Last updated 13 September 2026
TrackingMyCare is a personal health-tracking app. This policy describes what the app and its service collect, how that information is protected, who it is shared with, and how to remove it. It is written to describe what the software actually does.
TrackingMyCare is operated as an independent project. You can reach us at admin@trackingmycare.com. We are the controller of the information described below.
Everything you record in the app: appointments, healthcare providers and facilities, medications, conditions, symptoms, and mood entries, along with any notes and dates you attach to them.
We do not use analytics, crash reporting, advertising, or third-party tracking software of any kind. The app contains no such components. We do not collect your location, your contacts, your device's advertising identifier, or a history of how you use the app. We do not build profiles, and we do not sell, rent, or share your information for anyone else's advertising.
Health records are encrypted on your device with AES-256-GCM before they are sent anywhere. Our server stores them as opaque encrypted blocks and never interprets their contents — the type of record, what it refers to, and when you recorded it are all sealed inside the encrypted data. Everything travels over an encrypted connection, and everything stored on our side sits on storage that is itself encrypted at rest.
An honest limit, stated plainly. The key that encrypts your records is also stored on our servers, encrypted under a separate key held in Amazon's Key Management Service. We keep it there so that losing your password does not mean losing your entire medical history.
The consequence is that we are technically capable of decrypting your records. We do not do this, and no part of the service is built to — but we are not going to tell you that we cannot, because that would not be true.
What this arrangement does protect against is access to the database alone. A copy of our storage, a backup, or an account with read access to it yields unreadable data without the separately-held key.
We do not sell your information, and we do not share it with advertisers, data brokers, or analytics companies. The only third party involved in running the service is Amazon Web Services, which provides the hosting, sign-in, storage, encryption, and email infrastructure the app runs on. AWS processes this information on our instructions in order to operate the service.
We may disclose information if we are legally required to, and we will tell you if that happens unless we are prohibited from doing so.
We send email only when something you did requires it: confirming your account, resetting your password, or verifying a change to your email address. There are no newsletters and no marketing email.
Your records are kept for as long as your account exists, because their whole purpose is to be a history you can look back over. When you delete your account, they are removed from the service immediately.
Our database keeps automatic rolling backups covering the previous 35 days, so that a technical failure on our side cannot destroy everyone's records. Deleted data therefore persists inside those backups until it ages out of that window, after which no copy remains. We use these backups only to recover the service as a whole from a failure — never to restore an individual account, and never to reverse a deletion.
You can delete your account from within the app, under Settings → Delete account. This removes every synced health record, your profile, and the encryption key associated with your account, and deletes your sign-in credentials. The copy stored on your device is erased at the same time.
Deletion is immediate and cannot be undone. There is no grace period and no way for you or for us to bring your records back. We do not reverse deletions, and we will not restore an account from the rolling system backups described under How long we keep it — those exist to recover the service from a failure, not to undo a deletion. Please write down or otherwise keep anything you still need before you delete.
If you cannot access the app, email admin@trackingmycare.com and we will complete the deletion within 30 days.
You can view and correct your information directly in the app, and delete it as described above. Depending on where you live, you may also have the right to request a copy of your information, to object to or restrict how it is used, and to complain to a data protection authority. To exercise any of these, email admin@trackingmycare.com. We will not treat you differently for exercising them.
The information you enter is consumer health data. Some states, including Washington under the My Health My Data Act, give specific rights over it.
Only the people operating this service can access the systems that hold your data, and only for the purpose of keeping the service running.
TrackingMyCare is not intended for anyone under 16, and we do not knowingly collect information from children. If you believe a child has created an account, email us and we will delete it.
The service runs on AWS infrastructure in the United States. If you use the app from elsewhere, your information is transferred to and stored there.
If this policy changes in a way that affects how your information is handled, we will update the date at the top and notify you in the app or by email before the change takes effect.
Questions, requests, or complaints: admin@trackingmycare.com.