Privacy policy
Privacy Policy
Last updated: 14 August 2026
Privacy, in brief
Superdivergent Ltd, trading as edge+ease, is responsible for personal data used through our direct-to-consumer website, online shop, account and digital services.
Some optional edge+ease features may involve health, wellbeing or wearable information. We treat this information with additional care and, where required, ask for your explicit consent separately from this Privacy Policy.
We do not sell your personal data.
We do not use your health, wellbeing, questionnaire, journal or wearable data to create third-party advertising audiences.
You can change optional choices, withdraw consent where consent is relied on, and exercise your data protection rights at any time.
This Privacy Policy explains what personal data we collect, why we use it, who we share it with, how long we keep it, and the choices and rights available to you.
It should be read alongside our Cookie Policy, Terms & Conditions and, where relevant, our AI & Data Transparency Policy.
Reading or accepting this Privacy Policy is not the same as giving consent. Where the law requires consent, including explicit consent for certain health-related information, we ask for it separately at the relevant point.
1. Who we are
Superdivergent Ltd, trading as edge+ease, is a private limited company registered in England and Wales.
Company number: 16509373
Registered office:
167–169 Great Portland Street
5th Floor
London
W1W 5PF
United Kingdom
For direct-to-consumer use of the edge+ease website, online shop, account, app and digital features, Superdivergent Ltd is generally the data controller. This means we decide why and how your personal data is used.
In some business-to-business or employer-sponsored arrangements, edge+ease may instead process certain personal data on behalf of another organisation. In those circumstances, that organisation may be the controller and its privacy notice will explain how your information is used.
We may still act as an independent controller for our own account administration, security, billing, legal obligations and direct consumer transactions.
For privacy questions or data-rights requests, contact:
support@edgeandease.com
2. What this Privacy Policy covers
This Privacy Policy applies when you:
- visit or shop on the edge+ease website;
- create or use an edge+ease account;
- purchase an edge+ease product;
- start, manage or cancel a subscription;
- use the edge+ease app or digital features, when available;
- complete optional questionnaires, check-ins, self-tracking or journal features;
- connect a supported wearable, health or wellbeing service;
- contact customer support;
- make a complaint;
- return a product or request a refund;
- make a claim under our money-back guarantee;
- join a waitlist, newsletter or marketing list;
- submit feedback, a survey response or review; or
- otherwise communicate or interact with us in connection with edge+ease.
This Privacy Policy does not apply to third-party websites or platforms that have their own privacy policies.
It also does not replace any separate privacy notice provided for a clinical research study, recruitment or employment process, or another activity governed by its own privacy notice.
Our consumer Services are intended for adults aged 18 and over.
We do not knowingly design our consumer Services for children. If we become aware that personal data has been collected from someone under 18 in circumstances where it should not have been, we will review the position and take appropriate action.
3. Personal data we may collect
The information we collect depends on how you use edge+ease.
Identity and contact information
This may include:
- name;
- email address;
- telephone number;
- delivery address;
- billing address; and
- account identifiers.
Account and security information
This may include:
- account status;
- login and authentication information;
- account settings;
- security information; and
- preferences.
Where payments are handled by a payment provider, we do not generally receive or store your full payment-card details.
Order, subscription and transaction information
This may include:
- products purchased;
- subscription plan and frequency;
- order history;
- payment status;
- subscription renewals;
- discounts and promotional codes;
- refunds;
- returns;
- money-back guarantee claims; and
- fulfilment and delivery information.
Customer support and communications
This may include:
- emails and messages;
- enquiries;
- complaints;
- feedback;
- survey responses;
- review-related communications; and
- records of our communications with you.
Marketing and preference information
This may include:
- newsletter preferences;
- marketing choices;
- opt-in and opt-out records;
- communication preferences;
- limited engagement with marketing communications; and
- suppression records used to make sure we respect your opt-out.
