Privacy by design

We believe health data is among the most sensitive information a person generates. So we built Tansira with one rule: we never see your readings.

What data Tansira stores

  • Blood pressure readings (systolic, diastolic, pulse, timestamp, notes, lifestyle tags)
  • Medication names, doses, and schedules you add
  • Body weight entries you log
  • Local weather conditions saved alongside readings, only if you enable the optional weather feature
  • Your profile details (name, date of birth, gender, height, weight) and the display names of linked family members
  • App settings (preferred guideline, reminder times, theme)

That is the information the mobile app itself stores for core tracking. The app has no usage analytics or crash reporting SDK. The free version's ads and optional network features are separate and are described below. Website data practices are also described separately on this page.

How it's protected

The database is encrypted at rest using SQLCipher with AES-256-CBC. The encryption key is derived from a device-local secret; it never leaves your phone in readable form (optional Cloud Backup includes only a copy locked by your backup passphrase). Even if someone took your device's storage chip, they could not read your readings without your passcode.

Optional cloud backup

You may opt in to back up your encrypted database to your own Google Drive, stored in a hidden app-data folder. Backup requires signing in with your Google account, and the backup is additionally protected by a passphrase only you know. It is an encrypted binary blob, not human-readable, and not accessible to us. Google can see the file exists but cannot decrypt its contents.

Backup is off by default. You enable it in Settings -> Cloud Backup.

Optional weather correlation

If you turn on the weather feature (off by default), the app fetches local conditions from Open-Meteo, a privacy-respecting weather service that requires no account or API key, at the moment you save a reading. Only your approximate location (GPS coordinates or a city you choose) is sent; your readings and identity never are. Weather data is stored on your device and deleted together with its reading.

No third-party analytics

The app contains no third-party analytics SDKs (no Firebase Analytics, Mixpanel, Amplitude, Sentry, or similar). We do not collect crash reports, screen views, button taps, or any behavioral telemetry.

Ads in the free version

The free version of the app is supported by ads from Google AdMob. We use non-personalized ads only: the ad network never receives your blood pressure readings or any health data, and ads are never shown during a crisis warning or while you take a measurement. On first launch you are asked for ad consent (UMP) as required in your region. Choosing Tansira Pro removes all ads.

Family Sharing and cloud sync

Family Sharing is an optional, opt-in feature. When enabled, your readings are encrypted on your device before they ever leave it. The server holds an encrypted binary blob it cannot read. You control what data to share and can revoke a family member's access at any time. This immediately removes your data from their device. Deleting your account removes all shared data and disconnects all relationships.

This website

This marketing site uses Google Analytics 4 only after you accept optional analytics. It measures page visits, session and device information, approximate location, and successful waitlist or contact submissions. We do not send health readings, form contents, email addresses, URL query parameters, or other sensitive information to Google. After acceptance, Google sets first party analytics cookies. Cloudflare also provides cookie free traffic, security, and page performance measurement. The full policy explains retention and international processing.

Legal documents