Terms of Service
- Effective
- August 10, 2026
- Last updated
- August 11, 2026
These terms set out what you can expect from GHealth Connector by StillWarm.app and what we expect from you. They are deliberately short on ceremony: the Service reads health data you already own live from Google and hands it to tools you choose. It keeps no copy of it unless you ask it to.
Two sections matter more than the rest. Read section 5 before you act on anything the Service shows you, and section 7 before you connect an MCP client — that feature sends your health data from our servers to a third party you choose.
1. Agreement to these terms
These Terms of Service ("Terms") are an agreement between you and Bestony, an individual developer based in the People's Republic of China (Mainland China), who operates GHealth Connector by StillWarm.app ("the Service", "we", "us"). By creating an account or using the Service, you accept these Terms. If you do not accept them, do not use the Service.
Our Privacy Policy forms part of these Terms and describes what we do with your data.
2. What the Service does
GHealth Connector by StillWarm.app lets you:
- connect your Google Account and authorize access to Google Health;
- read the health data categories you authorized, live from Google, without storing a server-side copy;
- optionally store a copy of those same categories, on a daily schedule, if and only if you turn on stored history from your dashboard — see the privacy policy for what is kept and for how long;
- write records back to Google Health, for the categories where you granted write permission;
- optionally expose your own data to a Model Context Protocol (MCP) application that you choose and approve.
The Service is a tool for working with data you already own. It is not a health record system of record, and it is not a substitute for the apps and devices that produce your data.
3. Eligibility and your account
- You must be at least 18 years old and able to enter into a binding agreement.
- You must give accurate account information and keep it up to date.
- You are responsible for your credentials and for everything done through your account. Tell us at bestony@linux.com as soon as you suspect unauthorized access.
- One account per person. Do not share an account, and do not let anyone else use yours.
4. Google Account and health permissions
- The Service needs a Google Account. Your use of that account is governed by your agreement with Google, not by us.
- Health access is a separate consent from signing in. You grant it on Google's consent screen, permission by permission, and you can leave any of them unticked.
- Authorization is incremental: a later request adds permissions without revoking earlier ones. Your dashboard always shows what Google actually granted, which may be less than what was asked for.
- You can revoke everything at https://myaccount.google.com/permissions at any time. Features that depend on the revoked permission will stop working, which is expected and is not a fault in the Service.
- Google may change, restrict or withdraw its APIs. If that breaks a feature, we may have to change or remove it.
5. Not medical advice
GHealth Connector by StillWarm.app is not a medical device and does not provide medical advice, diagnosis or treatment. Nothing it shows you is reviewed by a clinician. Never disregard professional medical advice, and never delay seeking it, because of something you read here. If you think you may have a medical emergency, call your doctor or your local emergency number immediately.
The data the Service shows comes from consumer devices and apps by way of Google Health. It can be incomplete, delayed, duplicated or simply wrong — because a sensor was inaccurate, a device did not sync, a permission was withdrawn, or an API call failed. Any summary, trend or answer the Service produces from that data inherits those limits.
Do not use the Service to make decisions about medication, treatment, or whether to seek care. You use it, and anything derived from it, at your own risk.
6. Your data stays yours
You own your health data. Nothing here transfers ownership of it to us.
You grant us a limited, non-exclusive, revocable, royalty-free licence to process and transmit your data solely to operate the features you asked for — retrieving it live from Google, storing a copy of it if you turned on stored history, returning it to you, writing back what you asked to write, and serving it to an MCP client you connected. The licence exists only to make the Service work, and it ends when you withdraw the applicable permission or delete your account.
We do not use your health data to train or fine-tune machine learning models, we do not sell it, and we do not use it for advertising. The Privacy Policy states the full set of limits, including the Google API Services User Data Policy commitments we are bound by.
7. MCP access
MCP access is an optional feature. It requires either an API key you generate or an OAuth application you approve. An API key can access your account's MCP data. An OAuth application can access only your account and the scopes in its approval.
- You choose the application. You are responsible for the applications you approve, and approving an application is your instruction to disclose your health data to it within the displayed scopes until you revoke that approval. When you connect one, your health data is sent to it at your direction. If it forwards your data to a model provider or anywhere else, that is a consequence of the client you chose, and its terms govern what happens next.
- You are responsible for your API keys. Treat an API key like a password. Anyone holding it can read your MCP health data. Do not commit it to a repository, paste it into a shared document, or give it to anyone you would not hand your health records to.
