This privacy policy explains how the Reflux Body Log iOS app ("the app", "we", "us") handles your data. We built the app with a simple principle: your health data stays on your device.
TL;DR
- No account, no sign-up. The app works fully offline. We never see your health data.
- Apple Health data stays on your device. Sleep and heart rate readings we use from Apple Health never leave your iPhone.
- No tracking. We do not track you across apps or websites. We do not sell or share your data with anyone.
- Anonymous analytics only. We collect anonymous, aggregated usage events (for example, "a flare was logged") so we can improve the app. There is no way to identify you from these events.
- You can delete everything by uninstalling. All your data lives on your device. Uninstall the app and it's gone.
What data the app uses
Data that stays on your device (never transmitted)
- Flare logs: severity, body location, time, and notes. Stored on your device.
- Apple Health data: with your permission, the app reads sleep and heart rate readings from Apple Health to look for patterns alongside your flares. This data is used on your device to build the doctor report and never leaves your iPhone.
- App preferences and settings: your in-app preferences, and the name and date of birth you optionally enter for the doctor report. Stored on your device.
Data the app transmits anonymously
The app sends anonymous usage events to an analytics service (TelemetryDeck) so we can understand how the app is used and prioritize improvements. These events cover things like app launches, feature usage, and subscription flow milestones. Event data is generalized, never personal.
The app never asks for your email, phone number, or any contact information. We never transmit:
- Your name or date of birth
- Your flare notes or any free-text content
- The body location of any flare
- Your Apple Health data
- Any data that could identify you
The analytics service generates an anonymous identifier so we can count unique installs. It cannot be linked back to your Apple ID or any personal information.
When you export your data
The app lets you export your logs as a PDF doctor report or as a CSV file. Exports are generated on your device and handed to iOS's share screen, where you choose what to do with them — save to Files, email to your doctor, AirDrop to another device, and so on.
We never receive a copy of your exports. Once you share an export with someone else, what happens to that file is between you and the recipient (your doctor, your email provider, etc.) — we have no visibility or control over it.
The PDF report can include the name and date of birth you optionally enter in Settings, so the document is identifiable when handed to a clinician. The CSV contains your flare log entries. Exports may include patterns and summaries the app derived from your Apple Health data to help your clinician interpret the report.
Data we collect through Apple's services
When you purchase a subscription, Apple processes the transaction through the App Store. We receive only an anonymous subscription status from Apple ("active" or "not active") — never your Apple ID, payment details, or personal information. See Apple's privacy policy for how Apple handles purchase data.
Tracking
We do not track you across apps or websites owned by other companies. The app has no advertising identifiers, no third-party trackers, and no social media integrations.
Children's privacy
The app is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has used the app, please contact us at the email below and we will investigate.
Data retention and deletion
All your health data lives on your device. To delete everything:
- Uninstall the app — iOS automatically removes everything stored locally, including flare logs, preferences, and any Apple Health data the app had cached.
- To revoke the app's permission to read from Apple Health, open Settings → Health → Data Access & Devices → Reflux Body Log → Turn Off All.
The anonymous usage events we already received cannot be tied to you individually, so there is nothing for us to "delete" on our side at an individual level. We retain aggregate anonymous analytics indefinitely for product analysis.
Your rights
Because we don't collect personal data about you, most regulatory data-access rights (e.g. GDPR Article 15, CCPA right-to-know) don't apply in a meaningful way — there is no profile to access, no record to delete, no data to port. Your data lives on your device, under your control.
If you have a question about your rights or how we handle data, email us at the address below and we will respond within 30 days.
Changes to this policy
If we change this policy, we will update the "Last updated" date at the top and, for material changes, post a notice in the app or on the website. Continued use of the app after changes constitutes acceptance.
Contact
For any privacy question, data request, or general support inquiry: support@refluxbodylog.app. We respond within 5 business days.