Lá Nua · a new day

Privacy

Last updated 24 July 2026

Lá Nua is a place to keep a quiet, honest record of your weight, your food, your movement and your medication. That's personal, and some of it is health information. So your health records are end-to-end encrypted — locked on your own device with a key only you hold, and stored with us only as data we cannot read. This page explains — plainly — what we hold, what we can and can't see, and the control you have over it.

The short version

Who we are

Lá Nua is made and run by Joe Vaughan, an individual based in the United Kingdom, acting as the data controller for the information you put into the app. "We", "us" and "our" below mean the same person.

You can reach us about anything on this page — including any request about your data — at dia-duit@lanua.app. A postal address is available on request.

What we collect, and why

We only collect what the app needs to do its job. We don't ask for your real name, your phone number, or your address, and there is no advertising profile built about you.

WhatFor exampleWhy we hold it
Account Email address, a password (stored only as a secure hash, never in plain text), an optional display name To create your account, keep it secure, and let you sign in
Profile Your date of birth, starting & goal weight encrypted; and sex, height and activity level (not encrypted), plus an optional profile photo To work out your daily calorie number (on your device) and show your progress
Medication encrypted Medication name, dose and schedule, and whether you took a dose on a given day Only if you choose to track it — held end-to-end encrypted, so we can't read it
Daily records encrypted Your weigh-ins over time, food you log and its calories, activity you log, journal notes, mood, and any photos you attach This is the app — the record you keep. Held end-to-end encrypted; only you can read it
Technical Your sign-in token (kept in your browser or device), and basic server logs such as IP address and timestamps To keep you signed in and to keep the service secure and working

We do not use cookies to track you. The app keeps a single sign-in token in your device's local storage so you don't have to log in on every visit — nothing more.

End-to-end encryption — what we can and can't see

Your health records don't just sit on our servers behind a lock we hold. They are end-to-end encrypted: encrypted on your own device, with a key that only you have, before they are ever sent to us. We hold your records only in encrypted form — data that only you can read or edit, and that means nothing to anyone without your key. We do not have that key, cannot derive it, and never receive it, so we cannot read your health records, and neither could anyone who unlawfully obtained a copy of our database.

The key is derived from your password on your device. In practice that means:

Encrypted — only you can read it:

Not encrypted — we hold this in readable form to run the service:

The trade-off — please read this

Because your key comes from your password and we never hold it, there is a real cost to that protection: if you forget your password, we cannot reset it for you in the ordinary way, and we cannot recover your encrypted records.

When you first set up encryption, the app showed you a one-time recovery code and asked you to save it. If you forget your password, that code lets you set a new one and keep your data. If you lose both your password and your recovery code, your encrypted health records are gone for good — no one, including us, can restore them. Please keep the recovery code somewhere safe, separate from your password.

Health data, and your explicit consent

This part matters

Your weight over time, your medication and doses, and your mood entries are what data-protection law calls “special-category data concerning health.” The law rightly holds this to a higher standard than ordinary information.

We process this health data on the basis of your explicit consent, which you give when you set up the app and choose to record it. You are never obliged to give it, you can record as little as you like, and you can withdraw your consent at any time by deleting the relevant entries, turning off medication tracking, or deleting your account. Withdrawing consent doesn't undo processing that already, lawfully happened — but it stops it going forward.

Our legal bases

Under the UK GDPR (and the EU GDPR, for users in the EU/EEA), we rely on the following:

Where your data lives, and who can see it

Your health records live on our servers only in encrypted form. No one can read them without your key — not us, not our hosting provider, and not anyone who obtained the data by other means. This is enforced by the encryption itself, not just by policy or access controls.

Lá Nua runs on private servers, located in the United Kingdom. We do not use third-party cloud analytics, advertising networks, or data brokers, and we do not sell or share your data for anyone else's purposes.

A small number of technical providers necessarily help us run the service — for example the infrastructure and hosting that keeps the servers online. They act only on our instructions, under contract, and only to the extent needed to run Lá Nua; for your health records they only ever handle encrypted data. We do not add advertising or analytics "software development kits" to the app.

For users in the EU/EEA: because our servers are in the UK, your data is transferred to the UK. The UK benefits from a European Commission "adequacy" decision, which recognises it as providing an equivalent standard of protection.

Photos

If you add a profile picture or attach a photo to a journal entry, the image is encrypted on your device before it's uploaded, and we store only the encrypted file. As with the rest of your records, we can't see it — it's decrypted only on your own device when it's shown back to you. Photos are never used to train anything, and are deleted when you delete the entry or your account.

How long we keep it

We keep your data for as long as your account is open, because the whole point is the record that builds up over time. When you delete your account, we delete your profile and all of your daily records, meals, activity, journal entries and photos. Because of how the database is built, deleting your account removes everything attached to it.

Backups and security logs may persist for a short, limited period before they rotate out, after which they too are gone.

Your rights

You have the right to:

Because your health records are encrypted with a key only you hold, you access and export them through the app itself, where they're decrypted on your device — that's the only place they can be read. For everything else, email dia-duit@lanua.app. We'll respond within one month. There's no charge for a reasonable request.

Complaints

If you're unhappy with how we've handled your data, we'd genuinely like the chance to put it right — please tell us first. You also have the right to complain to a data-protection regulator. In the UK that's the Information Commissioner's Office (ICO), ico.org.uk. If you're in the EU/EEA, you can complain to your own national supervisory authority.

Note for the EU/EEA: an Article 27 EU representative will be named here once appointed — [EU representative — to be added].

Age

Lá Nua tracks weight-loss and medication information and is intended for adults. You must be 18 or older to use it. We don't knowingly collect data from anyone under 18; if you believe a minor has created an account, contact us and we'll remove it.

Keeping it safe

Your health records are encrypted end-to-end using well-established, audited cryptography (Argon2id to turn your password into a key, and XSalsa20-Poly1305 to encrypt each record). They're encrypted on your device and stay encrypted at rest on our servers — we hold no key that can open them.

Passwords are additionally stored only as secure hashes. Traffic between your device and our servers is encrypted in transit (HTTPS). Access to the servers is restricted. No system is perfectly secure — but because your health records are encrypted with a key we don't hold, even a full compromise of our servers would not expose them.

Changes to this page

If we change how we handle your data, we'll update this page and move the "last updated" date. If a change is significant, we'll do our best to tell you in the app.

Contact

Questions, requests, or second thoughts — dia-duit@lanua.app. There's a real person at the other end.