Statement About Huawei Health and Privacy
Last updated: April, 2023
Huawei Health is an app provided by Aspiegel SE, a subsidiary of Huawei incorporated in Ireland (hereinafter referred to as "we", "us", or "our").
Huawei Health allows you to track and analyse your fitness and health data in order to provide you with detailed fitness and wellness services. Huawei Health cloud provides you with a secure and reliable platform for storing your health and fitness data.
This Statement describes:
1 What Data Do We Collect About You?
3 How Long Do We Store Your Data?
5 What Are Your Rights and Options?
7 How Do We Update This Statement?
1 What Data Do We Collect About You?
As part of Huawei Health, we shall collect and use your personal data only for the following purposes stated in this Statement. Personal data refers to any information that enables us to identify you as a user.
We will collect and process the following data:
•Personal profile information: such as HUAWEI ID account information (account identifier, profile picture, username, gender, and date of birth), height, and weight. Your gender and date of birth are used for providing you with better exercise suggestions. Your height and weight are used to increase the accuracy of fitness data calculations.
Huawei Health's friend invitation capabilities in Health Community are provided by the Friends and contacts feature of HUAWEI ID. When you send invitations, we need to match the invitee's phone number, email address, or account information with information about existing HUAWEI IDs, to allow for appropriate delivery of the invitation messages. We will not store any of the data used for this account matching process.
Other Health Community users will be able to see your nickname and profile picture and send invitations to add you as a friend using your email address, phone number, or account identifier if you have enabled the Friends and contacts feature in HUAWEI ID. When you send invitations to others, they will be able to identify you by your nickname, profile picture, and the email address or phone number that you used for registering your HUAWEI ID.
•Fitness data: such as your device location, workout track, workout type (such as walking, running, cycling, climbing, basketball, and swimming), workout duration, step count, distance covered, calories burnt, altitude, maximum oxygen uptake, exercise heart rate, exercise form, workout plan data, diving data, and other workout and activity analysis data. Such data will be stored on the cloud and viewable on your device.
Fitness data from your wearable device is synced to Huawei Health when the device is connected to Huawei Health. The synced data will vary between different wearable models.
•Health data: Your health data, as well as the analysis results and reports of such data, will be processed and stored on the cloud for them to be viewable on your device, including sleep data, heart rate (including stress data derived from heart rate variability), menstrual cycle data, body surface temperature and body composition (including body fat, body resistance, BMI, blood oxygen saturation, muscle mass, metabolism, water rate of body, visceral fat, protein, and bone mineral), blood pressure data, lung function, weight and weight management data (such as data connected to a light fasting plan) as well as diet and weight loss information (including name of the food products you have eaten, nutritional facts and analysis, workout/activity you have completed to consume the calories, target and the consumed calories) processed for weight management purposes, as well as completed tasks (such as status for completing tasks and type of challenge, daily smiles, water consumption and breathing exercises depending on which tasks you complete). If you record your sleep sound data with your mobile device, the sleep analysis data will be synced to the cloud based on your authorisation; however it will not include the sleep sound recordings, which will only be processed on your device.
If you have connected the HUAWEI Cycle Calendar app to Huawei Health, your physiological cycle data will be processed. When you conduct a Stress test for the first time, a wellness questionnaire is used for calibrating your test results. The calibration is done using a calibration value derived from your answers. The calibration value is shared with your Huawei wearable and then erased from the Health app. Your answers to the questionnaire are never stored. If you use the Arterial Stiffness Detection service, your vascular data (such as pulse wave velocity, pulse wave waveform diagram, pulse wave conduction velocity, PPG, measurement time as well as vascular elasticity result and grade) will be processed. If you use the ECG service, your ECG data (such as ECG measurement time, result, wave form, average heart rate, and symptoms) will be processed to provide the service. None of the services are medical device software and the data should be used for reference only and not for medical study, diagnosis, or treatment.
Health data from your wearable device is synced to Huawei Health when the device is connected to Huawei Health. The synced data will vary between different wearable models.
•Device and network information: such as your MAC address, device serial number, IMEI or other device identifier (depending on your mobile system), device type, and personal settings will be collected for device management, including for establishing Bluetooth connections, managing device configurations, firmware updates, and displaying the source device of the data. Your IP address, network type, and network connection will also be collected in order to improve your network connection experience.
