Privacy Policy
Last updated: July 20, 2025
Overview
At Habitual, we take your privacy seriously. This Privacy Policy explains how we handle your information when you use our habit tracking app.
The short version: We don't collect your personal data. Your habits and progress stay on your devices.
Information We Don't Collect
Habitual is designed with privacy at its core. We do not:
- Collect personal information
- Track your usage with analytics
- Share data with third parties
- Store your habits on our servers
- Access your habit data
- Use advertising trackers or cookies
- Sell or monetize your data in any way
Data Storage
Local Storage
All your habit data is stored locally on your device using Core Data, Apple's framework for data persistence. This includes:
- Habit names and descriptions
- Completion records and check-in times
- Streaks and statistics
- Journal entries and notes
- Notification preferences and reminder settings
- App customization preferences (themes, display options)
iCloud Sync
If you choose to enable iCloud sync:
- Your data syncs across your Apple devices using CloudKit
- Data is end-to-end encrypted by Apple using industry-standard encryption
- Only you can access your synced data with your Apple ID credentials
- We cannot see, access, or decrypt your iCloud data
- You can disable iCloud sync at any time in the app settings
- Disabling sync does not delete local data on your device
Security Features
Biometric Protection
You can enable Face ID, Touch ID, or device passcode protection to secure access to the app. This authentication:
- Happens entirely on your device using Apple's Secure Enclave
- Is never transmitted to our servers
- Can be enabled or disabled at any time in app settings
Data Protection
Your data benefits from iOS's built-in security features:
- Hardware-level encryption on your device
- Secure iCloud synchronization with end-to-end encryption
- No network requests to third-party tracking or analytics servers
- Protection against unauthorized app access through iOS sandboxing
Third-Party Services
Habitual operates entirely within Apple's ecosystem and does not integrate with third-party services. We do not use:
- Analytics services (Google Analytics, Facebook Analytics, etc.)
- Advertising networks or tracking pixels
- Social media integrations
- External databases or cloud storage services
- Crash reporting services that collect personal data
Notifications and Reminders
When you enable notifications in Habitual:
- All reminder notifications are scheduled locally on your device
- No notification data is sent to external servers
- Notification content remains on your device
- You can modify or disable notifications at any time in iOS Settings or within the app
- We respect your Do Not Disturb and Focus mode settings
Data Export and Portability
You have complete control over your habit data:
- Export your data as CSV files directly from the app
- All export operations happen locally on your device
- We have no access to exported data
- You can choose what data to export and how to share it
- Exported data can be imported into spreadsheets or other analysis tools
Children's Privacy
Habitual does not knowingly collect information from children under 13. Since the app:
- Stores all data locally on the device
- Does not transmit personal information to servers
- Does not require account creation or registration
There is no collection of personal information from users of any age. Parents can monitor their child's use of the app directly on their device.
International Data Transfers
Since Habitual does not collect or transmit personal data to our servers, there are no international data transfers of your personal information. If you use iCloud sync, your data is handled according to Apple's iCloud terms and privacy policy, with data centers located in accordance with your region's Apple iCloud data residency policies.
Changes to This Policy
We may update this Privacy Policy periodically to reflect changes in our practices or for legal, regulatory, or operational reasons. When we make changes:
- We will update the "Last updated" date at the top of this policy
- Material changes will be communicated through the app or our website
- You will be notified of significant changes that affect your privacy rights
- Continued use of the app after changes indicates acceptance of the updated policy
Your Rights and Control
Since all data is stored locally on your device, you have complete control:
- Access: View all your data within the app at any time
- Modify: Edit or update any habit data directly in the app
- Delete: Remove individual habits or all data by uninstalling the app
- Export: Download your data in CSV format whenever you want
- Sync Control: Enable or disable iCloud sync at any time
- Data Portability: Take your data with you in standard formats
These rights are built into the app's design and do not require special requests or procedures.
California Privacy Rights
If you are a California resident, you have additional privacy rights under the California Consumer Privacy Act (CCPA). However, since Habitual does not collect, sell, or share personal information, most CCPA provisions do not apply. You maintain full control over your data as described in this policy.
European Privacy Rights
If you are located in the European Economic Area (EEA), you have rights under the General Data Protection Regulation (GDPR). Since Habitual operates on a privacy-by-design principle with no data collection, these rights are inherently protected through the app's architecture.
Contact Us
If you have any questions about this Privacy Policy or our privacy practices, please contact us:
- Via our Contact page
- By email at privacy@get-habitual.app
We will respond to privacy inquiries within 30 days and work to address any concerns you may have.
Technical Information
For transparency, here are the technical details of our privacy implementation:
- Local Storage: Core Data with SQLite encryption
- iCloud Sync: CloudKit with Apple's encryption standards
- Authentication: iOS Biometric APIs (LocalAuthentication framework)
- No Network Calls: Except for iCloud sync through Apple's servers