Legal

Privacy Policy

Effective date: 3 June 2026 · Last updated: 3 June 2026

Olakino helps people understand their wellness using data from continuous glucose monitors and wearable devices. Some of that data is health data, which European law treats with extra care. This policy explains, in plain language, what we collect, why, and the rights you have over it.

On this page

  1. Who we are
  2. What this policy covers
  3. Data we collect
  4. Health data
  5. Why we use it & legal bases
  6. Who we share it with
  7. International transfers
  8. How long we keep it
  9. Your rights
  10. Security
  11. Cookies
  12. Children
  13. Changes
  14. Contact

1. Who we are

Olakino Oy (the data controller) is responsible for the personal data described in this policy. We are a company registered in Finland.

2. What this policy covers

This policy applies to our website at olakino.fi (including the waitlist and contact forms) and to the Olakino mobile and web application and related services (together, the "App" and "Services"). Where a section applies only once you use the App, we say so.

Today, if you only visit the website and join the waitlist, the only personal data we hold about you is your email address and basic technical information. The health-data sections below describe processing that begins when you create an account and connect a device in the App.

3. Data we collect

Information you give us

Information from connected devices and services (App)

Information collected automatically

4. Health data - special category

Glucose, HRV and similar measurements are data concerning health, a special category of personal data under Article 9 GDPR. We only process this data on the basis of your explicit consent, which you give when you connect a device or enable a feature that uses it. You can withdraw that consent at any time - see Your rights. Withdrawing consent stops future processing but does not affect anything done before you withdrew it.

Olakino provides wellness guidance. It is not a medical device and does not provide medical diagnosis or treatment. See our Terms of Service for the full health disclaimer.

5. Why we use your data and our legal bases

PurposeLegal basis (GDPR)
Manage the waitlist and contact you about launchConsent - Art. 6(1)(a)
Create and run your account and provide the ServicesContract - Art. 6(1)(b)
Generate personalised wellness insights from health dataExplicit consent - Art. 9(2)(a)
Keep the site and App secure and prevent misuseLegitimate interests - Art. 6(1)(f)
Meet legal and accounting obligationsLegal obligation - Art. 6(1)(c)
Improve the product (aggregated/anonymised where possible)Consent / legitimate interests

We do not make decisions that produce legal or similarly significant effects about you based solely on automated processing without human involvement.

6. Who we share your data with

We do not sell your personal data. We share it only with:

7. International transfers

We aim to keep your data within the European Economic Area (EEA). Where a provider processes data outside the EEA, we rely on appropriate safeguards such as European Commission adequacy decisions or Standard Contractual Clauses. You can ask us for details of the safeguards in place. [PROCESSORS - note any US-based providers and the safeguard relied on.]

8. How long we keep your data

We keep personal data only as long as needed for the purposes above, then delete or anonymise it.

9. Your rights

Under the GDPR you have the right to:

To exercise any of these, email pauliina@olakino.fi. You also have the right to lodge a complaint with the Finnish supervisory authority, the Office of the Data Protection Ombudsman (Tietosuojavaltuutetun toimisto, tietosuoja.fi).

10. Security

We use appropriate technical and organisational measures to protect your data, including encryption in transit, access controls and limiting who can see health data. No system is perfectly secure, but we work to protect your information and will notify you and the authorities of a personal-data breach where the law requires.

11. Cookies

Our website uses cookies and similar technologies that are strictly necessary to operate and secure the site. [ANALYTICS - if you add analytics or marketing cookies, we must ask for consent first and list them here.]

12. Children

Olakino is not directed at children. You must be at least 16 years old (or the age of digital consent in your country) to use the Services. We do not knowingly collect data from children below that age.

13. Changes to this policy

We may update this policy from time to time. We will post the updated version here and change the "last updated" date. If changes are significant, we will let you know by email or in the App.

14. Contact

Questions about this policy or your data? Email pauliina@olakino.fi or write to Olakino Oy, [REG_ADDRESS], Helsinki, Finland.