GDPR Compliance

Your data protection rights under the General Data Protection Regulation

Last updated: February 1, 2026

GDPR Compliance

Beybico is fully compliant with the General Data Protection Regulation (GDPR), the EU's comprehensive data protection law.

We respect and protect the privacy rights of all our users, especially those in the European Union and European Economic Area.

Your Rights Under GDPR

Right to Access: You can request a copy of all personal data we hold about you.

Right to Rectification: You can correct any inaccurate or incomplete data.

Right to Erasure (Right to be Forgotten): You can request deletion of your personal data.

Right to Restriction of Processing: You can request that we limit how we use your data.

Right to Data Portability: You can request your data in a machine-readable format.

Right to Object: You can object to certain types of processing.

Right to Withdraw Consent: You can withdraw consent at any time.

Data We Process

We process: account and profile data (email, name, preferences); pregnancy data (e.g. last menstrual period, due date); health check-in data (symptoms, weight, notes—stored encrypted where indicated in our Privacy Policy); consent records (e.g. acceptance of privacy policy and terms, including IP and user agent for compliance); and device tokens for push notifications. Retention is as described in our Privacy Policy and in the Data Retention section below.

Legal Basis for Processing

Consent: We process your pregnancy tracking data based on your explicit consent.

Contract: We process certain data to provide the services you've requested.

Legitimate Interests: We may process data for product improvements and security.

Legal Obligation: We process data when required by law.

Third-Party Processors

We use Firebase (Google) for analytics, crash reporting, and push notifications. Data shared with Firebase is used only for these purposes (app operation, stability, and optional push notifications). We do not use Firebase or any processor for advertising or cross-app tracking. If data is processed outside the EEA, we rely on appropriate safeguards such as Standard Contractual Clauses.

Technical and Organizational Measures

Encryption: Sensitive health data is encrypted at rest using field-level encryption. Data in transit is protected with HTTPS.

Access controls: Access to personal data is restricted and logged. Our team does not have access to your decrypted health data.

Consent logging: We record your consent (e.g. for privacy policy, terms, data processing) with version, date, and where required for compliance, IP address and user agent. These records support accountability and your right to demonstrate consent.

We apply data minimization, regular security practices, and review our measures periodically.

Data Retention

Active Account Data: We retain your data as long as your account is active.

Deleted Account Data: After account deletion, we retain data for 30 days to allow recovery, then permanently delete it.

Legal Requirements: Some data may be retained longer to comply with legal obligations.

Anonymous Analytics: Aggregated, anonymous data may be retained indefinitely for research and improvement purposes.

International Data Transfers

Your data is primarily stored on secure servers within the EU.

If we transfer data outside the EU, we ensure appropriate safeguards are in place (such as Standard Contractual Clauses).

You will be informed of any international data transfers and your rights in relation to those transfers.

Data Protection Officer

We have appointed a Data Protection Officer (DPO) to oversee GDPR compliance.

You can contact our DPO regarding any questions about your data or GDPR rights:

Email: gdpr@beybico.com

How to Exercise Your Rights

Access your data: Log into the app to view your data, or contact us at gdpr@beybico.com for a copy.

Delete your data: In the app, go to Profile → Settings → Delete account. For step-by-step help, see our Support page. You can also contact us at gdpr@beybico.com.

Export your data: Request a data export by contacting gdpr@beybico.com or via our Support page.

Privacy choices: For a summary of your rights and how to manage your data, see the Your Rights and Choices section of our Privacy Policy.

File a complaint: You have the right to lodge a complaint with your local data protection authority.

Automated Decision Making

Beybico does not use automated decision-making or profiling in ways that produce legal or similarly significant effects.

Any personalized content recommendations are provided for informational purposes only and do not constitute medical advice.

Children's Privacy

Beybico is intended for users who are at least 16 years old or the age of digital consent in their country.

We do not knowingly collect data from children under the applicable age of consent.

Updates to This Policy

We may update our GDPR compliance procedures from time to time.

You will be notified of any material changes via email or app notification.

Continued use of Beybico after changes constitutes acceptance of the updated terms.

Contact & Questions

If you have questions about GDPR compliance or wish to exercise your rights:

GDPR Inquiries: gdpr@beybico.com

General Support: support@beybico.com

We will respond to all requests within 30 days as required by GDPR.

Exercise Your Rights

Delete your account or get step-by-step help: Support. View access, deletion, and other choices: Privacy Policy — Your Rights and Choices.