•Service usage information: such as device and app usage data, including the data about how you open or close the app, view pages, touch buttons, enable or disable features in apps, the device running status, likes/cares and comments as well as order and purchase information, membership information, and coupons information.
When you use the Music function to listen to music on your wearable device, Huawei Health will obtain your membership and music information (such as song name, artist, and album) from the HUAWEI Music app.
If you customise the watch face of your Huawei sports watch, we will process (but will not store) the watch face info along with your account identifier and device information to enable this functionality.
If you share a device with other users, such as a weight scale, we will collect the device identifier, account identifiers, and nicknames of users who use the device.
If you use the Feedback feature in app settings, we will process your device information, contact information, your feedback, as well as the attachments and app logs you upload (optional). If you decide to attach the app log file, please note that it includes data about your latest workouts, including data about exercise type, heart rate, calories burnt, etc.
If you use HUAWEI Wallet on your wearable device through Huawei Health, it will read the QR code provided by Wallet to sync the loyalty card data to Wallet on your wearable device. Huawei Health does not process your card information or any personal data synced to Wallet on your wearable device.
If you use Health Community and consent to sharing your health and fitness data to your friend, we will process your HUAWEI ID account information (including nickname), your friend's nickname, data sharing permission settings, and status of the invitation.
If you use Health in a visitor mode without logging in to your HUAWEI ID account, we will collect and process the following data:
•Device information: such as device identifier (depending on your mobile system), operating system (depending on your device) version and build number, ROM version, serial number, screen size and resolution, country/region code, language setting, Health app identifier and Health app version.
•Network information: such as mobile country code (MCC) and mobile network code (MNC).
•Service usage information: such as approved user agreement information and timestamps of usage activities.
To provide you with the service, Huawei Health needs to access the Internet and requires the following permissions: Physical activity (to track steps and activity), Phone (to obtain phone status when receiving calls, rejecting incoming calls, and receiving incoming call information after pairing with the wearable device), Storage (to store workout photos and read photos from the local storage when e.g. setting the watch face of the wearable device), Location (to map workouts), Microphone (to analyse sleep sounds), Camera (to take workout photos or sweeping shots), Contacts (to sync your contacts to your wearable), Messaging (to sync SMS to your wearable), Calendar (to sync workout plans to your calendar), and Call logs (to sync calls to your wearable). You can manage the permissions on your device by going to app Permissions under system Settings.
Huawei Health may send you different push notifications (e.g. about steps count, daily targets, sleep reports, health tips, etc.). You can manage such notifications from Me > Settings > Notification management.
2 How Do We Use Your Data?
To provide you with Huawei Health functions and fulfil contractual obligations, this app must collect and process your data for customer relationship management, maintenance, software and system updates, user identification as well as for diagnostic and repair purposes. The aforementioned processing of your personal data is based on your contract with us. For information on processing of your personal data for customer support purposes, please read the Statement About Customer Support and Privacy.
Your fitness and health data, which includes sensitive information about you, shall be uploaded to Huawei Health cloud only after you give your explicit consent in the app. You can go to Me > Privacy management in the app at any time to erase the data from the cloud and/or cease further collection and processing. We will not process your fitness and health data for any other purposes than storing it in the cloud and making it available for viewing and analysis from your mobile device, and for providing additional Huawei Health features you have explicitly consented to. To help you analyse your data over time, we will calculate e.g. different trends from the data you have synced to cloud and visualise those trends in the app.
Huawei Health Kit is a health and fitness data platform service that allows you to manage and share your data across different services. You can upload your personal information, fitness data, and health data to the Huawei Health Kit cloud by going to Me > Privacy management > Link Huawei Health Kit. Your personal data may be shared with third parties with your consent, so please read the privacy policies of the respective third parties carefully which you can view during authorisation. You can view the third-party apps or services to which you have granted such authorisation by going to Settings > HUAWEI ID > Privacy center > Control account access on your phone. Huawei Health Kit will not process your fitness and health data for any other purposes than making it available for Huawei Health and third-party health and fitness services and apps to store and access based on your prior authorisation.
