1. Home
  2. Knowledge Base
  3. c-med°
  4. Privacy Policy c-med° alpha and c-med° App

Privacy Policy c-med° alpha and c-med° App

cosinuss° takes the protection of your personal data very seriously. We only collect and store data that is necessary for the purpose of the products and services described here. We treat collected data confidentially and in accordance with the statutory data protection regulations.
This privacy policy applies to the c-med° iPhone and Android apps (hereinafter “app”), which can only be used in combination with the c-med° alpha. The c-med° alpha is a vital signs monitor that can be worn in the ear and continuously records human biosignals, calculates vital signs and transmits the values in real time to the c-med° app. This declaration explains the type, purpose and scope of data collection in the context of app use.

What data is collected when using c-med° alpha in combination with the c-med° app?

The c-med° alpha generates and sends data to the c-med° app via Bluetooth Low Energy, but does not store any data itself. If there is no Bluetooth connection for a short time, the vital parameter data recorded and calculated by the sensor will be lost at that time. The app displays the received data and does not require you to enter any personal data (no user profile creation necessary).
A measurement can be stopped at any time by exiting the app or turning off the sensor.

The following data is generated when using c-med° alpha with the c-med° app and displayed or partially stored in the app:

Data generated by c-med° alpha and c-med° app

Data Description Storage
Metadata
c-med° alpha

(with associated firmware)

MAC Address Identification number Storage

in app & server.

Unique Device Identification Identification number Storage

in app & server.

Firmware Version Version number Storage

in app & server.

Bluetooth Device Name Identification number Storage

in app & server.

Sensor Size Identification number Storage

in app & server.

c-med° App
App Version Version number Storage

in app & server.

Data generated
Quality indicators
Quality index Index to assess the reliability of the pulse measurement. No storage.

Display only.

Perfusion index An indicator of the reliability of oxygen saturation. No storage.

Display only.

Vital signs (calculated by c-med° alpha)
Body temperature Body temperature (°C or °F) No storage.

Display only.

Pulse rate Beats per minute (bpm) No storage.

Display only.

SpO2 Arterial oxygen saturation

of the blood (%)

No storage.

Display only.

Derived parameters
RR interval Time between heartbeats (milliseconds) No storage.

No display.

The device information of the c-med° alpha is stored both in the app and on the cosinuss° server located in Germany in order to track the version numbers and update history of the devices at any time and to be able to provide qualified support. With the help of the stored information about the c-med° alpha in the app, a better user experience is guaranteed and this information is necessary to be able to inform the user about an update of his c-med° alpha via the c-med° app.

The c-med° app serves as an extended display of the c-med° alpha in-ear sensor system and therefore does not provide for storage of the calculated and transmitted vital parameter data of the user. The data is displayed for 30 seconds, after which it is irreversibly deleted.

Please note! Cosinuss GmbH has no access to your data via the c-med° app and does not transmit any data to third parties without your prior consent.

Please note! As a user, please protect the display of your data on your local receiving device against unauthorized access on your own responsibility. Please only use trusted and secured devices and services.

Data collected on the basis of granted access rights

Location data & Bluetooth

In order for you to connect your c-med° alpha to your receiving device via Bluetooth Low Energy, your operating system (usually the case with Android) will require access to your location data. The c-med° app and Cosinuss GmbH have no influence on this access and do not obtain access to your location data.

Cosinuss GmbH also points out that data transmission via Bluetooth involves security risks. Complete protection of data against access by third parties is not possible.

Update of the c-med° alpha

In order to keep your c-med° alpha always up to date, you as a customer have the possibility to retrieve updates for the sensor via the c-med° app and to install them on the device. When an update is performed, the app sends the following data to the cosinuss° server:

Data Description Storage
Metadatea
c-med° alpha
MAC Address Identification number Storage

on server.

Unique Device Identification Identification number Storage

on server.

Firmware Version before Update Version number Storage

on server.

Firmware Version after Update Version number Storage

on server.

Time of Updates Time stamp Storage

on server.

c-med° App
App Version Version number Storage

on server.

Smartphone
Device model Identification number Storage

on server.

Android Version Version number Storage

on server.

cosinuss° needs to collect this information for regulatory purposes and uses it to improve the c-med° app and sensor as well as to be able to fix potentially occurring bugs more quickly.

Error analysis

Upon your optional consent, in case of a technical error, you may authorize a technical event log (log file) to be sent to Firebase Crashlytics for a specific error event. The log file is also provided to cosinuss° and helps the development team to know about errors and to find and fix the cause of them. In the log file, device information of the c-med° alpha and your smartphone, c-med° app version information and settings of your operating system at the time of the error are sent along. Recorded vital signs will be explicitly not sent along. Firebase Crashlytics is operated by Google. The respective privacy policies can be found at https://privacy.google.com/ and https://firebase.google.com/support/privacy/. Submitted data may be retained in Firebase’s processing systems for an extended period of time.

Location of the cosinuss° servers

The cosinuss° servers are provided and hosted by Hetzner Online GmbH, located at Industriestrasse 25, 91710 Gunzenhausen. A corresponding data processing agreement exists between the parties. The servers are located in Nuremberg and Falkenstein (Vogtl.) in Germany. Hetzner Online GmbH is DIN ISO/IEC 27001 certified and thus offers the legally required protection for personal data.

Further services of Cosinuss GmbH

Apart from the use of the c-med° alpha and the c-med° app, you will come into contact with external links and websites, e.g. when making purchases, customer service inquiries or other services of Cosinuss GmbH.
The European General Data Protection Regulation (“GDPR”) applies to all pages and services of Cosinuss GmbH. Please refer to the data protection information on the respective websites.

Information, deletion, blocking

You have the right at any time to free information about your stored data, its origin and recipient and the purpose of data processing, as well as the right to correct, block or delete this data.

For this purpose, as well as for further questions on the subject of data, you can contact the responsible office at cosinuss° at any time using the contact details provided.

 

Right of appeal to the competent supervisory authority

We would like to point out that you have the right to lodge a complaint with the responsible supervisory authority in the event of data protection violations. The competent supervisory authority for data protection issues is usually the state data protection commissioner of the federal state in which cosinuss° has its headquarters. A list of data protection officers and their contact details can be found in the following link: https://www.bfdi.bund.de/EN/Home/home_node.html

Amendment of this privacy policy

We reserve the right to change this privacy policy in compliance with the law and to request your consent again.

Responsible entity

The “responsible entity” is the entity that collects, processes or uses your personal data. The responsible entity for data processing within the scope of this app is:

Cosinuss GmbH,
Kistlerhofstraße 60,
81379 Munich,
Germany,
Phone.: +49 (0)89 740 418 32,
E-Mail: dataprivacy@cosinuss.com