EXIA BIO logo EXIABIO
Menu
Privacy & Data Protection Notice

How Exia Bio protects biomarker data.

This notice explains how Exia Bio Pte. Ltd. collects, uses, protects, retains, and manages personal data submitted through our website, Exia Bio Companion, intake forms, dashboards, and support channels.

Exia Bio handles uploaded screening reports, biomarker values, selected Sentinel pathways, dashboard records, and related support messages in accordance with Singapore’s Personal Data Protection Act 2012.

01

Data we collect

  • Name, email address, contact details, and account identifiers
  • Uploaded blood screening reports, laboratory report images, or PDF files
  • Biomarker values, units, reference intervals, report dates, and extracted report metadata
  • Selected Sentinel pathways: Executive Performance, Training & Recovery, Metabolic & Body Composition, and Longevity & Resilience
  • Health goals, lifestyle context, consent confirmations, and intake-form answers voluntarily submitted by you
  • Payment status, transaction references, dashboard access records, support requests, and service communications
02

Exia Bio Companion and Health Connect

  • Exia Bio Companion may request read access to Steps and Sleep through Android Health Connect using the READ_STEPS and READ_SLEEP permissions.
  • Companion accesses Health Connect data only after you grant the relevant Android permission. You can revoke that access in Android settings or Health Connect.
  • The current governed app uses aggregate Steps and Sleep information to calculate bounded daily wearable summaries. It does not request Health Connect write permissions.
  • The current release does not request exercise-route, location, heart-rate, distance, speed, or other broader Health Connect categories.
  • Raw Health Connect records and raw wearable samples are not uploaded or stored by Exia Bio Companion. When backend policy does not authorize sync, Companion does not transmit a wearable summary to Exia Bio.
  • If a future governed sync is enabled for your account, Companion may send only the bounded daily Steps and Sleep summary and necessary account/session metadata described in this notice. This notice does not mean production sync is currently active.
03

Why we collect and use your data

  • To provide Exia Bio services and generate your Sentinel dashboard
  • To extract and structure biomarkers from uploaded reports
  • To perform biomarker audit, performance-friction mapping, missing-marker analysis, and dashboard quality control
  • To personalize interpretation based on your selected pathway or pathways
  • To provide support, follow-up clarification, and service updates
  • To maintain security, audit logs, payment records, and compliance documentation
  • To improve service reliability, dashboard functionality, and the Sentinel Engine using anonymized or aggregated data where appropriate
05

How biomarker data is used

  • Sentinel Efficiency Score
  • Biomarker category review and cross-marker signal mapping
  • Performance-friction summaries and pathway-specific interpretation
  • Missing-marker gap analysis and upgrade recommendations where relevant
  • Dashboard trend comparison if future reports or re-tests are uploaded
  • Safety flags where results appear outside the context Exia Bio is designed to explain, suggesting review by a licensed healthcare professional
06

What we do not do

  • We do not sell your identifiable biomarker data to advertisers.
  • We do not provide medical diagnosis, treatment, medication prescription, or emergency medical review.
  • We do not use your biomarker data for unrelated marketing without separate consent.
  • We do not disclose identifiable data to unrelated third parties except as required to provide the service, comply with law, protect safety, or enforce our rights.
07

Cloud services and third-party processors

  • Azure and Azure AI or related document-intelligence infrastructure
  • Payment gateway providers for transaction processing
  • Secure intake form and dashboard hosting providers
  • Email, support, security, analytics, and operational service providers
  • Where personal data is transferred outside Singapore, Exia Bio will take reasonable steps to ensure appropriate protection consistent with applicable law.
08

Data retention and deletion

  • Exia Bio retains uploaded reports, biomarker records, and generated dashboard data while your dashboard or account remains active, or as needed for legal, security, audit, operational, or dispute-resolution purposes.
  • You may request deletion of your account and associated personal data. For Exia Bio Companion and Google Play account or specific data deletion requests, use delete-account.html.
  • Deletion requests may be subject to lawful retention requirements, security records, payment records, or unresolved disputes.
  • Aggregated or anonymized data that no longer identifies you may be retained to improve service reliability and analytical logic.
09

Access, correction, and withdrawal

  • You may request access to, correction of, or withdrawal of consent for continued use of your personal data by contacting the Data Protection Contact. We may need to verify your identity before processing such requests.
10

Data incidents and breach notification

  • If a data incident occurs, Exia Bio will assess the incident and take appropriate containment, investigation, remediation, and notification steps. Where a data breach is notifiable under applicable law, Exia Bio will notify affected individuals and/or relevant regulators where required.
11

Data Protection Contact

For privacy requests, access or correction requests, consent withdrawal, deletion requests, or questions about this notice, contact:

Exia Bio Data Protection Office

Data Protection Contact

Exia Bio Pte. Ltd.

[email protected]

Subject line: Data Protection Request