Privacy

Personal analytics without exposing your life.

This notice explains what daygauge reads, what leaves your iPhone and the choices you have.

Who we are

The controller for daygauge.

daygauge is operated by Studea Limited, company number 17228961, registered in England and Wales. Studea Limited is the controller for the personal data described in this notice. Contact hellodaygauge.com or use daygauge support for privacy questions or rights requests.

App data

What the iPhone app uses.

The app asks for each optional permission when you use the related feature. Personal health, place, Calendar, photo and note records are processed on your iPhone.

Health and fitness Apple Health readings and optional weight saving Sleep, heart, recovery, activity, mobility, body composition and route-free workout summaries are used for scores and explanations. This can include environmental sound exposure. If you choose to save a manually logged weight to Apple Health, daygauge requests separate permission and writes that weight entry. Other Health access is read-only. If you turn on cycle tracking, daygauge also reads Apple Health menstrual flow and uses period days you add or import from Clue or Flo. Optional fertile-window and ovulation dates are calendar estimates, off by default, and are not contraception or medical advice. Coarse source categories help check whether daily signals are comparable; raw source identifiers are not kept for that check.
Places and journeys Precise points, visit times and confirmed labels The app uses optional location and motion activity to build a private timeline and suggest transport modes for confirmation. Stored place history stays on the iPhone and continuous GPS routes are not retained. When you request a route, place search or weather, the relevant endpoint or coordinate is sent to Apple Maps or WeatherKit to return that result.
Calendar and photos Selected-day context, after permission Calendar event titles and times can be shown locally for the selected day. Attendees and descriptions are not used. Photo suggestions use creation date and the image supplied by Apple Photos, which may download it from iCloud. A compressed copy is saved to the local day record only after you confirm it. daygauge does not upload Calendar content or photos.
Information you add Goals, labels, context, notes and imported files Used to provide the features you choose. Files you import, such as Mi Fitness, Google Maps Timeline, Strava, Clue or Flo exports, are read on the iPhone. These records stay on the iPhone.
Purchases Product, entitlement and restore state Used to sell, activate and restore Pro through the App Store. daygauge does not receive payment-card details.
Product interaction Limited activation, billing and reliability events A random per-install identifier separates app returns without a daygauge account, name or email. Events do not contain raw health readings, exact places, Calendar content, photos or note text.
Website and product updates

What the public site uses.

If you sign up for product updates, we store your email address, signup source, selected interest, page and signup time in Cloudflare KV. Resend sends a confirmation and any product updates you request. If you use Continue with Apple or Google to share your email, that provider supplies the address you approve. The site keeps a short-lived IP-based rate-limit record for about ten minutes to prevent abuse. An optional private notification endpoint can receive the same signup record when enabled.

We keep product-update signup details while you remain subscribed, or until you ask us to remove them. You can unsubscribe by replying to an email or contacting support.

Legal bases

Why we process personal data.

App features Contract and consent We process data needed to provide the features you request. Optional Health, Location, Motion, Calendar and Photos access depends on your permission. For special-category health data, we rely on your explicit consent under Article 9(2)(a) UK GDPR.
Operations Legitimate interests Minimised activation, billing, reliability, security and support records help us operate and improve daygauge. We exclude private content and consider the limited processing proportionate to those interests.
Product updates Consent We send the confirmation and product updates you requested. You may unsubscribe at any time.
Payments and records Contract and legal obligations Purchase and entitlement data is used to provide Pro, handle restores, meet accounting duties and resolve disputes.
Service providers

Who receives limited data.

Apple provides HealthKit, Photos, Calendar, Maps, WeatherKit and App Store services. RevenueCat receives a pseudonymous install identifier and StoreKit purchase history for subscription analytics and webhook history. Cloudflare hosts the website and API, stores product-update signups and provides aggregate web measurement. Neon stores pseudonymous activation, billing and reliability events. Resend delivers requested product-update email. Plausible and Ahrefs provide aggregate website measurement. Google Fonts supplies the website fonts; loading a page can send your IP address and browser details to Google. The API can forward pseudonymous product events to PostHog when that service is enabled.

Providers receive only the data needed for their service. Some may process data outside the UK. Their published transfer terms use adequacy arrangements or contractual safeguards where required. Ask us if you want more information about a provider or transfer.

Website analytics

Aggregate measurement with an objection control.

The public site uses Cloudflare Web Analytics, Plausible and Ahrefs Web Analytics to count visits and understand page and product-update signup performance. These tools are configured without advertising profiles or analytics cookies. They receive ordinary web-request information, such as page URL, browser details, IP address and timing, then minimise or aggregate it under their own service design. We do not send form text, email addresses, health data or precise app location to these tools.

We rely on legitimate interests for this limited measurement and, where it applies, the UK statistical-purpose exception for storage or access on a device. We honour Global Privacy Control and Do Not Track signals. You can also set a one-year essential preference cookie that prevents these optional analytics scripts loading in this browser.

Retention and control

How long data is kept and what you can do.

Local app records remain until you delete them in daygauge or remove the app. App-data exports and backups exclude Health readings, health source categories and workouts, including exports saved to iCloud Drive. App Store purchase records remain under Apple's rules.

Pseudonymous product events are kept while needed to measure activation, billing and reliability, then deleted or aggregated when no longer needed. Support and transaction records are kept while needed to answer the request, meet legal duties or resolve a dispute.

You can revoke Apple Health, Location, Motion, Calendar or Photos permission in iOS Settings. You can export or delete local data in daygauge Settings. Revoking a permission stops new access from that source. Resetting local data replaces the app's install identifier but does not itself erase earlier pseudonymous service events; contact us if you want us to locate and delete data we can identify.

Your rights

UK data protection rights.

Depending on the circumstances, you can ask for access, correction, deletion, restriction or portability of your personal data. You can object to processing based on legitimate interests and withdraw consent at any time. Withdrawal does not make earlier processing unlawful. Contact us using the details above. You may also complain to the Information Commissioner's Office.

Scores, transport suggestions and pattern notes help you interpret your own data. They do not make decisions that have legal or similarly significant effects. Suggested journey modes remain for you to confirm or edit.