Privacy Policy

Effective Date: February 25, 2026 — Kier Therapeutics

Kier Therapeutics ("we," "us," or "our") operates the Nurtra mobile application ("App"), designed to support individuals managing binge eating disorder. We are deeply committed to protecting the privacy and confidentiality of your personal and health information. This Privacy Policy explains how we collect, use, safeguard, and handle your information when you use the Nurtra App on iOS and Android devices.

Please read this Privacy Policy carefully. By using the Nurtra App, you agree to the practices described in this policy. If you do not agree, please do not use the App.

1.Information We Collect

We collect the following categories of information to provide and improve the Nurtra App.

1.1 Personal Information

When you create an account or use the App, we may collect your full name, email address, date of birth (to verify age eligibility), and your username and password.

1.2 Health and Eating Behavior Data

Because Nurtra is a health-focused app, we collect sensitive health-related data, including:

  • Eating logs (meal times, food types, and portion sizes you enter)
  • Binge eating episodes you choose to record
  • Mood and emotional state entries
  • Progress notes, journal entries, and self-assessments
  • Goals and recovery milestones you set within the App

This information is classified as sensitive health data and is treated with the highest level of care and protection.

1.3 Payment Information

If you subscribe to a paid tier of Nurtra, we collect payment information necessary to process your transaction, including credit or debit card details, billing address, and transaction history. Payment processing is handled through secure, industry-standard payment processors. We do not store your full card number on our servers.

1.4 Device and Technical Information

We may automatically collect certain technical data to ensure the App functions correctly, including:

  • Device type and operating system version
  • App version
  • Crash reports and error logs
  • General usage data (e.g., features accessed, session duration)

2.How We Use Your Information

We use the information we collect solely to provide and improve the Nurtra App experience. Specifically, we use your data to:

  • Create and manage your user account
  • Deliver the core features of the App (including tracking, journaling, and progress monitoring)
  • Process payments for subscriptions or in-app purchases
  • Send important account-related communications (e.g., password resets, policy updates)
  • Improve app functionality and enhance user experience based on aggregate, de-identified usage patterns
  • Comply with applicable legal obligations

We do not use your health data for advertising, marketing profiling, or any purpose unrelated to your direct use of the App.

3.How We Protect Your Information

We take the protection of your data — especially sensitive health information — very seriously. We implement the following safeguards:

Encryption in Transit

All data transmitted between the App and our servers is encrypted using TLS (Transport Layer Security).

Encryption at Rest

Sensitive health data stored on our servers is encrypted at rest using industry-standard encryption protocols.

Access Controls

Access to personal and health data is strictly limited to authorized personnel who need it to operate or improve the App.

Secure Payment Handling

Payment information is processed using PCI-DSS-compliant payment systems.

Regular Security Reviews

We conduct periodic assessments of our security practices and infrastructure.

While we take every reasonable precaution to protect your data, no method of electronic storage or transmission is 100% secure. We encourage you to use a strong, unique password for your Nurtra account.

4.Sharing of Your Information

We do not sell, rent, trade, or share your personal or health information with any third parties for their own use. We may disclose your information only in the following limited circumstances:

  • Legal compliance: If required by law, court order, or government authority, we may disclose information as legally obligated.

  • Protection of rights: We may share information when necessary to protect the safety, rights, or property of Kier Therapeutics, our users, or the public.

  • Business transfers: In the event of a merger, acquisition, or sale of assets, your information may be transferred to the successor entity, subject to the same privacy protections described in this policy. You will be notified in advance of any such change.

5.Your Rights and Choices

We believe you should have control over your personal information.

5.1 Access and Correction

You may access and update your personal information at any time through your account settings within the App.

5.2 Data Deletion

You have the right to delete your account and all associated data at any time. To do so, go to Settings > Account > Delete Account within the App, or contact us at privacy@kiertherapeutics.com. Upon account deletion, we will permanently remove your personal information and health data from our active systems within 30 days. Certain data may be retained for a limited period as required by law (e.g., payment records for tax purposes).

5.3 Data Portability

You may request an export of your personal data in a machine-readable format by contacting us at privacy@kiertherapeutics.com.

5.4 Opt-Out of Communications

You may opt out of non-essential communications (such as newsletters or product updates) at any time by using the unsubscribe link in any email or adjusting your notification settings in the App. Note that we may still send you critical account and security notices.

6.Data Retention

We retain your personal and health information for as long as your account is active or as needed to provide the App's services. If you delete your account, we will remove your data within 30 days, except where retention is required by law (such as financial records, which may be retained for up to 7 years in accordance with tax regulations).

De-identified, aggregate data (from which all personal identifiers have been removed) may be retained indefinitely for research and app improvement purposes.

7.Children's Privacy

The Nurtra App is not intended for use by individuals under the age of 13. We do not knowingly collect personal information from children under 13. Users between the ages of 13 and 17 must have parental or guardian consent to use the App. If we become aware that we have inadvertently collected data from a child under 13, we will promptly delete that information. If you believe a child has provided us with personal information, please contact us at privacy@kiertherapeutics.com.

8.Sensitive Health Information

Nurtra is designed to support users managing binge eating disorder, which means we handle particularly sensitive health information. We treat all health data you provide with the utmost care and confidentiality. Your health data is:

  • Never sold or shared with advertisers

  • Never used to make eligibility decisions (e.g., insurance, employment)

  • Never shared with third parties without your explicit consent, except as required by law

We strongly encourage you to review the App's security settings and use a private device when entering sensitive health information.

9.California Privacy Rights (CCPA)

If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):

  • The right to know what personal information we collect, use, and disclose

  • The right to request deletion of your personal information

  • The right to opt out of the sale of personal information (note: we do not sell your personal information)

  • The right not to be discriminated against for exercising your privacy rights

To exercise any of these rights, please contact us at privacy@kiertherapeutics.com. We will respond to verified requests within 45 days.

10.Changes to This Privacy Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, technology, or legal requirements. When we make material changes, we will notify you through the App or via email at least 30 days before the changes take effect. The updated policy will be posted within the App with a revised effective date. Your continued use of the Nurtra App after the effective date of any changes constitutes your acceptance of the revised Privacy Policy.

11.Contact Us

If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:

Kier Therapeutics — Privacy Team

privacy@kiertherapeutics.com

Nurtra App (iOS and Android)

Last updated: February 25, 2026