Privacy Policy
Draft — under legal review and may change · Last updated 26 September 2026
1. What we collect
• Account: email and display name • What you record: items, events, photos, documents, expenses, measurements, reminders • Health data: only if you turn on Health and give separate consent • Financial figures you enter yourself, like trading notes and portfolio values (account numbers: last 4 digits only) We don't use advertising trackers.
2. How we use it
Only to show you your data, send reminders, and send necessary emails (email confirmation, password reset). We don't sell your data, use it for ads, or use it to train AI.
3. Service providers
• Supabase — database and files (servers in Singapore) • Cloudflare — hosts the app website • Resend — sends system emails • Google — only if you choose Sign in with Google • Google Gemini — reads receipt photos only when you tap "Scan receipt" and agree (a paid service that doesn't train on your data; photos aren't kept; never used for health data)
4. Who can see your data, and protection
Only you and the people you choose to share with — enforced in the database (Row Level Security) and tested so other users can't see it. Photos and documents are private and opened through temporary links that expire within an hour. Data is encrypted in transit (HTTPS) and at rest by our providers. This app is not end-to-end encrypted.
5. Data stored on your device
So you can view things offline, the app keeps a partial copy on your device (never health data) and clears it when you sign out. On a shared device, please sign out each time.
6. Your rights
• Download all your data any time (Settings → Download data) • Edit or delete anything • Delete all health data without deleting your account • Withdraw consent for Health and AI features • Delete your account — 30 days to change your mind, then permanently deleted
7. Contact us
Email: contact@day1keeper.com