Xiaomi Health Privacy Policy

Our Privacy Policy was updated on December 1, 2020.

Please take a moment to familiarize yourself with our privacy practices and let us know if you have any questions.

Introduction

Xiaomi Health is an application developed by Xiaomi Company and its affiliated companies (hereinafter referred to as "Xiaomi" or "We"). It provides you with records and analysis of your health and exercise data, and gives professional health advice and exercise guidance.

We are committed to protecting your privacy. This Privacy Policy sets out the principles on which Xiaomi Health operates, and constitutes an important part of Xiaomi Privacy Policy. In the event of inconsistency between this Privacy Policy and Xiaomi Privacy Policy with respect to Xiaomi Health, the former shall prevail. For the terms and conditions not stipulated in this Privacy Policy, Xiaomi Privacy Policy shall prevail. Terms and conditions regarding the protection of minors, security measures, and cross-border data transmission can be found in Xiaomi Privacy Policy.

This Privacy Policy is designed with your needs in mind, and you must have a comprehensive understanding of our personal information collection and usage practices while ensuring that ultimately, you have control of your personal information provided to us. This Privacy Policy explains how we collect, use, disclose, process and store any information that you give us when you use Xiaomi Health. Under this Privacy Policy, "personal information" means information that can be used to directly or indirectly identify an individual, either from that information alone or from that information combined with other information about that individual available to Xiaomi. We will use your personal information strictly following this Privacy Policy.

Ultimately, what we want is the best for all our users. Should you have any questions with our data handling practices as summarized in this Privacy Policy, please contact us on https://privacy.mi.com/support. We will appreciate your feedback.

1. What information is collected by us and how do we use it?

1.1 Personal information that we collect and use with your authorization

The purpose of collecting personal information is to provide you with products and/or services, and to ensure that we comply with applicable laws, regulations and other regulatory requirements. You have the right to choose whether or not to provide the information we have requested, but in most cases, if you do not provide your personal information, we may not be able to provide you with our services or respond to your queries. The related features include:

1.1.1 Step counter

We collect your information including number of steps, stepping times, duration, distance and height of physical exercise through sensors. You can view the above exercise details by day, week and month in the application. We give advice on the target number of steps through the information provided by yourself, such as height, weight, birthday (for accurate calculation of age) and gender. You can modify the target number of steps at any time according to your actual situation.

Through your information including duration, number of steps, distance, height and stepping times of physical exercise, Xiaomi Health can also calculate the calories consumed, type of exercise, step frequency, stride length, speed and ascending or descending height. In order to provide you with accurate calculation results, we also need to refer to the information provided by you, such as your height, weight and gender.

1.1.2 Sleep record

We will estimate your daily sleep time and duration by your use of mobile phone at night, and then calculate your average daily sleep and get-up time as well as average daily sleep duration. You can view your sleep details by day, week and month in this application or clock application. You can also modify the actual time of falling asleep and getting up on a certain day in the daily view. You can also set the target sleep time and get-up time in the clock application for daily schedule management. We give advice on the target sleep duration through the birthday information (for accurate age calculation) provided by yourself. Meanwhile, you can also check the circular view of sleep duration to see if you have reached the recommended sleep duration.

1.1.3 Menstrual assistant

You can check the start time and end time of menstruation marked by you in the application, and record the number of days and duration of your menstrual cycle. We will calculate the average number of days of your menstrual period, average number of days of your cycle, your ovulatory period and your safe period according to the information you provided to us, and predict the starting time of your next menstrual period. Two days before the predicted time, we will remind you to get prepared.

1.1.4 Weight tracking

According to the weight information recorded in your application at different time points, including weighing time, weight, body fat rate, muscle rate, bone mass, protein content and body water, we will show the weight change trend within a period of time. We collect your height and weight for calculating the body mass index (BMI), and provide you with services including weight assessment and advice.

1.1.5 Health advice

According to your performance during physical exercise and actual sleep time and duration, we will give health-related advice for your reference. For example, if your actual number of steps is too small, we will remind you that you need more physical exercise. If you still stay up after 11 pm, we will send you a sleep reminder.

