AURA Privacy Policy

Updated: September 11, 2026

Effective: September 11, 2026

Introduction

AURA health ring services, including the AURA application and the health ring used with it (collectively, “AURA” or “this Product”), are provided by Million Fame Technology Limited (“we,” “us,” or “our”). We understand the importance of personal information, especially health and physiological information, and will protect your personal information and privacy in accordance with applicable laws.

This Policy applies only to the AURA health ring business. It explains how we collect, store, use, share, and protect your personal information when providing ring pairing, health data recording and display, trend analysis, health reminders, Apple Health synchronization, gesture photography, and customer service, and how you may exercise your rights. This Policy does not apply to our other products or services or to products or services independently provided by third parties.

Important notice: Health and physiological information is sensitive personal information. We process it only for specific, necessary purposes and obtain your separate consent as required by law. Please read and understand this Policy carefully before using this Product, especially the bold text. AURA has no mandatory age restriction and is recommended for users aged 5 and above. Minors under 14 must use this Product with the consent and supervision of a parent or other guardian.

This Policy explains:

  1. Definitions and interpretation
  2. How we collect and use your personal information
  3. How we store your personal information
  4. Entrusted processing, sharing, transfer, and public disclosure
  5. How we protect your personal information
  6. Your rights
  7. How we process minors’ personal information
  8. Cross-border transfers
  9. Governing law and dispute resolution
  10. Policy updates
  11. How to contact us
  12. Appendix: Permissions and use scenarios

1. Definitions and Interpretation

  1. AURA Products and Services: The AURA application, the accompanying health ring, and related functions such as device pairing, health data recording and display, trend analysis, health reminders, Apple Health synchronization, and gesture photography.
  2. User or you: A natural person who uses AURA Products and Services.
  3. Personal information: Information recorded electronically or otherwise that relates to an identified or identifiable natural person, excluding information that has been anonymized.
  4. Sensitive personal information: Personal information that, if leaked or unlawfully used, may easily harm a person’s dignity or personal or property safety. Health and physiological information processed by AURA is sensitive personal information.
  5. Health or physiological data: Health, physiological, and general-wellness information measured by the health ring, calculated by algorithms, or entered by you, including heart rate, blood oxygen, temperature, sleep, activity, stress, and heart rate variability (HRV).
  6. Ring device information: Information required to scan, connect, and manage the health ring, including its Bluetooth broadcast name, MAC address or device identifier, battery level, and connection status.
  7. Pairing and synchronization: Establishing a connection and exchanging data between the health ring and your phone through Bluetooth or other short-range communications. On iOS, this also includes your voluntary authorization for specified health data to be written to Apple Health.
  8. De-identification: Processing personal information so that a specific natural person cannot be identified without additional information.
  9. Anonymization: Processing personal information so that a specific natural person cannot be identified and the information cannot be restored.

2. How We Collect and Use Your Personal Information

We follow the principles of lawfulness, legitimacy, necessity, and good faith, and process only the personal information necessary for the purposes described in this Policy. When processing sensitive personal information, we will explain the necessity and potential impact through pop-ups, in-app notices, or other appropriate means and obtain your separate consent as required by law.

2.1 Health Ring Pairing, Connection, and Management

To scan, identify, connect, and manage your health ring, we process:

This information is used for pairing, automatic reconnection, ring-data synchronization, device-status display, and connection troubleshooting. Refusing these permissions will prevent pairing or use of the health ring but generally will not affect functions that do not require a ring connection.

2.2 Health and Physiological Data

After you actively enable the relevant functions and provide the necessary authorization, we may collect or calculate through the health ring:

We use this information only to:

The AURA health ring is not a medical device. Its measurements and analyses are for general health, fitness, and lifestyle reference only and are not intended for medical diagnosis, treatment, disease prevention, clinical monitoring, clinical decisions, or emergency assistance, and cannot replace advice from a doctor or other healthcare professional. If you feel unwell or data appears abnormal, consult a healthcare professional promptly.

2.3 Personal Health Profile

To calculate activity data and manage goals, we process information that you voluntarily enter, including sex, date of birth, height, weight, stride length, and goals for steps, calories, and activity duration. This information is combined with your health data and is sensitive personal information. You may view or correct it in AURA’s profile and goal settings. Refusing to provide it may affect some activity calculations or goal functions but will not affect basic device pairing.