Huawei Health supports sharing of fitness and health data with other Huawei (e.g. HUAWEI Cycle Calendar, Vascular Health service and Huawei ECG service) and third-party (e.g. Google Fit) health and fitness apps. Such data sharing is conducted only based on your prior authorisation. If you enable the cloud syncing, the data from that app will be automatically synced to the Huawei Health cloud. You can adjust your data sharing settings by going to Me > Privacy management > Data sharing and authorisation. If you take part in different activities and challenges in Huawei Health, we need to process your health and fitness data (e.g. daily steps and sleep time, depending on the challenge) to calculate your results and achievements. In addition, your score and HUAWEI ID profile information, including your profile picture, will be visible to all participants.
If you create a personalized fitness plan, we will process your profile data (such as gender, age, height and weight), fitness data as well as your fitness plan and analysis data (such as workout records from the past month and best workout performance from the past six months, target result, plan progress and periodic training plan report) with your consent for the purpose of creating you a personalized fitness plan. You may withdraw your consent any time by ending the plan and removing your fitness data from the cloud as described in Section 5.5.
If you enable the Healthy Living service in Huawei Health, we will process your completed tasks and type of task as well as health and fitness data (such as step count, workout data, sleeping records, daily smiles, daily water consumption and breathing exercises, depending on the tasks you complete) with your consent for the purpose of providing the service and giving you advice on healthy living habits. You may withdraw your consent any time by disabling Healthy Living service as described in Section 5.5.
If you use Health Community, you may share your health and fitness data to your friend or family member. Your personal data may be shared only if you send or receive a friend invitation and consent to sharing your selected data items to your friend or family member. If you participate in marketing campaigns in Huawei Health, such as lotteries or lucky draws, we will process your participation records and the winner's contact information in accordance with the specific terms and conditions applicable to such campaigns.
In addition, we use your personal data for the following purposes based on legitimate interests pursued by us:
•We shall use your device information (such as device country code), app usage data (such as which screens you view and which buttons you touch in the app), and the operations data of your device and the Health app (for example, when you start and stop a workout, enable and disable GPS, and begin and end a heart rate measurement) to analyse and improve our services and user experience. You can object to such data processing as described in Section 5.6 below.
•We shall use your device information (such as device country and language) and app usage data (such as which banners you view and which buttons you click in the app) for sales promotion and marketing purposes, including creating aggregated target groups for marketing. Knowing customers' preferences enables us to target our offers and offer products and services that better meet the needs and expectations of our customers. You can object to such data processing as described in Section 5.6 below.
•In addition, we use your personal data for information security purposes and to detect or prevent various types of misuse of services and frauds based on our legitimate interest in order to provide you with secure and reliable services.
We will process your comments in Health Community based on legal requirement, in order to efficiently identify and remove harmful content and language from the comments before they are made available to your friends in Health Community.
Huawei Health cloud stores your health and fitness data on servers located in the EU/EEA.
2.1 How We Safeguard Children?
Children are allowed to use Huawei Health by logging in with their HUAWEI ID child account ("child account") created by their parent or guardian. When a user logs in with a child account, and as a result is identified as a child user, Huawei Health provides different safeguards to ensure age-appropriate data processing and content:
•Parents or guardians need to explicitly consent to the processing of health and fitness data of a child account user in Huawei Health when the service is accessed for the first time.
•In order to protect children from any harm caused by advertising, we do not use or allow others to use children as a specific target group for behavioral or other marketing activities.
•Child account users cannot sync and share their fitness and health data in Huawei Health with third party services.
NOTE: If a child is using our services without being logged in with a child account, we are not capable of providing the child related safeguards provided by the service. We encourage all parents and guardians to create a child account for their child before they are allowed to start using any HMS apps or services. If a child is allowed to use Huawei Health without a child account, it is to be done under sole supervision of the parent or guardian.
3 How Long Do We Store Your Data?
We will retain your personal data for no longer than is necessary for the purposes defined in this Statement.
We will process and retain your data for the duration of the customer relationship. Your health and fitness data, which you have synced to Huawei Health cloud, will be stored as long as you do not erase it.
In addition, we shall retain:
•Personal data processed for contract management purposes for up to three (3) years after your HUAWEI ID has been deleted.
•Order information for seven (7) years from the date the transaction was made.
•Personal data that is used for analytics and improvement purposes as well as sales promotion and marketing purposes for up to twelve (12) months from the date of collection, unless you have objected to such processing.
•Personal data processed for feedback to be submitted by you through the Health app for six (6) months.
•Information about invitations sent via the HUAWEI ID Friends and contacts function for seven (7) days on the server after the invitations are sent.
