Privacy Policy
Effective February 10, 2026 · Last updated February 16, 2026
Routines365 ("we," "us," or "our") is a daily habit-tracking application. We respect your privacy and are committed to collecting only the minimum data needed to provide and improve the service. This policy explains what data we collect, how we use it, and your rights.
1. Data We Collect
Account information
When you create an account we collect your email address. Authentication is handled by Supabase Auth (magic link, email + password, or one-time passcode).
Routine and activity data
Your routines, daily check-ins, journal entries, activity logs, streak history, quest progress, personal records (such as barbell lift weights and benchmark workout times), race results and split times, training session logs, and settings are stored so the app can function and sync across devices.
Apple Health data (optional)
If you grant permission, the app reads health metrics from Apple Health (HealthKit), including sleep stages, heart rate, heart rate variability (HRV), resting heart rate, blood oxygen (SpO₂), respiratory rate, and step count. This data is used exclusively to display insights within the app and to auto-complete habits based on your health goals.
We do not sell, share, or transfer Apple Health data to any third party for any purpose — including advertising, data brokering, or analytics. Health data is processed on your device and is never stored on our servers.
Technical data
We automatically collect minimal technical data required to operate the service, such as device type, operating system version, and crash reports. We do not use third-party analytics or advertising SDKs.
2. How We Use Your Data
- To authenticate your account and keep you signed in
- To sync your routines, progress, and settings across devices
- To display streaks, milestones, reports, and insights
- To auto-complete habits when Apple Health data meets your configured goals (on-device only)
- To send reminders and notifications you have opted into
- To improve reliability, fix bugs, and develop new features
3. Data Storage and Security
Account and routine data is stored in a Supabase-hosted PostgreSQL database secured with row-level security (RLS). All data is transmitted over HTTPS/TLS. We follow industry best practices to protect your information, but no method of electronic transmission or storage is 100% secure.
The app also stores preferences (such as your theme choice, pinned habits, and notification settings) locally on your device using browser localStorage. This data never leaves your device and is not transmitted to our servers. No third-party cookies or tracking pixels are used.
4. Data Sharing
We do not sell or rent your personal data. We share data only in these limited circumstances:
- Accountability partners: If you opt into the partner feature, your daily completion status is shared with your linked partner.
- Service providers: We use Supabase for database hosting and authentication, and Vercel for web hosting. These providers process data on our behalf under their respective privacy policies.
- Legal obligations: We may disclose data if required by law or to protect the rights and safety of our users.
5. Data Retention
We retain your data for as long as your account is active. If you delete your account, all associated data is permanently removed from our servers within 30 days.
6. Your Rights and Choices
- Delete your account: You can permanently delete your account and all associated data from Settings → Security → Delete Account within the app.
- Revoke health access: You can revoke Apple Health permissions at any time in your device’s Settings → Health → Data Access.
- Manage notifications: You can disable push notifications from Settings → Notifications within the app or your device settings.
- Export your data: You can export a full copy of your data at any time from Settings → Backup & Restore within the app (available in JSON and CSV formats). You may also contact us at the email below for assistance.
7. Children’s Privacy
Routines365 is not intended for children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
8. Changes to This Policy
We may update this privacy policy from time to time. If we make material changes, we will notify you through the app or by email. The "last updated" date at the top reflects the most recent revision.
9. Contact Us
If you have questions about this privacy policy or your data, please contact us at routines365.app@gmail.com.