Privacy Policy
Custom Arts Ltd built the Feeltracker app as a Freemium app. This SERVICE is provided by Custom Arts Ltd at no cost and is intended for use as is.
This page is used to inform visitors regarding our policies with the collection, use, and disclosure of information if anyone decided to use our Service.
If you choose to use our Service, then you agree to the collection and use of information in relation to this policy. However, the Feeltracker app does not collect or store any personally identifiable information (PII) on our servers. All data generated by the app is stored locally on your device or synced with your personal iCloud account. We do not have access to this data.
There is one exception, and it matters: if you use an AI feature, the data needed for that feature leaves your device and is processed by OpenAI. Cloud AI is on by default in a new install. The sections “OpenAI API” and “Our Server and How AI Requests Reach OpenAI” below set out exactly what is sent, when, and how long it is kept.
Information Collection and Use
For a better experience while using our Service, the Feeltracker app may utilize iCloud for data syncing across your devices. This data is stored securely in your iCloud account, and we do not collect or access any personal data from you. You can control iCloud data through your device's iCloud settings.
The app does use a small number of third-party services that may collect aggregated, non-identifiable data (such as usage analytics or crash reports) to improve the app experience. We do not use any advertising or ad-network services.
Link to the privacy policy of third-party service providers used by the app:
iCloud Syncing
Feeltracker stores and syncs user data across devices using Apple’s iCloud service. This allows you to access your health diary across your Apple devices seamlessly. Data stored in iCloud is protected by Apple’s privacy and security measures. We do not have access to this data. For more information on Apple’s iCloud privacy, please refer to Apple’s Privacy Policy.
Log Data
When the app hits an error or crashes, diagnostic logs are sent to Firebase Crashlytics (Google) so we can find and fix the fault. These logs are written by the app itself and describe what the app was doing: which screen was open, how many records an operation touched, how long a piece of text was, which step failed.
They do not contain your health readings, your journal text, or anything else you typed. Where a log line needs to refer to your content, it records the length of that content and nothing more. Log lines that would otherwise carry personal detail are redacted before they leave the device.
Crash reports also include technical information Crashlytics collects automatically, such as the device model, operating system version, and where in our code the crash happened. You can switch crash reporting and analytics off in the app’s settings, which stops these logs being sent at all.
Cookies
The Feeltracker app itself does not use cookies. However, the app may use third-party services or libraries that use “cookies” to collect non-personally identifiable data. You have the option to either accept or refuse these cookies and know when a cookie is being sent to your device. If you choose to refuse the cookies, you may not be able to use some portions of the Service.
Service Providers
We may employ third-party companies and individuals for the following reasons:
- To facilitate our Service;
- To provide the Service on our behalf;
- To perform Service-related services; or
- To assist us in analyzing how our Service is used.
The processors we use are:
- Google (Firebase Analytics, Firebase Crashlytics) — usage analytics and crash diagnostics.
- RevenueCat — subscription and purchase management.
- OpenAI — processes AI requests when you use an AI feature (see “OpenAI API” below).
- Render — hosts the server that AI requests travel through on their way to OpenAI (see “Our Server and How AI Requests Reach OpenAI” below).
- Apple — iCloud sync, App Store purchases, and Apple Intelligence where you use it.
These third-party services are bound by their agreements with us not to use the information for any other purpose.
Security
We value your trust in providing us your information through the use of iCloud. We strive to use commercially acceptable means of protecting it. However, please remember that no method of transmission over the internet or method of electronic storage is 100% secure and reliable, and we cannot guarantee its absolute security.
Links to Other Sites
This Service may contain links to other sites. If you click on a third-party link, you will be directed to that site. Note that these external sites are not operated by us. Therefore, we strongly advise you to review the Privacy Policy of these websites. We have no control over and assume no responsibility for the content, privacy policies, or practices of any third-party sites or services.
Children’s Privacy
The Feeltracker app is not intended for children under the age of 12. We do not knowingly collect personally identifiable information from users under 12 years of age. If we become aware that a child under 12 has provided us with personal information, we will take steps to delete it immediately.
If you are a parent or guardian and believe that your child under 12 has provided us with personal information, please contact us so that we can take appropriate action.
Profile Information (Optional)
You can optionally save a small profile in the app with your name, date of birth, and gender. This is completely optional — all the core tracking features work without it, and you can edit or delete your profile any time from inside the app.
Profile details are stored the same way as your other data: on your device and, if you use iCloud, in your private iCloud account. We never upload them to our servers, and we never share them with anyone for advertising or marketing.