1.1.6 Configuration information synchronization

After you sign in to your Mi Account, in order to improve your user experience when switching mobile phones or on other devices, we may collect your configuration information on Xiaomi Health, such as the display card configured on the application homepage, and whether the exercise/menstrual preparation reminder has been enabled, so as to avoid repeated configuration on your new mobile phone or other devices.

1.1.7 Exercise data display

In order to quickly check your exercise condition today, we may collect your actual number of steps, target number of steps, distance and height difference changes for display.

1.1.8 Blood pressure record

You can record your diastolic blood pressure and systolic blood pressure at a certain time point by manual entry. In order to realize this function, we may collect the blood pressure data and blood pressure recording time entered by you for display.

1.2 Personal information you may choose whether to authorize us to collect and use

1.2.1 Data source addition

You can use Xiaomi Health to add data sources to achieve data synchronization among your different data sources, so as to show you more comprehensive health data. The data sources we support include Mi Smart Band, Redmi Band, Mi Scale 2, Mi Body Composition Scale 2, Mi Watch, etc. In order to show you the added data source information, we may collect your Mi Account, the device ID of the data source added, the device name set by the user and the product name of the data source. You can also manage the data of multiple members from the same data source.

If you add a Mi Smart Band, we may collect your number of steps, duration, distance and date of physical exercise and sleep data (sleep duration and state), heart rate, and measurement time and other information for showing your physical exercise data and providing you with further health assessment based on such information.

If you add Mi Scale 2, we may collect your weight, weighing time, member ID and member name for tracking your weight and matching with the corresponding member.

If you add Mi Body Composition Scale 2, we may collect your weight, weighing time, body fat rate, body water, bone density, metabolic rate, muscle rate, visceral fat, protein content, relevant member of the weight, and member name for tracking your body fat rate and matching with the corresponding member.

If you add Mi Watch, we may collect your number of steps, start time, end time, consumption, exercise type, duration, distance, maximum pace, average speed, average step frequency, average stride length, average heart rate, maximum heart rate, minimum heart rate, cumulative climb, cumulative decline, average height, ultimate duration, anaerobic endurance time, aerobic endurance time and fat burning time, warm-up time, standing situation and sleep data (sleep time and state) of physical exercise to evaluate your exercise and show you the results.

If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.2 Cloud synchronization

When you sign into your Mi Account, you can choose to upload the health data (excluding the medical emergency files) stored at the client-side to the cloud for synchronization and backup. Your local management of data (such as deletion) will also be synchronized to the cloud.

If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.3 Feedback

If you have any suggestions and opinions on Xiaomi Health, you can submit them by tapping "Settings-Feedback" in the upper right corner. We will collect your feedback and contact provided by yourself. When your feedback needs to be explained by uploading pictures, short videos or problem logs, we need your permission to read your photos, media content and files.

If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.4 Deep sleep and non-REM sleep detection

If you choose to use the deep sleep and non-REM sleep detection function, we will estimate your sleep time, wake-up time/times at night, turning-over time/times, deep sleep and non-REM sleep time through the mobile phone sensor and the use of your mobile phone, which will be used to evaluate your sleep state and display in your sleep monitoring report.

If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services provided by this function.

1.2.5 Snoring and sleep talk detection

If you choose to use the snoring and sleep talk detection function, it will require you to turn on the microphone and authorize the recording authority. We may collect audio information generated during your sleep, such as time period, frequency and decibel of your snoring, sleep talk and ambient noise, which are used to evaluate your sleep state and display it in your sleep monitoring report.

If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.6 Standing record and reminder

To reduce the health risks caused by sedentariness, we recommend that you stand at least once an hour. If you choose to use the standing record and reminder service, we may collect the changes of your steps per hour or the completion status of your standing goal entered manually, which can be used to show and judge whether you have achieved your standing goal within this time period. We will send you a notice of standing reminder according to the completion of your standing goal in each hour.