- Transfers cannot be undone. Revoking an API key stops future access for that key. Revoking an application's approval deletes the approval and its stored access and refresh tokens; the MCP endpoint rejects its old access token on the next request. These controls are independent and do not revoke each other. Data a client already received is beyond our reach.
- We may protect the endpoint. We can rate-limit, suspend or revoke MCP credentials that appear compromised, abusive, or that threaten the Service's stability. Where practical we tell you first.
8. Acceptable use
You agree not to:
- access or attempt to access any account or data that is not yours;
- circumvent authentication, authorization, rate limits or any other protective measure;
- probe, scan or test the Service's security, or interfere with its operation, without our written permission;
- scrape, bulk-export or otherwise extract data beyond your own, or use the Service to assemble a dataset about anyone else;
- resell, sublicense or commercially redistribute the Service;
- reverse-engineer or decompile the Service, except where the law expressly permits it;
- use the Service in a way that breaks Google's terms or the Google API Services User Data Policy;
- use health data obtained through the Service to make decisions about anyone's credit, insurance, employment or eligibility for anything;
- use the Service for anything unlawful, or to infringe anyone's rights.
9. Availability and changes to the Service
The Service is provided on an ongoing but not guaranteed basis. We may add, change, suspend or discontinue features at any time, and there is no uptime commitment or service level agreement. If we decide to shut the Service down permanently, we will give you reasonable advance notice and a window in which to export or delete your stored account data.
10. Plans
The Service has a free plan and a paid subscription. The free plan reads your Google Health data live and reaches back 90 days; the paid plan removes that window so you can query your whole history. What each plan includes, and what the paid plan costs, is set out on our pricing page — it is not repeated here, so the two can never disagree.
We may change what a plan includes or introduce new plans. Price changes are governed by section 11. Nothing here obliges you to pay for anything: the free plan stays free, and you are only charged if you subscribe.
11. Billing and payment
a. Your authorisation to charge you
When you provide a payment method and subscribe to a paid plan, you expressly authorise Bestony to charge that payment method the fee for your plan, for the billing period you chose, on a recurring basis. That authorisation stands until you cancel under section 12.
Your subscription renews automatically at the end of each billing period unless you cancel before it ends. Before an annual subscription renews we will email you in advance, in time to cancel if you no longer want it.
b. Price changes
If we change the price of a plan you are on, we will tell you before the change takes effect, and it will only apply from your next renewal — never mid-period. If you do not want to pay the new price, cancel before that renewal; letting it renew is your acceptance of it.
c. How the payment is taken
Payments are handled by Waffo Pancake. Your card details go to them and never reach our servers — we cannot see your card number, which is deliberate: what we never hold cannot leak from us. What we do keep is your plan, your billing period, Waffo Pancake's transaction references and the invoices we are required to retain — described in our Privacy Policy.
If a renewal payment fails we may retry it and will tell you. If it keeps failing, the subscription ends and the account returns to the free plan; we do not send unpaid invoices to collection.
d. Taxes
Prices are exclusive of applicable taxes — VAT, GST, sales tax and the like — unless we say otherwise. Where the law requires us to collect and remit them, they are added to what you are charged.
12. Cancelling your subscription
a. How to cancel
You can cancel at any time, without giving a reason, either:
- In the app — your dashboard's subscription card has a cancel control. This is the quickest route and needs nothing from us.
- By email — write to bestony@linux.com from the address on your account.
Cancelling takes effect immediately, in the sense that no further charge will be made. We confirm it by email within 10 minutes.
b. What happens afterwards
- Your paid plan keeps working until the end of the period you have already paid for. You are not cut off the moment you cancel.
- You are not charged again. There is nothing further to do and no notice period.
- When that period ends the account returns to the free plan, and the history window goes back to 90 days.
- Cancelling does not delete your account or your data. Deleting is a separate request — see section 6 — so cancelling never costs you anything you would want to keep.
13. Refunds
a. The general rule
The Service is delivered digitally and immediately, so subscription fees are generally not refundable. The exceptions below are real ones, and we would rather refund you than argue.
b. When we do refund
- New subscriber guarantee — 7 days. If this is your first subscription with us, ask within 7 days of the first charge and we refund it in full. No conditions on how much you used it.
- Duplicate or mistaken charges. Charged twice, or charged after cancelling? Refunded in full, and you do not have to be the one who spots it.