When an AI feature runs, the app includes parts of your profile in the request so the AI can tailor its reply. Sending your name, age (worked out from your date of birth) and gender is switched on by default if you have saved those fields; you can turn each of them off individually under AI settings in the app. Two further context options — local weather and your sleep schedule — are switched off by default and are only sent if you turn them on. A free-text “additional context” note, if you write one, is sent with every AI request for as long as it is filled in; clear the field to stop sending it.
Apple Health (Optional)
The Feeltracker apps can connect with Apple Health (HealthKit), but only if you switch it on. The apps won’t read from or write to Apple Health until you give permission in iOS, and you can take that permission back at any time in iOS Settings.
When it’s on, the apps can read relevant history from Apple Health (such as blood pressure, heart rate, weight, sleep, and State of Mind) and save new readings you record back to HealthKit. Everything happens on your device. Apple Health data never goes through our servers, is never sent to any third party, and is never seen by Custom Arts Ltd.
For details on how Apple handles Health data, see Apple’s Privacy Policy.
Apple Intelligence (Optional)
On recent devices with a compatible version of iOS, iPadOS, or macOS, the Feeltracker apps may offer optional features powered by Apple Intelligence — Apple’s built-in AI. These only run when you choose Apple Intelligence as your AI mode in the app’s settings.
In this mode the app calls Apple’s on-device Foundation Models framework. The request does not go to our servers and does not go to OpenAI: Custom Arts Ltd never receives, stores, or sees any Apple Intelligence request or response. How Apple itself handles the request is governed by Apple’s own policies.
For details, see Apple’s Privacy Policy.
OpenAI API (Optional)
Most AI features in our apps are powered by the OpenAI API. Cloud AI is the default mode in a new install; you can switch the app to on-device Apple Intelligence, or turn AI off entirely, in the app’s AI settings.
What is sent. Depending on the feature, a request can include:
- Anything you type into an AI feature — your question, or a passage you asked it to work on.
- The health records in scope for that feature, as rows of readings with their dates and times. This includes the free-text notes and journal entries attached to those records.
- Profile and personalization context, as described under “Profile Information” above.
- For Camera Scan, a photograph you take of a monitor or scale display.
- For read-aloud (text-to-speech), the text being spoken, which is normally an AI answer about your data.
When it is sent. Most AI features run only when you open them and ask for a result. Some do not: while cloud AI is on, the app also generates short personalized messages by itself — a daily insight, a birthday or milestone greeting, a welcome-back note — and to do that it sends a batch of your most recent records (up to 30) and your profile context to OpenAI when you open the app or its day view, without you asking for an AI result. Turning AI off, or switching to Apple Intelligence, stops this.
A per-install identifier. Each install generates a random identifier and sends it to OpenAI with every request, as a cache key that keeps repeat requests cheap. It contains nothing about you and is not linked to your name, account, or device ID, but it is stable: it lets OpenAI associate all requests from one install with each other, and it persists until the app is deleted and reinstalled.
What OpenAI does with it. OpenAI’s current API documentation states that data sent to the API is not used to train or improve OpenAI models unless you explicitly opt in, that abuse-monitoring logs are retained for up to 30 days, and that responses created through the Responses API are stored for 30 days by default. Our apps rely on that 30-day storage so a chat conversation can continue across turns without re-uploading it, so your AI requests and their replies are held by OpenAI for up to 30 days. These are OpenAI’s own defaults, not commitments we control, and OpenAI can change them at any time. The current version is set out in OpenAI’s API data controls documentation.
You can read the full policy here: OpenAI Privacy Policy.
By using an AI feature you agree that the relevant data (including any profile details you’ve chosen to save) will be sent to OpenAI and processed under their policies. Please don’t type anything into the AI that you wouldn’t be comfortable sending under those terms.
Our Server and How AI Requests Reach OpenAI
AI requests don’t go from your device straight to OpenAI. They travel through a small server we run, hosted by Render in the United States. This is a security measure: it means our OpenAI key lives on that server instead of inside the app, where someone could pull it out and run up requests in your name. The server checks the request genuinely came from one of our apps, adds our key, and streams OpenAI’s reply straight back to you.
It does not store your requests or the AI’s replies. They exist in memory only for the moment it takes to pass them along, and are never written to disk. Nobody at Custom Arts Ltd reads them.
What the server does keep is a running tally of what our AI costs us. For each request it records the date and time, which app and version it came from, which feature and AI model were used, whether the account was free or paid, how many tokens or characters were processed, and the estimated cost. There is no health data in these records, no message text, and nothing identifying you — no account, no user ID, no IP address — so they cannot be traced back to an individual. We keep them for up to 30 days, then delete them.