If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.7 Medical emergency files

In order to inform the first-aid personnel of your medical emergency information ASAP in case of emergency, we may collect your basic medical information, including name, gender, date of birth, blood type, voluntary organ donor, emergency contact, allergic drugs, chronic diseases, medication and treatment, and other information you added for display. The above information is only stored locally at the client-side and will not be uploaded to the cloud. If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.8 Heart rate detection

The heart rate detection obtains your heart rate value by obtaining the brightness change frequency around your fingers through the camera. This function requires you to turn on the camera and authorize the user to obtain the brightness change frequency around your fingers. In some models, the heart rate detection can obtain the brightness change reflected by the finger through the sensor in the fingerprint area, so as to calculate the heart rate. This function requires you to turn on the relevant sensor authority. If you do not enable the above authority, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.9 Movement track

When you choose to enable the movement track function, you must authorize us to use your geographical location authority. We will collect the accurate information of accurate geographical locations you passed during physical exercise, and finally describe it as your movement track. We will use Amap positioning service to provide you with the positioning function. When you enable the cloud synchronization function, the data of this function will also be synchronized to the cloud. If you do not agree to provide the above information, you can still use other services provided by Xiaomi Health, but you may not be able to use the services of this function.

1.2.10 Exercise program

In order to better provide you with training plan and exercise program, we need to collect your health and exercise information, including your age, gender, height, weight, exercise consumption, start time and end time of exercise and training duration. The purpose of collecting such information is to analyze your exercise performance and provide the exercise program and training guidance through algorithm personalization. If you don't agree to provide the above information, you can still use universal exercise programs.

1.3 You are fully informed that we may collect and use personal information without your consent if:

1.3.1 The personal information is vital to national security and defense;

1.3.2 The personal information is vital to public safety, public health, and major public interests;

1.3.3 The personal information is related to criminal investigations, prosecutions, trials, or execution of judgments;

1.3.4 The personal information is essential for protecting major legitimate rights (including life and property) and interests of the personal information subject or other people, but it is hard to obtain the subject's consent;

1.3.5 The personal information collected is made public by the subject at their own discretion;

1.3.6 The personal information is collected from public sources, such as news reports or government announcements;

1.3.7 The personal information is necessary for us to sign the contract as required by you;

1.3.8 The personal information is necessary to maintain the safe and steady operation of products and/or services provided, such as for discovering and handling faults of products and/or services;

1.3.9 The personal information is required for legal news releases; and

1.3.10 The personal information is de-identified in the results of statistical or academic research based on public interest.

1.4 Non-personally identifiable information

We may also collect other non-personally identifiable information (i. e. information that is not personal), e. g. statistical data generated when you use a specific service, such as equipment-related information, daily events, page access events, page access duration events, and session events and application crash events. The purpose of collecting such information is to analyze user behavior data and optimize product experience, thus improving our service provided to you. The type and amount of information collected depends on how you use our products and/or services.

In order to provide you with better products and services and improve the quality of our decision-making, we will summarize and analyze your personal information. Your personal basic information (height, weight, birthday and gender) will be used to collect the concern extents of different user groups to each function. Daily steps and compliance of physical exercise will be used to evaluate the improvement of the user's overall health behavior. Your customized target steps will be used to revise the proposed target model by comparing the recommended target steps. Daily sleep time and duration will be used to assess the improvement of user's overall health behavior. Your calibration data for sleep records will be used to optimize the sleep algorithm model. For the purpose of this Privacy Policy, such aggregated data is not personal information as it cannot be used to identify you. However, if we combine non-personal information with personal information, such information will be treated as personal information.

2. Sharing your personal information with third-party service providers

Part of the service content in this business is provided by third party service providers. For that purpose, we need to provide the third party service providers with part of your personal information. For example, we may share your personal information with the third party service providers in the following circumstance:

Positioning service provider: the positioning service in this application is provided by a third party including Amap, and we may provide your position data and other information to this service provider for drawing the movement track and calculating the movement distance for you.

Exercise program service provider: the personalized program recommendation service in this application is provided by a third party, and we will provide information such as your age, gender, height, weight, exercise consumption, start time and end time of exercise and training duration to such service provider for personalized recommendation of exercise program which fits you best.

