Privacy Policy
Effective date: September 22, 2026 | Last updated: September 22, 2026
This Privacy Policy explains how Dose Labs (“Dose Labs,” “we,” “us,” or “our”) handles your information across the two ways you can use WikiPeps: the WikiPeps mobile app for iOS and the WikiPeps website at https://wiki-peps.com. We are an independent operation. We collect as little as possible, we do not sell or rent your data, and we do not run advertising or third-party tracking.
The short version
- Your health journal stays on your device. Everything you log in the app — compounds, doses, labs, notes, your display name — and any Apple Health or WHOOP data the app reads is stored locally on your device and is never uploaded to our servers — unless you turn on Connect your AI (below), which copies only your protocol and dose log to your account.
- If you choose to create an account, your email and anything you post to the community (threads, comments, votes, flags) are stored on our servers — the same way on the app and the website.
- No analytics, no ad networks, no trackers, no data sales.
- You can delete your account and its server-side data at any time.
1. The WikiPeps mobile app
Stored only on your device — we never receive it
The app is local-first. Your journal (the compounds, doses, lab values, and notes you record), your display name, and any Apple Health or WHOOP data you connect are read and stored on your device only. This information is not transmitted to Dose Labs and we have no access to it. Health data the app reads from Apple Health is used on-device to power your own views and is never sent off the device or used for advertising.
Optional: Connect your AI
If you sign in and turn on Connect your AI(Settings → Data & privacy), the app copies your protocol (the peptides, doses, schedules, and vial setup you entered) and your dose log (when you logged each dose, the amount, injection site, notes, and how you felt) to your WikiPeps account, and keeps it in sync both ways. It is off by default. Lab values, photos, Apple Health, and WHOOP data are never included.
This lets an AI app you choose (for example Claude or ChatGPT) read and change those records after you sign in to WikiPeps from that app and approve it. The AI app receives only what it asks for through WikiPeps's connector while sync is on; what it does with your conversation is governed by that app's own privacy policy. You can disconnect any AI app at https://wiki-peps.com/community/connected-ai. Entries you or your AI delete are kept for 30 days so they can be restored, then permanently removed. Turning the switch off stops syncing and lets you delete the cloud copy immediately.
Your account: an optional email
Creating an account is optional. If you do, our authentication provider (Supabase Auth) stores your email address and standard authentication metadata (for example, a hashed credential and sign-in timestamps). We use this to sign you in and to sync your account across devices. Aside from your email, the only other information the app sends to our servers is the community content you choose to post — described next.
No tracking, analytics, or advertising
The app contains no advertising, no analytics SDKs, and no third-party tracking. We do not track you across other apps or websites, so the app shows no App Tracking Transparency prompt. We do not sell or share your information with third parties for their own purposes.
Community content you post in the app
The app includes a community where you can take part. When you post a thread, comment, vote, or flag content in the app, that content is sent to and stored on our servers (via Supabase) so the community can function — the same as on the website. Content you post publicly is visible to other members; do not post anything you consider private. Your on-device journal and Health/WHOOP data are never part of this — only what you deliberately post.
2. The WikiPeps website (https://wiki-peps.com)
The website shares your account with the app and also offers a few website-specific things (the newsletter, cookies, and optional analytics).
Community accounts and content
The website community uses the same account as the app. When you sign in and participate — on the website or in the app — we store the content you create (threads, comments, votes, and moderation flags) so the community can function. Content you post publicly is visible to others; do not post anything you consider private.
Newsletter
If you subscribe to The WikiPeps Letter, we collect your email address and, optionally, the page you signed up from. We use it solely to send the newsletter and related messages, and you can unsubscribe at any time.
Cookies and server logs
The website uses essential cookies only — for example, to keep you signed in to your community account. Like most websites, our host records standard server logs (IP address, browser type, referring URL, pages visited) for security and reliability. We do not set third-party advertising cookies.
Website analytics
We may use a privacy-respecting, aggregate web-analytics tool (such as Google Analytics) to understand overall website traffic. This applies to the website only — the mobile app contains no analytics. We do not use website analytics to build advertising profiles.
3. Service providers
We share information only with the providers needed to operate WikiPeps, each contractually limited to using it on our behalf:
- Supabase — account authentication, database, and community-content storage (supabase.com/privacy).
- Vercel — website hosting and content delivery (vercel.com/legal/privacy-policy).
- Our email delivery provider, used only to send the newsletter and transactional account email.
WikiPeps does not sell substances, and we process no product payments through the app or the user-facing website, so we do not collect payment or shipping information from you.
4. Deleting your account and data
You can delete your account at any time:
- In the app: Settings → Data & privacy → Delete my account. This removes your authentication account and any community content tied to it from our servers.
- By email: write to support@wiki-peps.com and we will delete your account and server-side data.
Your journal and Health/WHOOP data live only on your device, so deleting the app (or clearing its data) removes them; we never held a copy. If you used Connect your AI, deleting your account also deletes the synced protocol and dose log, and you can delete just that copy at any time by turning the switch off and choosing Delete cloud copy.
5. Data retention
We keep your account email and community content while your account is active. When you delete your account, we remove them from active systems; residual copies may persist in encrypted backups for a limited period before being overwritten. Newsletter data is kept until you unsubscribe.
6. Your rights
Depending on where you live, you may have the right to:
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request deletion of your data (subject to legal retention duties).
- Unsubscribe from the newsletter at any time.
- Lodge a complaint with your local data protection authority (EU/UK residents).
To exercise any of these, email support@wiki-peps.com.
7. Age
WikiPeps is intended for adults 18 and older. It is not directed to children, and we do not knowingly collect personal information from anyone under 18.
8. Security
We use reasonable technical and organizational measures to protect personal data. No method of transmission or storage is perfectly secure, so we cannot guarantee absolute security.
9. Changes to this policy
We may update this policy from time to time. The “last updated” date above reflects the latest revision, and we will note material changes on this page.
10. Contact
Privacy questions or requests? Email support@wiki-peps.com, or write to Dose Labs, the operator of the WikiPeps app and website.
