Privacy & Compliance
Coordinate data protection, user rights, sensitive health-data handling, and internal accountability for Vyla.
No synthetic metrics
This page is an operational guide only. It does not display counts, rates, statuses, or health-data values unless those values are returned by a backend admin endpoint.
Core obligations
guide- Keep Vyla positioned as a wellbeing and cycle information app, not a clinical diagnosis or treatment service.
- Give users working routes to export, correct, delete, and question their data from support and in-app flows.
- Limit internal access to personal and health data to staff who need it for support, security, billing, or legal compliance.
- Maintain current privacy policy, terms, cookie notice, AI disclaimer, and processor list for every release.
Admin checks
guide- Use Audit Log to investigate sensitive access and account actions by actor, action prefix, and timestamp.
- Use Health Data to understand what data categories exist before responding to access or deletion requests.
- Use Billing and Subscriptions to separate financial record retention from account deletion requests.
- Document manual Premium grants, account suspensions, and support escalations with a clear reason.