If we share your personal information with these third parties, we will take encryption and other means to protect the security of your information. For companies and organizations with which we share personal information, we will conduct a reasonable review on their data security environment, and sign strict data processing agreements, requiring third parties to take adequate protection measures for your information and strictly abide by relevant laws, regulations and regulatory requirements.

3. Retention policy

We retain personal information for the period necessary for the purpose of the information collection described in this Privacy Policy or as required by applicable laws. We will cease to retain and delete or anonymize personal information once the purpose of collection is fulfilled, or after we confirm your request for erasure, or after we terminate the operation of the corresponding product or service. An exception to this is personal information that we are processing for public interest, scientific, historical research or statistical purposes. We will continue to retain this type of information for longer than its standard retention period, where permitted based on applicable laws, even if further data processing is not related to the original purpose of collection.

Your information will be saved within the territory of the People's Republic of China.

If you do not choose to log into Mi Account and enable the cloud synchronization function, your height, weight, birthday, gender and health data will only be saved locally rather than being uploaded to the server. You can manually clear the application data at any time to delete such personal information.

If you choose to enable the snoring and sleep talk detection function, we will only detect the collected audio information locally, and delete the original audio data immediately after completing the detection and analysis. Among them, the detected audio segments of snoring, sleep talk and noise is only kept locally. Please rest assured that even if you enable Xiaomi Health Cloud Synchronization, this type of audio information will not be uploaded to the cloud, and you can manage the audio information at the client-side.

4. Your rights

4.1 Controlling settings

We recognize that privacy concerns differ from person to person. Therefore, we provide some examples to illustrate various means provided by Xiaomi Health for your choice to restrict the collection, use, disclosure or processing of your personal information and control your privacy settings:

· In "Settings - Cloud services - Data sources", you can add or delete the chosen data source for data synchronization;

· In "Settings - Cloud services - Cloud service synchronization", you can enable or disable the cloud synchronization function;

· In "Mobile phone Settings - Manage apps - Health", you can set the "Autostart" switch to decide whether to allow the system and other applications to wake up the health function;

· In "Mobile phone Settings - Manage apps - Health - Battery saver", you can set the running strategy of Xiaomi Health in the background, and you can select "No restrictions", "Battery saver", "Stop after 10 minutes" or "Never";

· Tap "Settings - Basic info" in the mobile app to correct your personal basic information (birthday, gender and height).

· Tap "Sleep circular view - Daily view" in the mobile app, and you can modify the actual sleep and wake up time on any given day.

In "Mobile phone Settings - Manage app - Xiaomi Health - Clear all data", delete the local data including your basic personal information (birthday, gender, height, and weight).

· Tap "Settings - About" in the mobile app, and tap "Get device ID" at the bottom of the page to get your ID, so as to prepare you for exercising your personal information rights.

Tap on the sleep card in the mobile app, and select "Settings - select Sleep settings" at the top right corner to disable the functions of deep sleep and non-REM sleep detection and snoring sleep detection. Disabling the snoring sleep detection function will not affect your previous authorization of the recording and mobile phone storage authority used by this function.

Select the button at the top right corner of "Settings - Emergency medical ID" in the mobile app, and select Delete files to clear the medical emergency file information stored at the client-side.

In the "Activity settings" of the app, you can set the "Recommended classes" switch to decide whether to use exercise programs in personalized recommendations.

If you have previously agreed to us using your personal information for the aforementioned purposes, you may change your mind at any time by writing or contacting us on https://privacy.mi.com/support.

4.2 Your rights to your personal information

Depending on applicable laws and regulations, you have the right to access, rectification, and erasure of any other personal information that we hold about you (hereinafter referred to as the request).

If you want to access, correct or delete your personal information that we have.You can submit your application by visiting Mi Account management center at https://account.xiaomi.comYou can also contact us at https://privacy.mi.com/support to submit your request, when you need to provide your ID. In our application, you can select "Settings - About" and tap "Get device ID" at the bottom of the page to search for your ID.

