Oura IPO Readiness: Wearable Hardware Due Diligence

Oura IPO Readiness: Wearable Hardware Due Diligence

Image: Plausity

Key Takeaways

  • Oura’s targeted $16 billion IPO highlights the valuation premium for wearables successfully transitioning to a recurring subscription model.
  • Subscription hardware diligence requires verifying the revenue mix, confirming that membership revenue grows faster than device sales and carries a software-like gross margin.
  • Direct-to-consumer wearables often bypass HIPAA but face strict regulatory scrutiny under the FTC Health Breach Notification Rule.
  • Investors must test cohort retention, secondary buyback mechanics, and FDA cybersecurity compliance to validate true IPO readiness.

Direct answer: Evaluating wearable IPO readiness

Evaluating IPO readiness in wearable health technology requires institutional investors to look past headline device shipments and rigorously audit three core pillars: the hardware-to-software revenue transition, underlying paid member cohort retention, and regulatory compliance across consumer health data. While initial consumer hardware sales generate upfront top-line expansion, public equity markets consistently apply lower multiples to cyclical device manufacturers than to recurring-revenue software businesses. Sustainable public market maturity therefore rests on high-margin recurring subscription revenue, defensible customer lifetime value (LTV), and documented compliance with standards such as the FTC Health Breach Notification Rule and FDA premarket cyber requirements.

The Core Dimensions of Wearable IPO Readiness

As consumer health hardware matures, investment committees must differentiate between transactional gadget makers and integrated digital health platforms. The diligence process centers on establishing whether the business model can decouple recurring subscription growth from continuous hardware upgrade cycles.

  • Recurring Revenue Quality: Auditing the trajectory of software subscriptions as a percentage of total annual revenue, targeting high-margin digital health cash flow.
  • Cohort Retention Durability: Measuring 12-month and 24-month paid member renewal curves after initial device activation, inclusive of trial-to-paid conversion mechanics.
  • Health Data Governance: Verifying compliance with non-HIPAA direct-to-consumer privacy rules, cross-border biometric storage protocols, and device telemetry encryption.
  • Quality of Earnings: Stripping out hardware warranty reserves, inventory write-downs, return provisions, and one-off channel stocking to uncover underlying unit profitability.

Why this topic matters now: The Oura IPO hook

The digital health and wearables landscape has entered an institutional inflection point, highlighted by Oura's confidential filing of its draft registration statement on Form S-1 with the SEC. Following a $900 million Series E funding round that established an $11 billion valuation, the smart ring pioneer demonstrated how connected hardware can scale into an enterprise-grade subscription business. Oura has said publicly that it generated $500 million of revenue in 2024 and roughly $1 billion in 2025, and it reported selling 3.6 million rings over the year before its public filing. Its registration statement shows revenue of $1.21 billion for the nine months to June 30, up 74% from $697.6 million a year earlier.

Secondary Liquidity and Valuation Multiples

Late-stage wearable leaders increasingly utilize structured secondary tender offers and corporate credit facilities to provide early shareholder liquidity, clean up historical capitalization tables, and re-anchor employee equity pools ahead of an IPO. For private equity sponsors and growth equity investors, evaluating these transactions reveals critical insights into balance sheet health, working capital lines, and cap-table hygiene.

Crucially, the public markets reward connected health companies that successfully prove recurring software engagement. Pure hardware companies tend to trade on modest trailing revenue multiples because of product refresh risk and retail channel volatility, whereas subscription-first health intelligence platforms can command software-like multiples when high renewal rates and durable engagement are evidenced in the filing.

Business Model AttributeLegacy Consumer HardwareSubscription Health Wearable
Revenue VisibilityLow: Transactional, cyclical device upgradesHigh: Multi-year recurring software subscription
Gross Margin ProfileConstrained by Bill of Materials, assembly, tariffs and freightMaterially higher, driven by software services and data insights
Customer RelationshipAnonymous retail buyer or one-time DTC purchaserAuthenticated account with daily active biometric engagement
Valuation Multiple DriverUnit shipment volume and hardware gross profitAnnual Recurring Revenue (ARR), net retention, and LTV/CAC

Main diligence framework for subscription hardware

To evaluate hardware-as-a-service (HaaS) and subscription health platforms, deal teams require a structured diligence framework that isolates hardware unit economics from software lifetime value. Applying rigorous financial model due diligence allows investment professionals to dissect the hardware-to-subscription revenue mix and verify whether the software layer is genuinely self-sustaining.

Deconstructing the Hardware-to-Software Revenue Mix

In scaling phases, device shipments still dominate the top line while subscription fees make up the smaller, faster-growing remainder: Oura's registration statement shows $974 million of ring sales on 3.1 million rings shipped against $240.5 million of membership revenue for the nine months to June 30, with membership revenue up 121% year over year at an 89% gross margin. Diligence teams must audit the multi-year progression of this ratio. If hardware revenue remains the sole growth driver over a 36-month period, the company functions as a consumer electronics manufacturer rather than a recurring software platform.