The server also writes short operational log lines covering the same ground, plus the size of each request, never its content. If OpenAI returns an error, that error message is logged as OpenAI wrote it.
No Advertising
The Feeltracker apps don’t show ads, don’t plug into any ad networks or advertising SDKs, and don’t share your personal, profile, or health data with advertisers. We don’t use AdMob, ad exchanges, ad-attribution SDKs, or ad-targeting analytics. The apps are funded entirely by optional premium subscriptions and one-time purchases, handled by Apple through the App Store.
Your Rights and Choices
You stay in control of everything you put into the app:
- See and export your data. Any profile info (name, date of birth, gender), readings, and journal entries can be viewed and exported from inside the app as a PDF, CSV, Excel, or JSON file, any time.
- Fix things. Any entry or profile field can be edited right in the app.
- Delete. You can delete any single entry, your whole profile, or all app data from inside the app. Removing the app and its iCloud backup in your iOS Settings clears everything. Because we don’t keep a copy on our servers, there’s nothing extra for us to delete on your behalf.
- Change your mind. Optional features — Apple Health, Apple Intelligence, OpenAI-powered AI features, and analytics/crash reporting — can each be switched off in the app or iOS Settings without affecting the rest of the app.
- Stop processing. If you don’t like how something in this policy works, you can stop using that feature or stop using the app.
These rights apply everywhere. They line up with laws such as the EU/UK GDPR and the California CCPA/CPRA. We don’t sell your personal information, we don’t “share” it in the CCPA/CPRA sense, and we don’t use it for cross-site behavioral advertising.
Legal Basis (EU/UK GDPR)
Where the EU or UK GDPR applies, we rely on your consent for optional features you switch on yourself (Apple Health, Apple Intelligence, OpenAI-powered AI features, profile data used to tailor the AI, and analytics/crash reporting), and on our legitimate interest in keeping the app working, fixing crashes, and preventing abuse. You can withdraw consent at any time by turning the feature off — doing so doesn’t affect anything that happened before.
Custom Arts Ltd is the data controller for personal data processed by the app.
Where Your Data Lives
Your personal and health data lives on your device and in your own iCloud account — you’re in charge of it. The optional third-party services we use (Firebase, RevenueCat, OpenAI) and the server our AI requests travel through (hosted by Render) are run by providers based in the United States and may process data there. Where needed, they rely on the Standard Contractual Clauses and/or the EU-US Data Privacy Framework to move personal data out of the EU/UK. If you’d rather none of your data was transferred, you can turn off the matching optional features.
How Long Data Is Kept
We don’t keep copies of your app data on our servers. Your data stays on your device and in your iCloud for as long as you have the app installed and iCloud backup on. Beyond that:
- OpenAI — abuse-monitoring logs are kept up to 30 days and Responses API responses are stored for 30 days by default. Our apps depend on that storage for multi-turn chat. These are OpenAI’s defaults and are subject to change; see OpenAI’s API data controls documentation.
- Our own server — no request or reply content is stored. Per-request cost records (date, app, feature, model, token counts, cost — no health data and no user identifier) are kept for up to 30 days and then deleted.
- Firebase Crashlytics / Analytics — kept by Google for our project’s default retention period.
- RevenueCat — purchase and receipt data for as long as you have an active subscription and as tax law requires.
Turning a feature off or deleting the app stops further collection. Because the records our own server keeps contain nothing that identifies you, we cannot search for or delete “your” entries in them on request — there is nothing in them to match you against. They age out on their own within 30 days.
This Website
This policy also covers the feeltracker.com website, which is separate from the apps described above.
The website uses Google Analytics 4, loaded through Google Tag Manager, to count visits and see which pages people find useful. It loads only if you accept analytics cookies in the banner. If you decline, no analytics script is loaded and no analytics cookie is set. The website carries no advertising, ad networks or ad-targeting services.
Fonts and icons are served from our own domain rather than a third-party CDN, so simply opening a page does not send your IP address to anyone else. The website does not collect health data — everything you record in the apps stays on your device and in your iCloud, as described above.
Changes to This Privacy Policy
We may update our Privacy Policy from time to time. You are advised to review this page periodically for any changes. Material changes will be highlighted on this page, and continued use of the app after an updated policy takes effect constitutes your acceptance of the updated policy.
This policy is effective as of 2026 April 20th.
Contact Us
If you have any questions or suggestions about our Privacy Policy, do not hesitate to contact us at [email protected].