- Outages longer than 72 hours. If the paid features are unavailable for that long through our fault, you get a pro-rata refund or an equivalent extension, whichever you prefer.
- Your statutory rights. Where the law gives you a right to withdraw or to a refund — such as the 14-day cooling-off period in the EU and the UK — that right applies on top of this section and nothing here limits it.
c. How to ask
Email bestony@linux.com with the address on your account, the transaction reference and what happened. We acknowledge within 2 business days and, where the refund is due, it reaches your payment method within 5–10 business days, depending on your bank.
d. What we do not refund
- Billing periods you have already used, except in the cases above.
- An annual subscription, once more than 30 days have passed since the initial purchase.
- Accounts we closed for a material breach of these Terms or of section 8.
14. Third-party services
The Service depends on third parties — Google above all, plus hosting and infrastructure providers, Waffo Pancake for payments, and any MCP client you connect. We do not control them, we do not endorse them, and we are not responsible for their acts, omissions, availability, or terms. Your relationship with each of them is your own.
15. Termination
You may stop using the Service at any time, revoke our Google access, and ask us to delete your account — we complete deletion requests within 30 days.
We may suspend or terminate your account if you materially breach these Terms, if we are legally required to, or if your use poses a security or stability risk to the Service or to other users. Except where that is impossible or would defeat the purpose, we will tell you why and give you a chance to export your data first.
section 5, and section 16 through section 19, survive termination, along with any provision that by its nature should.
16. Disclaimers
To the maximum extent permitted by law, the Service is provided "as is" and "as available", without warranties of any kind, whether express, implied or statutory, including any implied warranty of merchantability, fitness for a particular purpose, or non-infringement. We do not warrant that the Service will be uninterrupted, timely, secure or error-free, nor that the health data it retrieves or derives is accurate, complete or current.
17. Limitation of liability
To the maximum extent permitted by law, we are not liable for indirect, incidental, special, consequential, exemplary or punitive damages, nor for lost profits, lost data, lost goodwill, or the cost of substitute services, arising out of or related to the Service — whether the claim is framed in contract, tort or otherwise, and even if we were told such damages were possible.
Our total aggregate liability arising out of or related to the Service is limited to the greater of the amounts you paid us in the twelve months before the event giving rise to the claim, or USD 100.
Some jurisdictions do not allow certain exclusions or limitations. Where that is the case, these limits apply only to the extent permitted, and nothing here excludes liability for death or personal injury caused by negligence, for fraud, or for anything else that cannot lawfully be excluded.
18. Indemnity
You agree to indemnify and hold us harmless from claims, damages, liabilities and reasonable costs arising from your use of the Service in breach of these Terms, your violation of law, or your infringement of anyone's rights — including anything that results from an MCP client or credential you chose to connect or share.
19. Governing law and disputes
These Terms are governed by the laws of the People's Republic of China (Mainland China), without regard to its conflict-of-laws rules.
Resolve it informally first
If something goes wrong, email bestony@linux.com and describe the problem. Most disputes are a misunderstanding, and we would rather fix it than litigate it. If we have not resolved it within 30 days of your email, either of us may take it further.
Then, the courts
Any dispute that cannot be settled informally shall be submitted to the courts with jurisdiction at the operator's place of residence. If you are a consumer, this does not deprive you of the protection of mandatory rules — including the right to bring proceedings — that the law of your own country of residence gives you.
20. Changes to these terms
We may update these Terms. The "Last updated" date at the top always reflects the current version. For material changes we will give you notice by email or in the app before they take effect. Continuing to use the Service afterwards means you accept the updated Terms; if you do not accept them, stop using the Service and ask us to delete your account.
21. General
- Entire agreement. These Terms and the Privacy Policy are the whole agreement between us about the Service, and supersede anything said before.
- Severability. If a provision is unenforceable, it is limited or removed to the minimum extent necessary and the rest stays in force.
- No waiver. Not enforcing a provision once is not a waiver of it.
- Assignment. You may not assign these Terms. We may assign them to a successor operator of the Service, on the notice described in the Privacy Policy.
- Notices. We reach you at the email address on your account; you reach us at bestony@linux.com.
- Language. These Terms are written in English. If we publish a translation and the two conflict, the English version controls.
22. Contact
- Email: bestony@linux.com
- Operator: Bestony, an individual developer based in the People's Republic of China (Mainland China)
- Service: https://www.stillwarm.app