Hardware sales should serve strictly as a friction-reduced customer acquisition vehicle. Once the ring, band, or sensor is activated, high-margin subscription cash flow must compound over time to absorb upfront customer acquisition costs (CAC), hardware subsidies, and reverse logistics expenses.

  • Hardware Unit Margin Floor: Verify that the hardware Bill of Materials (BOM), manufacturing assembly, tariff exposure, and distribution freight maintain a positive gross margin on initial sale, avoiding dilutive hardware subsidies.
  • Subscription Contribution Expansion: Model the gross margin of the software tier independently, confirming that software hosting, algorithm compute, and customer support costs leave a software-like margin profile rather than a hardware-like one.
  • Blended CAC Payback Period: Calculate fully burdened CAC payback by combining hardware marketing spend, retail revenue-share fees, and onboarding costs against the initial hardware margin plus first-year subscription cash flow.
  • Lifetime Hardware Upgrade Cycles: Analyze repeat purchase behavior to confirm whether existing software subscribers pay full price for subsequent hardware generations or require promotional discounting that degrades blended margins.

What investors and deal teams should test

When testing late-stage wearable targets, investment teams must request granular cohort data rather than blended aggregate metrics. In its SEC filing, Oura reported an approximately 85% weighted-average 12-month paid membership retention rate, with paid members doubling to 5 million. Diligence teams must establish whether target companies achieve comparable engagement and renewal benchmarks.

Auditing Cohort Retention, Churn, and Winbacks

Deal teams must demand monthly cohort matrices spanning at least 24 to 36 months, segmented by acquisition channel (direct-to-consumer web, corporate wellness, retail partnerships, and health plan integrations). Investors must verify how target companies classify grace periods, involuntary churn from expired payment credentials, and customer winbacks. Uncovering hidden churn masked by promotional free trials or uncancelled bundled memberships is critical during commercial audit work.

Shipment Quality and Secondary Liquidity Mechanics

Shipment growth figures must be reconciled against sell-through data and channel inventory levels. High sell-in volume paired with mounting channel inventory at retail distributors indicates impending markdown provisions and return liabilities. Furthermore, investors should review secondary share repurchases and liquidity programs to confirm that transactions occurred at arms-length fair market value and did not introduce restrictive transfer covenants or preferential liquidation rights ahead of an IPO.

Diligence DimensionCore Metric to AuditVerification Methodology
Paid Member Retention12-month and 24-month cohort retention curvesReconcile raw billing engine transaction logs against reported MRR waterfalls
Engagement DepthDAU/MAU ratio, daily app opens, wear-time hoursInspect telemetry event data to verify sustained daily active sensor usage
Unit Economic HealthLTV/CAC ratio, blended payback period in monthsSeparate hardware marketing from organic brand pull and retail partner margins
Secondary Capital StructureShare class rights, cap-table liquidation preferencesAudit board consent records, 409A valuations, and secondary tender offer terms

Red-flag table: Privacy, regulatory, and cyber risks

Direct-to-consumer health wearables operate in a complex regulatory environment between consumer wellness and regulated medical devices. Maintaining an automated risk register automation framework helps deal teams track non-obvious compliance exposures across multiple regulatory bodies.

Navigating the FTC Health Breach Notification Rule and HIPAA Boundaries

Most consumer wearables are not covered entities under HIPAA because they contract directly with individual consumers rather than healthcare providers or health plans. However, this structure places them directly under the jurisdiction of the Federal Trade Commission. The FTC's Final Rule amending the Health Breach Notification Rule (HBNR) makes clear that health apps and similar technologies not covered by HIPAA are within scope, and defines a breach of security to include both data security breaches and unauthorized disclosures, such as sharing consumers' health data with advertising platforms.

FDA Cyber Device Mandates and Hardware Security

For wearables seeking medical clearance or integrating diagnostic algorithms, the FDA enforces cybersecurity requirements under Section 524B of the FD&C Act, which obliges sponsors of premarket submissions for internet-connected "cyber devices" to file a postmarket vulnerability monitoring and coordinated disclosure plan, processes providing reasonable assurance the device is cybersecure with available updates and patches, and a software bill of materials covering commercial, open-source and off-the-shelf components. Target companies must maintain comprehensive Software Bills of Materials (SBOM), postmarket vulnerability disclosure programs, and validated firmware update mechanisms to prevent hardware jailbreaking and unauthorized data exfiltration.

