Document

Privacy Policy

CycleNote is built so that collecting data isn't necessary. Here's what that means in practice, and what happens to your health records.

In effect from 14 August 2026

  • Entries never leave the device: the app has no server.
  • We collect no analytics and show no ads.
  • No account needed: no email, no password, no phone number.
  • You create and keep the backup copy yourself.

01In short

CycleNote is an iPhone app that keeps a cycle calendar and a diary of how you feel. Every entry is stored in a database inside the app on your device.

The developer neither receives nor stores your entries: the app has no back end, no accounts, no sync, no advertising modules and no analytics. There is exactly one way for data to leave the device: you create a backup file and save it where you choose.

The sections below explain which data is processed, where it is kept, what happens during a purchase, and what rights you have.

02Who is responsible

CycleNote is developed and published by an independent developer trading on the App Store as bobredobre (“we”).

You can reach us at m@bobredobre.dev. That is also the address for any data protection question.

Because entries are never sent to the developer, in most cases we physically cannot show, change or delete your data: all of that happens inside the app.

03What the app processes

Everything listed here is processed and stored locally on your device:

  • Cycle data: period start and end dates, cycle lengths and the resulting forecast.
  • Diary entries: symptoms, mood, sleep, pain, discharge, weight, basal body temperature, the intimate health and lifestyle sections, and free-text notes. This is health data, a special category of personal data.
  • App settings: language, section visibility, notification preferences, and your doctor's contact details if you entered them.
  • Passcode and biometrics: the PIN is kept in the system keychain as a hash; the app never sees your fingerprint or face, because iOS checks those itself.
  • Service flags: the date of first launch (to count the trial) and whether the purchase was made.

The app does not ask for access to contacts, photos, location, microphone, camera, the iOS Calendar or the Health app.

04Where and how data is stored

Entries live in a database file inside the app's sandbox. iOS restricts access to that file: other apps cannot reach it, and the contents of the device are protected by system encryption while the screen is locked with a passcode.

The app applies no encryption of its own to the database — protection comes from the operating system, and optionally from the PIN and Face ID (or Touch ID) you can switch on, without which the app will not open.

iPhone backups made by iOS (to iCloud or a computer) may include app files under Apple's own rules. That happens on Apple's side; you control it in your iPhone's backup settings.

05What we don't do

  • We don't send your entries to servers: there are none.
  • We don't use ad networks, trackers or advertising identifiers.
  • We don't embed analytics and don't count how often you open the app.
  • We don't collect crash reports containing your data.
  • We don't sell or share data with third parties: there is nothing to share.

The only outside parties the app interacts with are Apple, for the purchase, and iOS system services, for local notifications.

06In-app purchase

The full version is a one-time purchase through the App Store (StoreKit). Payment, receipts and refunds are handled by Apple; we never receive card numbers or payment details and cannot see your Apple ID.

The app stores only two flags on the device: the date of first launch (to count the 45-day trial) and a note that the purchase was completed. Both sit in the system keychain and are unrelated to your diary.

Payment processing is covered by Apple's privacy policy: apple.com/legal/privacy.

07Notifications

All reminders are local: the app schedules them on your device and iOS displays them. No push servers are involved and no notification text leaves the phone.

If other people see your lock screen, switch on hidden text: the notification then shows only the app name and a neutral phrase, with no mention of your cycle.

08Backups and export

“Save a copy” creates a file with the .cyclenote extension and hands it to the system share sheet. Where it goes — Files, iCloud Drive, a messenger or email — is your decision.

The backup file is not password-protected and is not encrypted by the app: it contains all of your entries. Treat it as carefully as the data itself, and don't send it through services you don't trust.

Once the file is saved to external storage, it follows that storage provider's rules rather than this policy.

09Your rights

Data protection law — including the GDPR in the EU — gives you the right to access, correct, erase, restrict the processing of, and port your data.

In CycleNote these rights are exercised directly in the app, without contacting us:

  • Access and correction — every entry is visible in the calendar and diary and can be edited at any time.
  • Portability — “Save a copy” produces a file with all of your data.
  • Erasure — “Erase all data” wipes the database from the device; deleting the app removes it along with the app.
  • Withdrawing consent — simply stop making entries, or erase the data.

If you believe your rights have been infringed, write to m@bobredobre.dev. You also have the right to lodge a complaint with the data protection authority in your country.

10Children

The app is not intended for children under 13, and it collects no data about them — as it collects none about anyone else.

11Changes to this policy

If the app changes in a way that affects data processing, we will update this page and the effective date at the top of the document. Previous versions are available on request.

Any change that weakens data protection will be called out in the app's release notes.

12Contact

Privacy questions: m@bobredobre.dev. We answer in English and Russian, usually within two working days.