Collection and Use of Personal Information
You are not required to provide personal or medical information as a condition of using our App, except as may be necessary to provide you with information, products or the Services at your request. If you request information, products, or Services through the App, or ask us to resolve complaints or concerns, we may require certain information necessary to fulfill your request (e.g., your name, contact information, and other identifying information). Personal information that you provide may be used by CEFALY to provide you with information, such as the Services and educational information about our products or information about new products or services. We may use aggregated and anonymized data for market research and other marketing purposes. Please do not submit any personal information if you do not want it to be collected by us.
We collect personal information only when you provide it to us, through registration, completion of forms or e-mails, as part of the Services, inquiries or similar situations in which you have chosen to provide the information to us. If you choose not to provide any requested personal information, you may be unable to access certain areas of the App, such as password protected areas, and you may not be able to use the Services, as the use of personal information, including medical information, is necessary for the performance of the Services. We will retain control of and responsibility for the use of any personal information you disclose to us.
You may opt-out of any marketing communications you receive from us for new products or services by following the instructions in the communications you receive. We will continue to send communications that are required or necessary to send to the users of our Services. These notifications contain important information, and you may not opt out of receiving these communications without cancelling our Services and requesting us to delete your personal information.
Data Retention and Deletion
We retain your personal information, including account information and health‑related data, only for as long as your account remains active and as necessary to provide the App’s features and services. An active account is one that has not been deleted by the user.
We do not retain user data indefinitely. If your account is inactive or you request deletion, your data will no longer be used for providing services and will be removed as described below.
In some cases, limited information may be retained only as required or permitted by applicable law, such as for regulatory compliance, dispute resolution, security, fraud prevention, or enforcement of our agreements. Any data retained for these purposes is kept only for the minimum period required.
Account and Data Deletion
You may delete your account within the App at any time. Simply go into Settings, then select “About & support,” then “Delete account.” You may also request deletion of your associated personal and health data at any time.
To request deletion, please contact us at info@cefaly.us using the email address associated with your account. We may request additional information to verify your identity before processing the request.
Once your request is verified:
- Your account will be deactivated and deleted
- Your associated personal data and health data will be permanently removed from our active systems
- You will no longer be able to access the App or retrieve your data
Please note that account and data deletion may take up to 30 days to complete. This timeframe allows us to securely process the request, remove data from our systems, and address any legal or operational requirements.
During the deletion process, your data may temporarily remain in encrypted backups or logs. Such data is securely stored, not accessible for use, and is permanently deleted in accordance with our standard backup retention cycles.
If you have any questions about data retention or deletion, you may contact us at info@cefaly.us.
Data Processed by Us When You Use Our App
When You Create A Cefaly App Account
If you want to access data collected by your mobile device using the App, you must create an account in the Cefaly app. When you create an account, we ask for some personal information, including your email address and a password. Your email address will be used to log in to your account. You are responsible for taking reasonable steps to ensure that no unauthorized person has access to your password or account log in information.
When You Add Information to Your Profile
You can customize your app experience by adding other types of information to your account, such as: Name, Gender, Birthdate, and information about your personal migraine experience.
Full use of the Cefaly app requires that you record information related to your migraines, such as your pain intensity, your pain location, your symptoms, your triggers, your medication, your reliefs, your menstruation, etc. When you log a treatment or session with the Cefaly app using a Connected device, the treatment time and date, treatment duration, and highest intensity reached will also be automatically recorded.
Your app activity (including information about your symptoms and triggers, and the Connected device treatment information) is transferred from your mobile device to our servers. This data is stored and used to provide Services and is associated with your account. Each time a sync occurs, we log data about the transmission. Some examples of the logged data are the sync time and date, and the IP address used when syncing.
When You Use The “Export Report” Feature
When you use the “Export Report” feature on the App, a PDF report (the “Report”) will be sent to the email that you used to log in the App. Once the Report is sent to your email address, CEFALY assumes no responsibility or liability for the Report download or any sharing of the contents of the Report once delivered to your email address.
When You Sync Your Mobile Device
When you sync your mobile device through CeCe, data recorded on your mobile device using the App about your activity (including information about your symptoms and triggers, and the Connected device treatment information) is transferred from your mobile device to our servers. This data is stored and used to provide Services and is associated with your account. Each time a sync occurs, we log data about the transmission. Some examples of the log logged data are the sync time and date, and the IP address used when syncing.
When You Integrate the Cefaly App With Third-Party Health Platforms and Wearables
The Cefaly app collects and uses certain health‑related data to identify correlations between your lifestyle and migraine episodes, helping you better manage triggers.This data is accessed only with your permission and is used solely within the app to provide insights and improve your experience.
Health Data We Access or Collect
With your consent, the Cefaly app accesses health and sensor data from your third-party wearable device(s) and/or health platform(s) through Terra Health SDK. This data may include:
- Heart rate
- Steps and activity levels
- Body data (such as weight, BMI, blood pressure)
- Other migraine-related health data, such as menstruation and nutrition data
How This Health Data Is Used
The Cefaly app uses this health data to:
- Show activity, sleep, and physiological signals that may correlate with migraine episodes
- Help you visualize and better understand how lifestyle and health factors may relate to your migraines
- Provide personalized insights within the app to support migraine tracking and management
This data is used only to deliver features and insights directly to you within the Cefaly app and is not used for advertising or profiling outside of the app experience.
Sharing of Health Data
Your health data is not shared with any third parties. The data accessed through Terra is used exclusively by the Cefaly app to provide the features described above
Your Control
You can control whether the Cefaly app has access to your health data at any time by adjusting your device or app permissions.
When You Contact Us For Help
Whenever you contact CEFALY for help with the Cefaly app, we collect your email address along with additional information you provide in your request so that we can provide you with assistance and improve the Services.
We may process behavioral analytical data such as, whether notifications (may include alerts, sounds and icon badges) are on or off, whether permission has been given to receive a newsletter and any health data you have provided. This is to personalize the user experience, customize your content and provide personalized offers to you, and to track the performance of the App and user behavior so that we can improve the user experience, and to improve, develop and provide a better personalized product and service.
By using, accessing and inputting information in the App, you agree that any and all migraine data (excluding personal information) that you have entered or may enter at a future time, into the App, as well as any data you may enter into related features or Services of the App (which are not present at the moment within the App, but which may be introduced at any time in the future), you consent to the compilation, processing, and analyzing of these statistics by CEFALY.
(i) Where do we store your data?
We store your data (self-recorded data, phone sensor data and analytics data) in controlled cloud servers, and on some third-party servers that are used as CEFALY’s service providers, such as AWS. Your data may be stored in a location outside your country of residence, including in the United States.
(ii) How long do we store your data?
Your data will be stored until we no longer need the information, or until you request deletion of your account and data. Legal, tax, or accounting requirements may require us to keep your data for longer periods. You may request to have your data removed at any time by contacting info@cefaly.us.
(iii) How do we use your data?
Health data collected through the App, including data made available through Apple Health, Health Connect, or connected devices via third-party services such as Terra Health SDK, is used solely to provide and improve the Services, including helping you understand patterns related to your migraine episodes within the App. This health data is not used for marketing or advertising purposes. Your health data is encrypted in transit and at rest using industry-standard security measures. You may withdraw your consent or request deletion of your health data at any time by contacting info@cefaly.us.
(iv) How do we protect your data?
Your health data is encrypted in transit and at rest using industry-standard security measures. You may withdraw your consent or request deletion of your health data at any time by contacting info@cefaly.us.