Risk CategoryRegulatory Trigger / Failure ModeDiligence Audit Procedure
Consumer Health Data PrivacyFTC Health Breach Notification Rule violations via third-party SDK data tracking; for breaches affecting 500 or more people the FTC must be notified no later than 60 calendar days after discoveryAudit mobile app network traffic, data-sharing consents, and SDK privacy configurations
Medical Device Boundary CreepMarketing claims crossing from wellness insights into unapproved diagnostic claimsReview marketing copy, algorithm clinical validation files, and FDA 510(k) correspondence
Device Firmware CybersecuritySection 524B FD&C Act cyber device obligations, applicable to premarket submissions filed on or after 29 March 2023, and unpatched vulnerabilitiesInspect SBOM documentation, static code analyses, and third-party penetration test reports
Hardware Ecosystem ScrapingJailbreaking, Bluetooth sniffing, and reverse engineering of proprietary sensor signalsEvaluate firmware cryptographic authentication, secure boot protocols, and patent moats
Channel Inventory ExposureExcess channel inventory and unaccrued retail return rights across global distributorsCross-reference sell-in invoices against distributor sell-through POS scan reports

Evidence checklist and data room request list

A comprehensive virtual data room (VDR) audit for subscription hardware targets requires cross-functional evidence spanning finance, engineering, regulatory affairs, and supply chain operations. Deal teams can leverage AI diligence workflows to systematically verify completeness and cross-reference underlying source files.

Essential Data Room Workstreams

Deal teams should issue structured request lists categorized by operational domain to ensure all critical dependencies are surfaced prior to investment committee review.

  • Subscription Financials and Billing Logs: Monthly cohort retention tables by acquisition channel, raw Stripe or billing gateway extraction logs, annual recurring revenue (ARR) waterfall bridges, and refund schedules.
  • Hardware Supply Chain and BOM: Master Service Agreements (MSAs) with contract manufacturers, component-level Bill of Materials with dual-sourcing documentation, yield rate reports, and freight shipping rate agreements.
  • Regulatory and Clinical Files: Legal opinions establishing wellness versus medical device classification, clinical validation trial datasets, Institutional Review Board (IRB) approvals, and FDA premarket communications.
  • Data Privacy and Consent Records: FTC HBNR compliance documentation, third-party software development kit (SDK) privacy audits, consumer consent logs, Data Protection Impact Assessments (DPIAs), and cross-border data transfer mechanisms.
  • Intellectual Property and Security: Patent portfolios covering optical sensing and dynamic calibration, Software Bill of Materials (SBOM) for firmware, third-party penetration testing reports, and cryptographic key management protocols.
  • Cap Table and Secondary Transaction History: Shareholder registries, secondary tender offer agreements, buyback records, 409A valuation reports, and option exercise ledgers.

How to use this in your next diligence workflow

Executing rigorous due diligence on high-growth wearable platforms requires processing thousands of unstructured data room files across financial models, firmware architectures, supplier contracts, and regulatory filings. An AI-native diligence platform accelerates, organizes, and structures those complex data room reviews for investment professionals, with human advisers retaining judgment on every finding.

Core capabilities that support the workflow

Investment teams can deploy PLAUSITY to streamline multi-stream investigation across subscription hardware targets while maintaining strict human oversight:

  • Data Room Ingestion: Instantly ingest, index, and extract structured data from hundreds of VDR folders, including complex Excel cohort models, contract manufacturing MSAs, and clinical trial reports.
  • AI-Analysis Engine: Automatically cross-reference management presentation claims against raw billing logs, clinical study outputs, and supplier agreements to uncover discrepancies in retention or unit margins.
  • Risk Radar: Continuously evaluate findings to identify critical regulatory exposures, flagging potential FTC Health Breach Notification vulnerabilities, unapproved diagnostic marketing claims, or single-source component risks.
  • Collaboration Hub: Coordinate multidisciplinary deal teams in real time, aligning commercial, financial, technical, and legal workstreams within a unified workspace.
  • Report Builder: Convert structured findings, audited metrics, and verified data room citations into professional, investor-ready IC memos and deal-ready reporting packs with complete IC memo source evidence traceability.

By automating data room ingestion and risk identification, PLAUSITY supports and accelerates the due diligence workflow, enabling deal teams to focus their expertise on strategic judgment and investment decision-making.

How Plausity accelerates this workflow

Plausity is an AI-native due diligence and deal intelligence platform that helps M&A advisory firms, VC and PE funds, corporate development teams and family office investment teams structure evidence, findings and questions across a data room. It does not replace human advisers, does not guarantee deal outcomes, and does not provide legal, tax, audit, regulatory or investment advice — all AI-generated findings require confirmation and advisor review by qualified professionals.

To explore the underlying capabilities, see the Plausity AI analysis engine and the findings and risk intelligence product page. For team-level workflows, see how VC and PE funds and M&A advisory firms use Plausity across live deals.

Sources

Frequently Asked Questions

PLAUSITY

AI Summary

Ask an AI assistant to summarise Plausity.