Privacy Policy
Last Updated: April 24, 2025
Welcome to Bladder Journal ("the App"), developed by JheroCode ("we," "us," or "our"). We are committed to protecting your privacy. This Privacy Policy explains how we handle your information when you use our iOS application.
1. Information We Collect
Bladder Journal is designed with privacy as a priority. The data you enter is primarily stored locally on your device.
a. Data You Provide (Stored Locally by Default):
- Diary Entries: Information you log about urination events (time, volume/duration, urgency, stream, pain), fluid intake (type, amount), leakage events (volume, pad changes), and associated notes. This includes health-related data.
- Nighttime Flag: Information indicating if an entry occurred during your typical sleeping hours.
- Settings & Preferences: App settings like unit preferences (ml/oz), theme settings, reminder configurations, and security settings (e.g., passcode).
b. Optional Cloud Sync (iCloud):
- If you choose to enable iCloud sync in the App's settings, your Diary Entries and related data will be securely stored in your private iCloud account using Apple's CloudKit framework. We do not have access to the data stored in your private iCloud database. Syncing allows you to keep your data consistent across your devices signed into the same iCloud account.
c. Optional Deep Insights Feature:
- If you use the "Deep Insights" feature, anonymized or pseudonymized portions of your Diary Entry data (excluding free-text notes unless explicitly processed for specific insights with safeguards) are sent securely to our backend service (hosted on Firebase Functions) for analysis by third-party AI models (like OpenAI's GPT, Google's Gemini, or Anthropic's Claude, depending on configuration).
- We send necessary data points (e.g., timestamps, volumes, urgency levels, drink types, pain levels, nighttime flags) required to generate the insight.
- We also send contextual metadata like the current time of day, preferred language, and unit system to tailor the insight.
- The generated insight text is returned to your device and displayed within the App. We do not permanently store your raw entry data on our servers after the insight is generated, though temporary processing logs might exist for debugging and service improvement, handled according to Firebase's and the AI provider's policies.
d. Optional Audio Analysis Feature:
- If you use the "Audio Analysis" feature, the App will access your device's microphone *only* while the urination timer is active and you have explicitly started it.
- Audio data is processed **entirely locally on your device** to estimate urine volume.
- **No audio recordings are ever stored on your device or transmitted to any server.** The audio is analyzed in real-time and discarded immediately after processing.
e. Analytics and Crash Reporting (Not Linked to You):
- Diagnostics Data: We may collect anonymized crash reports and diagnostic information (e.g., device type, OS version, crash logs) using services like Firebase Crashlytics or Apple's built-in reporting. This helps us identify and fix bugs and improve app performance. This data is not linked to your personal identity or your specific health entries.
- Usage Data (Optional/Aggregated): We may collect aggregated, anonymized usage data (e.g., feature usage frequency) to understand how the app is used and prioritize improvements. This data does not identify you personally.
f. Purchase Information:
- If you purchase premium features (like Deep Insights or Audio Analysis subscription), Apple handles the transaction through the App Store. We receive confirmation of the purchase (e.g., a transaction receipt or identifier) to unlock the feature for you, but we do not receive or store your payment details (like credit card numbers). We may store purchase status information linked to your device or user ID to manage access.
g. Optional AI Chat Feature:
- If you use the "AI Chat" feature, your chat messages and selected, pseudonymized portions of your Diary Entry data are sent securely to our backend service (hosted on Firebase Functions) to generate a conversational response using third‑party AI models (e.g., OpenAI, Google, Anthropic, depending on configuration).
- We transmit only the data required to answer your question (for example, timestamps, volumes, urgency levels, drink types, and metadata such as language and unit preferences). Free‑text notes are excluded unless explicitly needed for your query.
- Responses are returned to your device. We do not permanently store your raw health data on our servers; short‑lived processing logs may exist for reliability and abuse prevention, subject to the policies of Firebase and the selected AI provider.
2. How We Use Your Information
- To Provide App Functionality: Your Diary Entries and settings are used locally to provide the core features of the app, display your history, calculate statistics, and generate charts.
- To Enable iCloud Sync (Optional): If enabled, data is stored in your iCloud account to sync across your devices.
- To Provide Deep Insights (Optional): Data is sent for analysis to generate personalized insights if you use this feature.
- To Provide AI Chat (Optional): Chat messages and selected entry summaries are processed to generate conversational answers; processing is transient and secured.
- To Provide Audio Analysis (Optional): Microphone audio is processed locally to estimate volume if you use this feature.
- To Improve the App: Anonymized diagnostics and usage data help us fix bugs and enhance features.
- To Manage Purchases: Purchase information is used to unlock paid features.
3. Data Storage and Security
- Local Storage: Your primary data is stored securely on your device using standard iOS data storage mechanisms.
- iCloud Storage (Optional): If enabled, data is stored in your private iCloud account, subject to Apple's security measures. We do not have access to this data.
- Deep Insights Processing: Data sent for Deep Insights is transmitted securely (HTTPS) to Firebase Functions and the respective AI provider. We rely on the security measures of these platforms during processing.
- Audio Analysis: Audio is processed locally and is never stored or transmitted.
- Security Measures: We implement reasonable technical measures to protect data handled by the app, including passcode/Face ID/Touch ID protection if enabled by you in the app settings.
4. Data Sharing and Third Parties
We do not sell your personal health data.
- AI Providers (for Deep Insights and AI Chat): If you use Deep Insights or AI Chat, necessary data is shared with third-party AI providers (e.g., OpenAI, Google, Anthropic) solely for generating insights and answers. Their use of data is governed by their respective privacy policies.
- Analytics/Crash Reporting Services: We use services like Firebase Crashlytics for anonymized diagnostics.
- Apple (iCloud & App Store): If you use iCloud sync or make purchases, data is handled according to Apple's policies.
- Legal Requirements: We may disclose information if required by law, subpoena, or other legal process.
5. Your Rights and Choices
- Access and Correction: You can access and edit your Diary Entries directly within the app.
- Deletion: You can delete individual entries or all data within the app's settings ("Delete All Data"). Deleting the app will also remove locally stored data. Data synced to iCloud needs to be managed through your iCloud account settings or by deleting within the app while sync is active.
- iCloud Sync: You can enable or disable iCloud sync at any time in the app's settings.
- Deep Insights & Audio Analysis: Usage of these features is optional.
- Export Data: You can export your data in formats like CSV or PDF from the app's settings.
6. Children's Privacy
The App is not intended for use by children under the age of 13 (or equivalent minimum age depending on jurisdiction). We do not knowingly collect personal information from children. If we learn that we have collected personal information from a child, we will take steps to delete it.
7. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any significant changes by posting the new policy within the app or on our website. Your continued use of the App after changes constitutes your acceptance of the new policy.
8. Contact Us
If you have any questions about this Privacy Policy, please contact us at:
JheroCode
[email protected]
9. Disclaimer
Bladder Journal is intended solely as a self-tracking tool. It is not a medical device and does not provide medical advice, diagnosis, or treatment. Always consult a qualified healthcare provider for any health concerns or before making any decisions related to your health or treatment.