2.4 Local Processing and Storage

AURA currently does not provide an account system and does not upload ring health data to our cloud. The following information is stored on your phone:

We do not use health data for targeted advertising, commercial profiling, insurance assessment, insurance underwriting, premium pricing, employment decisions, clinical research, medical diagnosis, or genetic analysis, and we do not sell health data.

2.5 Writing Data to Apple Health

On iOS, when you voluntarily enter the Apple Health feature and complete system authorization, AURA may write recent steps, active calories, sleep stages, heart rate, HRV, and blood oxygen to Apple Health. AURA currently does not read your health data from Apple Health through this feature and is not integrated with Google Fit, Health Connect, or Huawei Health.

You may manage authorization at any time in iOS Settings or the Health app. Disabling authorization does not automatically delete records previously written to Apple Health; you manage and delete those records in Apple Health. Apple processes information in Apple Health under its own privacy policy. Please read the system notice before authorizing.

2.6 Gesture Photography and Photo Storage

When a connected ring supports gesture photography, you may voluntarily open the camera screen and authorize camera use, then trigger the shutter with a ring gesture. Photos are stored locally on your phone. Saving photos to the system photo library or opening that library requires photo-library or storage permission. AURA does not upload photos to our servers.

2.7 Notifications and Bluetooth Background Connection

With your authorization, we may use local notifications for sedentary, activity-goal progress, and goal-achievement reminders. Low-battery and high-stress notices may also be displayed in the app. Notifications are generated locally by your phone and currently do not depend on remote push services.

On iOS, AURA uses the system Bluetooth background mode to maintain necessary ring connections and data transfers while the app is in the background. Actual behavior depends on operating-system background policies, Bluetooth status, and device settings.

You may disable these permissions in system settings. Real-time synchronization, continuous monitoring, or reminders may be affected.

2.8 Device-Configuration Network Requests

To identify supported health-ring models and display corresponding device icons, AURA obtains device-model and device-type configuration over the network. Request parameters include language, device type, and pagination information and do not include your ring health data. Configuration is cached locally and updated periodically.

2.9 Customer Service and Feedback

When you contact us through the email address listed in this Policy, we process your email address, email content, device information and attachments that you voluntarily provide to understand issues, communicate with you, and handle feedback.

Do not include irrelevant personal information, another person’s information, or complete health records in emails or attachments. If device or health-data information is genuinely necessary, we will explain what is needed and why, and you may decide whether to provide it.

2.10 Security and Troubleshooting

To maintain Bluetooth connections, health-data reading, and normal app operation, the app and health-ring SDK may generate local runtime logs containing connection events, device identifiers, measurements, or error information. The current version does not integrate crash analytics, user-behavior analytics, or runtime-log upload services. If you voluntarily provide logs or screenshots during customer support, we use them only as necessary to address the relevant issue.

2.11 Processing Without Consent Where Permitted by Law

To the extent permitted by law, consent may not be required when processing personal information is necessary:

3. How We Store Your Personal Information

3.1 Storage Locations

AURA ring health data, personal health profiles, and app configuration are stored locally on your phone. Data you authorize AURA to write to Apple Health is stored and managed by Apple Health under Apple’s rules. Information you provide to us by email is stored in the email system used for customer service.

3.2 Retention Periods

We retain information only for as long as necessary to achieve the purposes described in this Policy, unless otherwise required by law:

3.3 Local Data

The current version does not provide an in-app function to delete individual health records or export all health data. You may use your phone’s “Clear App Data” function or uninstall AURA to delete health data, personal information, and configuration stored locally. Unpairing the ring only stops the connection and clears the most recently paired-device identifier; it does not delete saved local health records.

Clearing app data or uninstalling AURA does not automatically delete photos saved to the system photo library or records previously written to Apple Health. Manage those data separately through the system photo library and Apple Health.