Technical and usage information
This may include:
- IP address;
- device and browser information;
- operating system;
- approximate location derived from IP address;
- timestamps;
- pages or screens viewed;
- referral information;
- website and app interaction events;
- app events;
- crash and diagnostic information; and
- security logs.
Cookie, analytics and advertising information
Where relevant, and where any required permission has been obtained, this may include:
- cookie identifiers;
- pixels;
- tags;
- SDKs;
- device identifiers;
- analytics events;
- advertising events;
- attribution information; and
- purchase or conversion events.
Wellbeing and self-report information
If you choose to use optional wellbeing features, you may provide information relating to areas such as:
- sleep;
- energy;
- focus;
- stress;
- digestion;
- routines;
- symptoms;
- mood;
- menstrual or cycle-related information, where relevant to a feature; and
- other wellbeing information you choose to provide.
Depending on its content and context, some of this information may be considered health data under data protection law.
Wearable and connected-service information
If you choose to connect a supported wearable, health or wellbeing service, we may receive information made available within the permissions you grant.
Depending on the service and permissions, this may include:
- sleep information;
- activity;
- resting heart rate;
- heart-rate variability;
- recovery or readiness-type metrics;
- exercise information;
- timestamps; and
- device-related information.
Generated or inferred information
Our Services may generate information from data you provide or connect, including:
- scores;
- summaries;
- trends;
- patterns;
- labels;
- correlations;
- recommendations; and
- other personalised or analytical outputs.
Where an inference itself reveals information about health, we treat it with the additional protections that apply to health data.
Fraud, security and compliance information
We may process information used to identify, prevent or investigate:
- account misuse;
- payment fraud;
- suspected security incidents;
- duplicate accounts;
- repeated guarantee abuse;
- chargeback abuse;
- unauthorised resale; and
- other unlawful or harmful activity.
We do not intentionally ask you to upload full medical records or information that is not needed for the relevant feature.
Please do not send us medical records or other highly sensitive information unless a feature or support interaction specifically requires it.
4. How we collect personal data
We may collect personal data in the following ways.
Directly from you
For example, when you:
- create an account;
- place an order;
- subscribe;
- complete a questionnaire or check-in;
- enter information into a journal or tracking feature;
- contact customer support;
- submit a return, refund or guarantee request;
- provide feedback or a review; or
- choose your marketing preferences.
Automatically
For example, through:
- essential system logs;
- cookies;
- SDKs;
- analytics tools;
- pixels;
- tags; and
- similar technologies.
From service providers
For example:
- Shopify;
- payment providers;
- subscription-management providers;
- warehouse and fulfilment providers;
- delivery providers;
- fraud-prevention providers;
- analytics and diagnostics providers;
- review providers;
- communications providers; and
- customer-support tools.
From connected services
Where you choose to connect a wearable, health or wellbeing service, we may receive information through that service within the permissions you grant.
From business customers or administrators
Where edge+ease is provided through a business, employer or other organisation, we may receive limited information from that organisation, subject to the relevant contract and privacy information.
5. How and why we use personal data
We only use personal data where we have a lawful reason to do so.
Depending on the purpose, we may rely on:
- Contract — where processing is necessary to provide products or Services you have requested.
- Legal obligation — where we need to process information to comply with the law.
- Legitimate interests — where processing is necessary for a genuine business or operational purpose and your rights do not override that interest.
- Consent — where you have actively chosen to allow a particular use.
Where health or other special category information is involved, we also identify an appropriate condition under Article 9 of the UK GDPR. This will commonly be explicit consent for optional health-related features.
Creating and managing your account
We may use identity, contact, account and technical information to:
- register your account;
- authenticate you;
- maintain your profile;
- provide requested features;
- administer your account; and
- keep your account secure.
We generally rely on contract and, for appropriate security and administrative processing, our legitimate interests in operating and protecting the Services.
