The following compliance standards apply to paid tier accounts. Factorial complies with applicable law for all users, but the controls, certifications, and guarantees described below are features of the paid tier only.
HIPAA (US Health Insurance Portability and Accountability Act)
Our paid tier aligns with HIPAA by ensuring the protection of sensitive health information through secure encryption, access controls, and local processing where possible.
GDPR (EU General Data Protection Regulation)
Our paid tier collects, processes, and retains only the necessary personal information for the purpose of biomechanical analysis, while upholding the subject's rights to data management and portability. Cloud autosave operates under a legitimate service delivery basis, is disclosed at account creation, and paid subscribers may opt out at any time. All users may request deletion of their data.
CCPA (California Consumer Privacy Act)
Our paid tier complies with California's requirements, giving users full rights to access, manage, and delete their data. We never sell personal data, and all usage is transparent.
CE (Conformité Européenne)
Our paid tier complies with European requirements, ensuring safety and performance standards for software used in health and fitness contexts.
Canada's PIPEDA (Personal Information Protection and Electronic Documents Act)
Our paid tier complies with Canada's federal requirements by being transparent, obtaining consent, using data responsibly and securely, and allowing individuals control over their information. Cloud autosave is disclosed at account creation, and paid subscribers may opt out at any time.
British Columbia's FIPPA (Freedom of Information and Protection of Privacy Act)
Our paid tier complies with British Columbia's public sector requirements including their service providers.
Nova Scotia's PIIDPA (Personal Information International Disclosure Protection Act)
Our paid tier complies with Nova Scotia's public sector requirements including their service providers, restricting the disclosure of personal information outside of Canada.