4. Entrusted Processing, Sharing, Transfer, and Public Disclosure

4.1 Entrusted Processing

AURA currently does not use third-party services for cloud storage, advertising analytics, user-behavior analytics, or crash analytics of your ring health data. The app integrates the following SDKs or software components:

SDK or component Purpose Information processed Processing method
flutter_health_ring_sdk Scan and connect the health ring and exchange data Bluetooth broadcast name, MAC address or device identifier, connection status, battery level, and ring health data Transmitted between ring and phone and processed locally on the phone
health_connector_core, health_connector_hk_ios Write user-authorized health data to Apple Health on iOS Steps, active calories, sleep stages, heart rate, HRV, and blood oxygen Written to Apple Health with system authorization
flutter_local_notifications Display sedentary, activity-goal, and goal-achievement notifications Notification title, content, and local reminder status Processed locally on the phone
camera Provide gesture photography Camera view and photos taken Processed locally on the phone
gal Save photos to and open the system photo library Photos taken by the user Processed locally on the phone and in the system photo library

The customer-service email address listed in this Policy is provided by Gmail. When you voluntarily send an email to it, Google may process the email address, email body, and attachments under its privacy policy and may use infrastructure outside your country or region. Do not send irrelevant personal information or complete health records.

If we add an SDK or service that provides personal information to a third party, we will update this Policy and fulfill applicable notice and consent requirements.

4.2 Sharing

We do not share your personal information with third parties except when:

Without your express and separate consent, we will not share, sell, or provide your health, fitness, or general-wellness data to medical institutions, clinical research institutions, insurers, employers, advertising platforms, or data brokers.

After health data is written to Apple Health, Apple’s processing is governed by Apple’s privacy policy and your system settings. Choose the authorization scope carefully.

4.3 Transfers

We do not transfer your personal information except when:

4.4 Public Disclosure

We generally do not publicly disclose your personal information. If public disclosure is necessary, we will inform you of its purpose, information types, and possible impact and obtain your separate consent as required by law, unless otherwise provided by law.

5. How We Protect Your Personal Information

  1. Local health data is stored in the app’s private directory and protected using the application isolation and access-control capabilities provided by your phone’s operating system. AURA currently does not separately claim that local health data is independently encrypted.
  2. The ring and phone communicate through Bluetooth. Actual protection depends on the phone system, Bluetooth protocol version, ring firmware, and device security settings.
  3. Communications between AURA and the device-model configuration interface use HTTPS/TLS. The Internet and wireless environments are not completely secure. Keep your phone on a supported system version and enable screen locking.
  4. Information saved to the system photo library or Apple Health is protected by the corresponding system capabilities. Configure access permissions for your phone, photo library, and health data appropriately.
  5. For information you voluntarily provide by customer-service email, we limit the processing purpose and access scope and apply safeguards appropriate to the risk.
  6. If a security incident involving personal information for which we are responsible occurs or may occur, we will take remedial, notification, and reporting measures as required by law.

6. Your Rights

To the extent provided by law, you have the following rights regarding your personal information:

6.1 Access, Copy, Correction, and Supplementation

You may view relevant information through AURA’s profile, goal settings, health records, and device-management pages and correct or supplement your profile and goals. AURA currently does not provide a health-data export function. For information you provide by customer-service email, you may request access, a copy, correction, or supplementation using the contact details in this Policy.

6.2 Deletion

You may request deletion when:

The current version does not provide in-app deletion of individual health records. You may clear app data or uninstall AURA to delete local health data and profile information, delete photos through the system photo library, and delete health records written to Apple Health through Apple Health. Unpairing the ring does not delete local health data.

To delete information you voluntarily provided by customer-service email, contact us using the details in this Policy.

6.3 Withdrawal of Consent and Disabling Permissions

You may disable Bluetooth, Nearby Devices, Location, Camera, photo-library, notifications, or Bluetooth background-operation permissions in phone settings. On iOS, you may also withdraw AURA’s authorization to write health data through iOS Settings or Apple Health.

After withdrawal, we will stop the corresponding processing, but withdrawal does not affect processing already carried out based on your consent. Some functions may become unavailable.

6.4 Obtaining a Copy and Data Portability

AURA currently has no account system, cloud health-data storage, or in-app health-data export function. We therefore cannot provide a copy of locally stored health data from a server. You may view local health records in AURA and manage data written to Apple Health using Apple Health’s system capabilities.

For information you provide by customer-service email, we will process a request for a copy or transfer where the legal conditions are met.

6.5 Restricting or Refusing Processing

You have the right to restrict or refuse our processing of your personal information as provided by law. For a decision made solely through automated decision-making that significantly affects your rights, you may request an explanation and refuse a decision made solely through automated decision-making.