Processing orders and subscriptions
We may use identity, contact, order and transaction information to:
- accept and process purchases;
- manage payments;
- administer subscriptions;
- arrange fulfilment and delivery;
- process returns;
- issue refunds; and
- administer our money-back guarantee.
We generally rely on contract, legal obligation and our legitimate interests in administering transactions and preventing fraud or misuse.
Providing customer support
We may use relevant information to:
- answer enquiries;
- manage complaints;
- resolve problems;
- respond to guarantee claims;
- investigate delivery or payment issues; and
- provide customer service.
We may rely on contract, legitimate interests and, where applicable, legal obligation.
Providing optional wellbeing features
If you choose to use questionnaires, check-ins, self-tracking, journals, wellbeing insights or similar optional features, we may process the information you provide to operate those features.
Where the information is health data, we will identify both an appropriate Article 6 lawful basis and an Article 9 condition.
Where we rely on explicit consent, we will ask for this separately.
Providing connected wearable features
If you choose to connect a supported wearable, health or wellbeing service, we may process information supplied through that connection to provide the feature you requested.
Where connected information constitutes health data, we will apply the additional protections required for special category data and obtain explicit consent where that is the condition we rely on.
Providing AI-supported features
We may process information within a relevant feature to provide:
- summaries;
- pattern recognition;
- personalisation;
- correlations;
- recommendations;
- insights; and
- other AI-supported outputs.
The lawful basis depends on the underlying feature and purpose.
Where AI-supported processing involves health data, an appropriate Article 9 condition will also apply.
Keeping edge+ease and our users secure
We may use account, technical, transaction, security and fraud information to:
- protect accounts;
- prevent fraud;
- identify misuse;
- investigate security incidents;
- prevent unauthorised access;
- prevent guarantee or promotional abuse;
- protect our systems; and
- prevent unlawful resale.
We generally rely on our legitimate interests in protecting our customers, our business and our systems, together with legal obligations where applicable.
Understanding and improving our Services
We may use limited technical, diagnostic and usage information to:
- understand how our website and digital Services are used;
- troubleshoot problems;
- measure performance;
- identify errors;
- improve navigation and usability;
- improve reliability; and
- develop our Services.
We may rely on legitimate interests for appropriate operational processing and consent where non-essential technologies require it.
We do not use identifiable health, questionnaire, journal or wearable data for unrelated general marketing analytics simply because it might be commercially useful.
Sending marketing
Where permitted by law, we may use your contact information, purchase history, marketing preferences and limited engagement information to send:
- newsletters;
- product information;
- launches;
- editorial content;
- offers; and
- other edge+ease marketing.
We may rely on:
- your consent; or
- applicable existing-customer marketing rules where permitted by law.
You can opt out at any time.
Measuring advertising and attribution
Where required permissions have been obtained, we may use limited online identifiers, browsing events and conversion information to:
- measure advertising performance;
- understand attribution; and
- improve marketing effectiveness.
We do not use your health, wellbeing, questionnaire, journal or wearable information to create third-party advertising audiences.
Reviews, surveys and feedback
If you submit a product review, survey response or other feedback, we may process that information to:
- understand customer experience;
- improve our products or Services;
- moderate reviews;
- respond to feedback; and
- publish a review where you have submitted it for publication.
We will handle any personal information contained in reviews or feedback in accordance with this Privacy Policy.
Meeting legal and regulatory obligations
We may process information to:
- maintain accounting and tax records;
- comply with legal and regulatory requirements;
- respond to regulators or lawful requests;
- investigate disputes; and
- establish, exercise or defend legal claims.
Corporate transactions
If Superdivergent Ltd is involved in an:
- investment;
- financing;
- merger;
- acquisition;
- restructuring; or
- sale of all or part of the business,
limited personal information may be disclosed where reasonably necessary, subject to appropriate confidentiality and data-protection safeguards.
6. Health, wellbeing and other special category information
Some information you choose to provide, connect or generate through a feature may reveal information about your physical or mental health.
