Privacy

Personal analytics without exposing your life.

This notice explains what daygauge reads, what leaves your iPhone and the choices you have.

Who we are

The controller for daygauge.

daygauge is operated by Studea Limited, company number 17228961, registered in England and Wales. Studea Limited is the controller for the personal data described in this notice. Contact hellodaygauge.com or use daygauge support for privacy questions or rights requests.

App data

What the iPhone app uses.

The app asks for each optional permission when you use the related feature. Personal health, place, Calendar, photo and note records are processed on your iPhone in this release.

Health and fitness Read-only Apple Health summaries Sleep, heart, recovery, activity, mobility, body composition and route-free workout summaries are used for scores and explanations. This can include environmental audio exposure and whether a menstrual-flow entry exists. daygauge does not infer fertility or cycle phase. Coarse source categories help check whether daily signals are comparable; raw source identifiers are not kept for that check.
Places and journeys Precise points, visit times and confirmed labels The app uses optional location and motion activity to build a private timeline and suggest transport modes for confirmation. Stored place history stays on the iPhone and continuous GPS routes are not retained. When you request a route, place search or weather, the relevant endpoint or coordinate is sent to Apple Maps or WeatherKit to return that result.
Calendar and photos Selected-day context, after permission Calendar event titles and times can be shown locally for the selected day. Attendees and descriptions are not used. Photo suggestions use creation date and the image supplied by Apple Photos, which may download it from iCloud. A compressed copy is saved to the local day record only after you confirm it. daygauge does not upload Calendar content or photos.
Information you add Goals, labels, context and notes Used to provide the features you choose. These records stay on the iPhone in this release.
Purchases Product, entitlement and restore state Used to sell, activate and restore Pro through the App Store. daygauge does not receive payment-card details.
Product interaction Limited activation, billing and reliability events A random per-install identifier separates app returns without a daygauge account, name or email. Events do not contain raw health readings, exact places, Calendar content, photos or note text.
Website and waitlist

What the public site uses.

If you join the waitlist, we store your email address, signup source, selected interest, page and signup time in Cloudflare KV. Resend sends the confirmation and launch email. If you choose Apple or Google sign-in, that provider supplies the email address you approve. The site keeps a short-lived IP-based rate-limit record for about ten minutes to prevent abuse. An optional private notification endpoint can receive the same waitlist record when enabled.

We keep waitlist details while the waitlist and requested launch communications are active, or until you ask us to remove them. You can withdraw from the waitlist by replying to an email or contacting support.

Legal bases

Why we process personal data.

App features Contract and consent We process data needed to provide the features you request. Optional Health, Location, Motion, Calendar and Photos access depends on your permission. For special-category health data, we rely on your explicit consent under Article 9(2)(a) UK GDPR.
Operations Legitimate interests Minimised activation, billing, reliability, security and support records help us operate and improve daygauge. We exclude private content and consider the limited processing proportionate to those interests.
Waitlist messages Consent We send the confirmation and launch updates you requested. You may withdraw at any time.
Payments and records Contract and legal obligations Purchase and entitlement data is used to provide Pro, handle restores, meet accounting duties and resolve disputes.
Service providers

Who receives limited data.

Apple provides HealthKit, Photos, Calendar, Maps, WeatherKit and App Store services. RevenueCat receives a pseudonymous install identifier and StoreKit purchase history for subscription analytics and webhook history. Cloudflare hosts the website and API, stores the waitlist and provides aggregate web measurement. Neon stores pseudonymous activation, billing and reliability events. Resend delivers waitlist email. Plausible and Ahrefs provide aggregate website measurement. The API can forward pseudonymous product events to PostHog when that service is enabled.

Providers receive only the data needed for their service. Some may process data outside the UK. Their published transfer terms use adequacy arrangements or contractual safeguards where required. Ask us if you want more information about a provider or transfer.

Website analytics

Aggregate measurement with an objection control.

The public site uses Cloudflare Web Analytics, Plausible and Ahrefs Web Analytics to count visits and understand page and waitlist performance. These tools are configured without advertising profiles or analytics cookies. They receive ordinary web-request information, such as page URL, browser details, IP address and timing, then minimise or aggregate it under their own service design. We do not send form text, email addresses, health data or precise app location to these tools.

We rely on legitimate interests for this limited measurement and, where it applies, the UK statistical-purpose exception for storage or access on a device. We honour Global Privacy Control and Do Not Track signals. You can also set a one-year essential preference cookie that prevents these optional analytics scripts loading in this browser.

Retention and control

How long data is kept and what you can do.

Local app records remain until you delete them in daygauge or remove the app. App-data exports and backups exclude Health readings, health source categories and workouts, including exports saved to iCloud Drive. App Store purchase records remain under Apple's rules.

Pseudonymous product events are kept while needed to measure activation, billing and reliability, then deleted or aggregated when no longer needed. Support and transaction records are kept while needed to answer the request, meet legal duties or resolve a dispute.

You can revoke Apple Health, Location, Motion, Calendar or Photos permission in iOS Settings. You can export or delete local data in daygauge Settings. Revoking a permission stops new access from that source. Resetting local data replaces the app's install identifier but does not itself erase earlier pseudonymous service events; contact us if you want us to locate and delete data we can identify.

Your rights

UK data protection rights.

Depending on the circumstances, you can ask for access, correction, deletion, restriction or portability of your personal data. You can object to processing based on legitimate interests and withdraw consent at any time. Withdrawal does not make earlier processing unlawful. Contact us using the details above. You may also complain to the Information Commissioner's Office.

Scores, transport suggestions and pattern notes help you interpret your own data. They do not make decisions that have legal or similarly significant effects. Suggested journey modes remain for you to confirm or edit.