6.6 Response to Requests

To protect information security, we may ask you to verify your identity. We generally respond within 15 days after receiving your request and completing identity verification. Reasonable requests are generally free of charge. For requests that are manifestly unfounded, repetitive, or excessive, we may charge necessary costs or refuse the request with an explanation as permitted by law.

Except where laws or regulations prevent us from responding, you may contact us again or complain to a competent regulator if you disagree with our response.

7. How We Process Minors’ Personal Information

  1. AURA health rings have no mandatory age restriction and are recommended for users aged 5 and above. Minors under 14 should use AURA only after a parent or other guardian has understood this Policy, consented to the use, and provided supervision.
  2. Before a minor under 14 uses AURA, connects a health ring, or provides personal information to us, the minor must obtain guardian consent. Guardians should guide minors in wearing and using the device appropriately and help manage health data and permissions.
  3. Guardians may clear app data or uninstall the app to delete local phone information and manage information saved in the system photo library or Apple Health separately. Guardians may also exercise access, correction, deletion, or withdrawal rights on the minor’s behalf through the contact details in this Policy.
  4. If we discover that we received the personal information of a minor under 14 through customer service or another channel, we will, after verifying the guardian’s identity, delete or anonymize it as soon as legally practicable, unless otherwise required by law.

8. Cross-Border Transfers

AURA currently does not upload ring health data to our servers or proactively provide such data outside the country or region as part of its core functions. Data that you voluntarily authorize AURA to write to Apple Health is processed by Apple Health under Apple’s rules.

The customer-service email address listed in this Policy is provided by Gmail. When you voluntarily send a customer-service email, the email address, body, and attachments may be processed through Google infrastructure outside the country or region. You may choose whether to send an email or attachment. Do not include health data that is not necessary to resolve the issue. If we later provide personal information to another overseas recipient, we will complete applicable procedures, inform you of the relevant details, and obtain your separate consent where legally required.

9. Governing Law and Dispute Resolution

This Policy is governed by the laws of Mainland China. The parties should first resolve disputes arising from this Policy through friendly consultation. If consultation fails, either party may bring proceedings before a competent people’s court in accordance with law.

10. Policy Updates

We may update this Policy to reflect changes in Product functions, processing activities, or laws and regulations. We will not reduce your rights under this Policy without your express consent.

If an update materially changes the purposes or methods of processing, information types, or sharing recipients, we will explain the change through in-app notices, pop-ups, announcements, or other appropriate means and obtain renewed consent where required by law. The updated Policy takes effect on the effective date shown in the updated version.

11. How to Contact Us

For questions, comments, complaints, or requests to exercise your personal-information rights, contact our personal-information protection representative:

After verifying your identity, we will process and respond to your request within the period required by applicable law.

12. Appendix: Permissions and Use Scenarios

We request permissions only when you use a relevant function. You may refuse or disable permissions in your phone’s system settings. Refusing or withdrawing a permission generally affects only the corresponding function.

Permission Purpose Effect of refusal or disabling
Bluetooth Scan, connect, and synchronize the AURA health ring; read device status and transmit health data Cannot pair, connect, or synchronize ring data
Nearby Devices (Android 12 and later) Discover and connect to a nearby AURA health ring Cannot scan for or connect to the ring
Location (some Android systems) Meet technical requirements of some operating systems for Bluetooth scanning; we do not continuously track your precise location for this purpose Scanning or connection may fail on the relevant system
Apple Health (iOS only) Write your authorized steps, active calories, sleep stages, heart rate, HRV, and blood oxygen to Apple Health Cannot write AURA health data to Apple Health; AURA’s local recording and display are unaffected
Camera Take photos with the phone camera and support triggering the shutter through a ring gesture Gesture photography is unavailable
Photo library / photo storage Save photos to and open the system photo library Cannot save photos to or open the system photo library from AURA
Bluetooth background operation (mainly iOS) Maintain necessary ring connections and data transfers while the app is in the background Background connection or data transfer may be interrupted
Notifications Send local sedentary, activity-goal progress, and goal-achievement reminders Cannot receive the relevant local notifications
Network access Obtain supported ring models, device types, and device-icon configuration Cannot update model and icon configuration online; locally cached configuration may continue to be used

Permission names and authorization methods vary by phone brand, operating system, and system version. Follow the permissions shown on your device.