Health information is special category personal data and receives additional protection under UK data protection law.
Where we rely on explicit consent to process health information, we will ask for it separately from this Privacy Policy.
The consent request will explain:
- what type of information is involved;
- why we want to use it; and
- how you can withdraw your consent.
You can withdraw consent through the relevant feature or settings where available, or by contacting us.
Withdrawing consent does not affect processing that was lawful before you withdrew it.
If an optional feature requires particular information to function, withdrawing consent may mean we can no longer provide that feature. It will not by itself prevent you from buying edge+ease products.
Our commitments
We do not:
- sell your health, wellbeing, questionnaire, journal or wearable information;
- provide that information to advertising partners for their own advertising audiences;
- use that information to determine eligibility for employment, insurance or credit;
- use it to make another legally significant eligibility decision; or
- use identifiable health information to train unrelated general-purpose third-party AI models.
If we propose a materially new use of sensitive personal information, we will assess its legal basis and risks before introducing it, update the relevant privacy information and obtain fresh consent where required.
7. Wearables and connected services
If you choose to connect a supported wearable, health or wellbeing service, the connection process will explain:
- which service you are connecting;
- what categories of information are requested; and
- what the information will be used for.
Connecting a service is optional.
You can normally disconnect a connected service at any time.
Disconnecting stops future collection once the connection has been revoked. It does not automatically delete information already received by edge+ease.
You may ask us to delete eligible connected information, subject to any limited legal, regulatory, fraud-prevention or security reason requiring us to retain certain records.
Connected third-party services have their own privacy practices. We recommend reviewing their privacy information before connecting them.
8. AI and automated processing
edge+ease may use artificial intelligence or automated tools to support features such as:
- summaries;
- pattern recognition;
- personalisation;
- correlations;
- recommendations;
- quality monitoring; and
- service improvement.
AI-supported outputs may sometimes be incomplete, inaccurate or unsuitable for an individual situation.
They are intended for informational and wellbeing support and are not medical diagnosis or treatment.
We do not currently use AI to make solely automated decisions that produce legal or similarly significant effects on you.
If this changes, we will provide the information and safeguards required by applicable law before that processing begins.
Not every individual AI output is reviewed by a person.
We may:
- test systems;
- review samples;
- monitor performance;
- investigate problems; and
- provide access to human support where appropriate.
More information is available in our AI & Data Transparency Policy.
9. Marketing, advertising and service messages
Service messages
We may send communications relating to:
- orders;
- delivery;
- subscriptions;
- payments;
- account administration;
- security;
- returns and refunds;
- product safety;
- policy changes; and
- other operational matters.
These are service communications rather than marketing and may still be sent where necessary even if you have opted out of marketing.
Marketing
We may send marketing by email, SMS or similar channels where:
- you have consented; or
- applicable law permits us to contact an existing customer about our own similar products or services.
You can opt out at any time by:
- using the unsubscribe link in a marketing message;
- changing relevant settings where available; or
- contacting us.
Advertising and attribution
Where required, we obtain consent before activating non-essential advertising, analytics or tracking technologies.
We may use limited:
- online identifiers;
- website events;
- referral information; and
- purchase or conversion events
for advertising measurement and attribution where lawful.
We do not use health, wellbeing, questionnaire, journal or wearable information to create third-party advertising audiences.
10. Cookies and similar technologies
The edge+ease website and digital Services may use:
- cookies;
- local storage;
- SDKs;
- pixels;
- tags;
- device identifiers; and
- similar technologies.
Some are necessary for:
- security;
- checkout;
- payments;
- login;
- subscription management;
- fraud prevention; and
- remembering your privacy choices.
Other technologies, including certain analytics or advertising technologies, may require your consent.
Our Cookie Policy and cookie settings provide more information about the technologies we use and your choices.
You can change non-essential cookie choices through our cookie settings tool where available.