Once we obtain sufficient information to confirm that your request can be processed, we shall proceed to respond to your request within any timeframe set out under your applicable data protection laws. In detail:

· Based on the requirements of applicable laws, a copy of your personal data collected and processed by us will be provided to you upon your request free of charge. For any extra requests for relevant information, we may charge a reasonable fee based on actual administrative costs according to the applicable laws.

· If any information we are holding on you is incorrect or incomplete, you are entitled to have your personal information corrected or completed based on the purpose of use.

Based on the requirements of applicable laws, you have the right to request the deletion or removal of your personal information where there is no compelling reason for us to keep using it. We shall consider the grounds regarding your erasure request and take reasonable steps, including technical measures. If the right is upheld, we may not be able to immediately remove the information from the backup system due to applicable legal and security technologies. In that case, we will securely store your personal information and isolate it from any further processing until the backup can be cleared or be made anonymous.

We have the right to refuse to process requests that are not meaningful/manifestly unfounded or excessive, requests that damage others' right of privacy, extremely unrealistic requests, requests that require disproportionate technical work, and requests not required under local law, information that have been made public, information given under confidential conditions. If we believe that certain aspects of the request to delete or access the information may result in our inability to legally use the information for the aforementioned anti-fraud and security purposes, it may also be rejected.

4.3 Withdrawal of consent

You can withdraw your consent by contacting us at https://privacy.mi.com/support, including collecting, using and/or disclosing your personal information in our possession or control. We will not collect, use and/or disclose your personal information after you withdraw your consent. You need to provide your ID when submitting your request. In our application, you can select "Settings - About" and tap "Get device ID" at the bottom of the page to search for your ID.

· Attention: Your withdrawal of consent may result in some legal consequences. Additionally, you may not be able to continue receiving the full benefit of Xiaomi's products and services, depending on how much authority you grant us to process your information when you use Xiaomi Health. The withdrawal of your consent or authorization will not affect the validity of our processing carried out upon your authorization up until the point of withdrawal.

4.4 Cancelling a service or account

If you wish to log out any Xiaomi Health product or service, you can contact us to at https://privacy.mi.com/support, and you need to provide your ID when submitting the request. In our application, you can select "Settings - About" and tap "Get device ID" at the bottom of the page to search for your ID. Service logout will clear your data stored in the cloud. For local data, you can tap "Mobile phone Settings - Manage apps - Health - Clear data" to clear it.

If you wish to cancel the Mi Account, please note that the cancellation will prevent you from using the full range of Xiaomi's products and services. The approval of your request depends in part on how you use our services and products, for the legitimate interests of you and others.

5. Third-party websites and services

Our Privacy Policy does not apply to products or services offered by a third party. The Xiaomi Health products or services you use may include third-party products or services, involving positioning, statistics and other types, some of which can be provided in the form of links to third-party websites, and some can work with the help of SDK and API. Your information may also be collected when you use these products or services. For this reason, we strongly suggest that you spend time reading the third party’s privacy policy just like you read ours. We are not responsible for and cannot control how third parties use personal information which they collect from you. Our Privacy Policy does not apply to other sites linked from our services.

The following are the examples of when third party terms and privacy policies may apply when you use the specific products or services listed above:

o Privacy Policy of Amap: https://cache.amap.com/h5/h5/publish/238/index.html

o Privacy Policy of MORE HEALTH: https://web.miaomore.com/online/client/1/assets/html/userCenter/agreent/policy.html

6. Contact us

If you have any comments or questions about this Privacy Policy or any questions relating to Xiaomi's collection, use or disclosure of your personal information, feel free to contact us at the address below or by visiting https://privacy.mi.com/support. Please include "Privacy Policy" in your contact message. When we receive questions about personal information or requests to download or access items, we have a professional team that addresses such concerns. If your question itself involves a significant issue, we may ask you for more information. If you are not satisfied with the response you received, you can hand over the complaint to the relevant regulatory authority in your jurisdiction. If you consult us, we will provide information on the relevant complaint channels that may be applicable based on your actual situation.

Mailing address:

#018, 8th Floor, Building 6, 33 Xi'erqi Middle Road, Haidian District, Beijing

China 100085