•Backups and app logs, which are processed for ensuring the security of your data and services, for up to six (6) months from the date they were created.
Once the retention period expires, we will delete or anonymize your personal data in due time, unless otherwise required by applicable laws and regulations.
4 How Do We Share Your Data?
Huawei Health supports sharing of fitness and health data from your device to other Huawei (e.g. HUAWEI Cycle Calendar,Vascular Health service and Huawei ECG service) and third-party (e.g. Google Fit) health and fitness apps. Such data sharing is conducted only based on your prior authorisation. You may also authorise the Huawei Health app to receive data from these apps. If you enable the cloud data syncing for any given app, the data from that app will be automatically synced to the Huawei Health cloud. You can adjust your data sharing settings by going to Me > Privacy management > Data sharing and authorisation.
We recommend you to read carefully the privacy statements/policies of the third-party apps/services you are sharing your Health app data with and, for example, to check whether such apps/services are processed outside of the EU/EEA. In case the data by these third-party apps/services is processed outside of the EU/EEA and you authorise the data sharing, we may transfer your data (as described in this Statement) to outside of the EU/EEA to such apps/services. Once authorised by you, such transfers are also made pursuant to Article 49 (1)(b) of the EU General Data Protection Regulation, i.e. the transfer is necessary for us to provide the requested service to you. Please note that the local laws of such countries/regions may not provide the same level of protection of your data as in the EU/EEA.
Huawei Health enables you to make your Huawei sports watch available for other health and fitness apps. Such third-party apps can integrate and access your watch (e.g. to get heart rate or other sensor data, to send notifications to your watch, etc. depending on the scope of the authorisation) only after your explicit authorisation. You can adjust such device settings for each app separately by going to Settings > Device capabilities.
If you have uploaded data to the Huawei Health Kit cloud, your personal data, which may be sensitive, will be shared with third-party apps with your consent. Please read the privacy policies of the respective third parties carefully which you can view during authorisation.
If your wearable device supports the Weather reports function, your city-level location is shared with our weather service providers located in the EU operating under contact and acting on behalf of us. You may disable the weather function from Weather reports under My devices.
If you share a device with other users, such as a weight scale, your personal information may become visible to other users of the device under certain circumstances (such as when the device does not know to which user to allocate the measurement result).
Depending on your operating system either Petal Maps or Google Maps provides the service for generating and mapping your outdoor workout routes based on your device's location. Google Maps use is governed by Google's Privacy policy available at http://www.google.com/policies/privacy.
We may also share your data in the following circumstances:
•Our third-party vendors, who provide us with IT (including cloud-based) services and business support, may need to process your HUAWEI ID information. All such third parties are operating under contract and acting on behalf of us and are located in the EU/EEA.
•For financial management purposes, we will transfer your order information to a Huawei affiliate in China operating under contract and acting on behalf of us.
•If you are using Huawei Health in Türkiye, our business operations, operating under contract and acting on behalf of us, may require us to access your data from Türkiye. Our business operations in New Zealand, operating under contract and acting on behalf of us, may be required to access your data, if you are using the service in New Zealand or Australia.
•We may share your data in response to a legal process or request from a competent authority according to applicable laws or in connection with a legal proceeding or process.
•Your data may also be disclosed as part of a merger, acquisition, sale of assets (such as service agreements), or transfer of services to a Huawei group entity or another company.
When transferring and disclosing your data outside the EU/EEA, where the local law may not provide the same level of protection as in the EU/EEA, we shall comply with applicable legal requirements for providing adequate safeguards to such transfers by incorporating the European Commission's Standard Contractual Clauses (SCC) or by requesting your prior consent. If you want to obtain a copy of the actual signed SCC, please contact us.
5 What Are Your Rights and Options?
You have the following rights and options:
5.1 Access your data
You can request information and a copy of your personal data that we have collected and stored in relation to Huawei Health by going to Settings > Account center > Privacy center > Manage Your Data > Request Your Data on your device.
For additional access requests, please contact us.
5.2 Rectify your data
In order to keep your data up-to-date and accurate, you can access and modify your:
•Huawei Health data from the app by going to Me > Profile.
•HUAWEI ID data by going to Settings > HUAWEI ID on your device.
5.3 Port your data
You can port your personal data that you have provided to us in relation to Huawei Health in a commonly-used machine-readable format by going to Settings > Account center > Privacy center > Manage Your Data > Request Your Data on your device.