11. Who we share personal data with
We do not sell your personal data.
Where reasonably necessary, we may share information with:
- Shopify and other e-commerce providers;
- subscription-management providers;
- payment processors;
- fraud-prevention providers;
- warehouse and fulfilment providers;
- postal and delivery providers;
- cloud hosting providers;
- database and app infrastructure providers;
- authentication and backup providers;
- customer-support providers;
- CRM systems;
- email and communications providers;
- product-review providers;
- analytics and diagnostics providers;
- advertising and attribution providers, subject to required permissions;
- AI and technical providers used to provide approved edge+ease features;
- wearable and connected-service providers where you choose to make a connection;
- accountants, auditors and insurers;
- lawyers and other professional advisers;
- regulators, courts, law enforcement and public authorities where required or permitted by law; and
- potential investors, purchasers or counterparties involved in a corporate transaction.
Some of these organisations process personal information only on our instructions as our processors.
Others may act as independent controllers for their own processing.
Where we appoint a processor, we require appropriate contractual and data-protection safeguards.
12. International transfers
Some of our service providers may process personal data outside the United Kingdom.
Where this involves a restricted international transfer, we use an appropriate lawful transfer mechanism.
Depending on the circumstances, this may include:
- UK adequacy regulations;
- the UK International Data Transfer Agreement;
- the UK Addendum to approved Standard Contractual Clauses; or
- another legally recognised safeguard.
Where required, we also assess the level of protection available in the destination country and apply additional safeguards.
You can contact us for further information about relevant international transfers.
13. How long we keep personal data
We keep personal data only for as long as reasonably necessary for the purpose for which it was collected, taking account of our legal, accounting, security, regulatory, dispute and claims requirements.
Our typical approach is as follows.
Account and profile information
Generally retained while your account is active and for a limited period afterwards where necessary for:
- support;
- security;
- fraud prevention;
- disputes; or
- legal claims.
It is then deleted or anonymised.
Wellbeing, questionnaire, journal and wearable information
Generally retained while:
- the relevant account or feature remains active;
- you continue to use the feature; or
- until you delete the information or request eligible deletion.
Limited copies may remain temporarily in backups or where a legal, regulatory, security or dispute-related reason requires limited retention.
We do not retain identifiable sensitive information indefinitely simply because it might be useful later.
Orders, subscriptions, refunds and transaction records
Generally retained for up to 6 years where necessary for:
- tax;
- accounting;
- contractual obligations;
- regulatory requirements;
- consumer disputes; and
- legal claims.
Support, complaints and communications
Typically retained for up to 24 months after the relevant interaction.
We may retain information for longer where necessary for:
- an unresolved complaint;
- an investigation;
- a dispute; or
- a legal claim.
Technical, analytics and cookie information
Retention depends on the relevant technology and purpose.
Analytics information is generally retained only for as long as reasonably necessary and typically for no more than 26 months, although shorter periods may apply.
Cookie-specific durations are available through our cookie settings where applicable.
Marketing preferences
Kept until you:
- opt out;
- withdraw consent; or
- otherwise ask us to stop.
We may keep a minimal suppression record afterwards to ensure we continue to respect your opt-out.
Security, fraud and incident information
Kept for as long as reasonably necessary to:
- protect the Services;
- investigate incidents;
- investigate fraud;
- prevent repeated abuse;
- meet regulatory obligations; and
- defend legal claims.
Consent and compliance records
Kept for as long as reasonably necessary to:
- demonstrate compliance;
- record your choices;
- investigate complaints; and
- deal with disputes or legal claims.
When personal information is no longer required, we delete it, anonymise it or put it beyond ordinary use.
Properly anonymised information is no longer personal data and may be retained for statistical analysis, product understanding, research or reporting.
Pseudonymised information remains personal data and continues to be protected accordingly.
14. How we protect personal data
We use appropriate technical and organisational measures designed to protect personal information against:
- accidental loss;
- unauthorised access;
- unlawful processing;
- alteration;
- disclosure; and
- misuse.
