Technical notice
How AppetiteCheck handles data
This page describes the software as implemented. It is not a substitute for the study's IRB-approved consent form or privacy policy. The approved study materials control who may participate, why data are used, how long they are retained, and how to ask questions or withdraw.
Data recorded during a submitted session
AppetiteCheck records a study alias and account identifier, questionnaire answers, the profile condition, eating start/end, stimulation-experience ratings, optional notes, phone time-zone metadata, wearable identifiers and every heart-rate notification received during the session. Each row retains its UTC timestamp and measured BPM. Display filtering never replaces the measured value. Stimulation timing is not collected because the study uses separate telemetry.
What the current COLMI workflow does not record
The tested ring exposes processed BPM, not proven raw optical PPG, photodiode/ADC samples, ECG, or beat-to-beat RR/IBI values. AppetiteCheck does not manufacture those signals or relabel packet bytes as physiology. It does not collect advertising identifiers, contacts, microphone audio, camera images, or participant location for the study workflow.
Storage and access
Submitted records travel over HTTPS to the authenticated research API. Session metadata and immutable, SHA-256-checked blocks of measured heart-rate readings are stored separately in the study's Cloudflare D1 database. An unfinished session may remain as a local draft on the participant's device. Native mobile monitoring temporarily persists received wearable rows so a screen lock or WebView interruption does not silently lose the active session. Researcher endpoints and CSV exports require a separate researcher login; administrative exclusions, account status changes, and permanent purges are recorded in an audit trail.
Retention, withdrawal, and contact
Follow the retention period, withdrawal/deletion procedure, and research contact in the consent materials provided by the study team. Do not enroll participants until those approved terms are available and the app's “Approved study privacy policy” link has been configured.
Research-use software. AppetiteCheck is not a medical device, does not control stimulation, and does not provide diagnosis or emergency monitoring.