5.4 Erase your data
You may at any time:
•Erase all fitness and health data from the cloud by going to Me > Privacy management > Clear all personal data from cloud in the app. If you erase the data, the data will be permanently deleted from the Health cloud, but it remains on your mobile phone.
•Erase your data collected in relation to activities and challenges you have participated in by logging out of the specific activity from the app's Activities screen.
•Erase all personal data from your mobile device's app settings by clearing Huawei Health data.
•Erase device information and device sharing information regarding a paired device, such as a weight scale, from the cloud by unpairing the device.
•Delete your HUAWEI ID account by going to Settings > Account security > More > Security center > Delete Account on your device. As a result, your personal data will be erased from Huawei Health, Health Kit, and other services, which are linked with your HUAWEI ID account.
•Delete your data that has been processed to provide Healthy Living service by disabling the Healthy Living service. Disable the service by touching the dots in the right corner and going to About > Disable service.
•Object to the processing of your data, as described in Section 5.6. As a result, we will erase the data in the scope of a valid objection if we no longer have legal basis to continue the processing.
•Contact us if you think the processing of your personal data is unlawful and your data should be erased.
We will erase or anonymize your personal data without undue delay when necessary based on your aforementioned actions and in accordance with the retention periods as described in Section 3.
5.5 Withdraw your consent
Your fitness and health data is uploaded to Huawei Health cloud only after you give your explicit consent in the app. You can withdraw your consent by going to Me > Privacy management in the app.
Your Huawei Health data is uploaded to the Huawei Health kit cloud only after you give your explicit consent in the app. You can withdraw your consent by going to Me > Privacy management > Link Huawei Health Kit.
You can withdraw the authorisation to share your data with other services by going to Me > Privacy management > Data sharing and authorisation in the app.
You can withdraw your consent to processing your personal data for the creation of personalized fitness plan by ending the plan by touching the dots in the right corner and touching End plan, and deleting your data from Huawei Health cloud by going to Me > Privacy management in the app.
You can withdraw your consent to processing your personal data for the Healthy Living service by disabling Healthy Living by going to Me > About > Huawei Health User Agreement > DISABLE SERVICE.
If you have shared your health and fitness data in Health Community to your friend or family member, you may withdraw your consent to data sharing by removing your friend or family member from your Health Community by going to your friend's or family member's health profile and touching Remove.
5.6 Object to processing
You can object to the processing of your data for analytics and improvement purposes by going to Me > Privacy management and disabling Analysis and improvement.
If you wish to object to the processing of your data, which is based on our legitimate interests, please contact us.
When making the request, please specify the scope of the request and provide us with the email address or phone number that you use to log in to your HUAWEI ID.
We will contact you to verify your identity in order to proceed with your request.
5.7 Restrict processing
You have the right to restrict the processing of your data in the following circumstances:
•Your data is unlawfully processed, but you do not want to erase it.
•You have a legal claim that you need to establish, exercise, or defend, and you have requested us to keep your data when we would not keep it otherwise.
•You have contested the accuracy of your personal data and the accuracy of your data is pending our verification.
•Your request for objection is pending our verification.
You may at any time restrict the processing of your health and fitness data to your device only by going to Me > Privacy management and disabling the data syncing in the app.
For other requests related to the restriction of data processing, please contact us. When making the request, please specify the scope and the grounds for the request and provide us with your email address or mobile number that you use to log in to your HUAWEI ID.
We will contact you to verify your identity in order to proceed with your request.
6 How to Contact Us?
You can find guidance on how to exercise your data subject's rights in Section 5. If you have any questions, comments, or suggestions on your rights as a data subject or our processing of your personal data, or if you want to contact our Data Protection Officer, please contact us.
Our headquarters' address: Aspiegel SE, 3rd floor, Mespil Court, Mespil Road, Ballsbridge, Dublin 4, D04 E516, Ireland. Registration number 561134.
If you believe that we do not process your personal data in accordance with this Statement or the applicable data protection laws, you can lodge a complaint with the data protection authority in your country/region, or the Data Protection Commissioner in Ireland.
7 How Do We Update This Statement?
We encourage you to regularly check for the latest version of this Statement from the app settings as we may change it from time to time. If we make material changes to this Statement, we will notify you using an appropriate method, such as through a notification dialog box, notification message on your device, email, etc., depending on the nature of the change.