It does not diagnose, treat, cure, or prevent any disease. The biomarkers and coaching content are intended for general wellness and self-awareness only. If you have a medical concern, consult a qualified healthcare professional. In an emergency, call 000 (Australia) or your local emergency services.
11. Changes to this policy
We may update this policy from time to time. Material changes will be notified within the App. The "Last updated" date at the top will reflect the most recent version. Continued use of the App after changes constitutes acceptance of the updated policy.
12. Contact us
Bishopp Lab Pty Ltd
ABN 54 695 338 946 · ACN 695 338 946
Unit 7, 118 Ridgeway Ave
Southport QLD 4215, Australia
Privacy queries: privacy@neurogutai.com
General enquiries: michael@neurogutai.com
For complaints about the handling of your personal information, please email us first. If unresolved within 30 days, you may contact the Office of the Australian Information Commissioner at www.oaic.gov.au.