Depending on the system and level of risk, safeguards may include:
- encryption in transit;
- encryption at rest where appropriate;
- role-based access;
- least-privilege access controls;
- multi-factor authentication for privileged access;
- secure hosting;
- logging and monitoring;
- vulnerability management;
- backups;
- supplier due diligence;
- confidentiality obligations; and
- incident-response procedures.
No internet or information system can be guaranteed to be completely secure.
If we become aware of a personal data breach, we assess and respond to it in accordance with applicable law and our incident-response procedures.
15. Your data protection rights
Depending on the circumstances and applicable law, you may have the right to:
- access personal data we hold about you;
- ask us to correct inaccurate or incomplete personal data;
- ask us to delete personal data in certain circumstances;
- ask us to restrict processing in certain circumstances;
- receive certain personal data in a portable format where the right applies;
- object to certain processing based on legitimate interests;
- object to direct marketing at any time;
- withdraw consent at any time where we rely on consent; and
- exercise applicable rights relating to significant automated decision-making.
Your right to object
You can object to direct marketing at any time.
Where we rely on legitimate interests for another purpose, you may also have the right to object because of your particular circumstances.
We will stop that processing unless we have compelling legitimate grounds to continue or the processing is required to establish, exercise or defend legal claims.
To exercise your rights, contact:
support@edgeandease.com
We may need to verify your identity or authority before acting on a request.
We normally respond to valid rights requests without undue delay and within one month, subject to any lawful extension, clarification or exemption.
We do not normally charge a fee.
16. Data protection complaints
If you think we have handled your personal data incorrectly, you can make a data protection complaint to us.
Email: support@edgeandease.com
Or write to:
Superdivergent Ltd
167–169 Great Portland Street
5th Floor
London
W1W 5PF
United Kingdom
Please provide enough information for us to understand and investigate your concern.
We will:
- provide a clear way for you to raise your complaint;
- acknowledge your complaint within 30 days;
- take appropriate steps to investigate it without undue delay;
- keep you appropriately informed about the progress of the complaint; and
- communicate the outcome without unjustifiable or excessive delay.
You also have the right to complain to the Information Commissioner’s Office (ICO), the UK supervisory authority for data protection.
We would appreciate the opportunity to address your concern first, but this does not affect your right to contact the ICO.
17. What happens if you do not provide information
Some information is necessary for us to enter into or perform a contract with you.
For example, we need appropriate contact, delivery and payment-related information to process and deliver an order.
If you do not provide information that is required, we may be unable to complete the transaction or provide the relevant service.
Optional wellbeing, questionnaire, journal and wearable information is not required to buy edge+ease products.
If you choose not to provide it, some optional personalised or connected digital features may not work or may provide less tailored outputs.
18. Third-party links and services
Our Services may contain links to:
- third-party websites;
- social platforms;
- wearable platforms;
- connected services; and
- other external services.
Those organisations may independently collect and use personal information under their own privacy policies.
We are not responsible for their independent processing.
We recommend reviewing their privacy information before providing information or connecting an account.
19. Changes to this Privacy Policy
We review this Privacy Policy as:
- our Services change;
- our technology changes;
- our suppliers change;
- our data practices change; and
- legal or regulatory requirements change.
The latest version will show the date it was last updated.
If we make a material change that affects how we use your personal data, we will provide appropriate notice where required.
This may be through:
- the website;
- the edge+ease app;
- your account;
- email; or
- another appropriate method.
Where a new use requires consent, we will obtain that consent separately rather than treating continued use of the Services as consent.
20. Contact us
For privacy questions, data-rights requests or data-protection complaints, contact:
Superdivergent Ltd
trading as edge+ease
167–169 Great Portland Street
5th Floor
London
W1W 5PF
United Kingdom
Company number: 16509373
Email: support@theedgeandease.com