Privacy
PeriPal Privacy Policy
Effective date:
PeriPal (iPhone and iPad) · Revivr Studios · support@revivrstudios.com
The short version
- We don't collect your health data. Everything you log in PeriPal is stored on your device, and in your own private iCloud account only if you turn on iCloud sync. Revivr Studios can't see it. (The one exception is a small marker that records whether you've used your free report. It isn't health data. See Purchases.)
- Apple Health data stays on your device. If you connect Apple Health, PeriPal only reads from it. Those readings stay on the device you connected. They aren't synced to iCloud or included in device backups, and they leave the device only in a report or export you choose to create and share.
- No ads, no tracking, no analytics, and we never sell data. The only outside service PeriPal uses is RevenueCat, to confirm your subscription (see Purchases).
- You decide what others can see. Widgets, the Lock Screen and notifications are discreet by default.
- You can delete everything at any time in Settings → Delete all my data.
What PeriPal stores, and where
Information you enter
This includes:
- Daily check-ins: sleep, mood, energy, mental clarity and irritability ratings, plus notes.
- Symptoms: the symptoms you log (including stress), how severe they were, and when you logged them.
- Period logs: flow level, symptoms and notes.
- Treatments: medicines, supplements, lifestyle changes and experiments you choose to track, including doses, dose changes, start and stop dates, and the symptoms you hope they help.
- Visits: date and time, specialty, and optionally your clinician's name, your questions and the answers you note, decisions made, visit notes, lab results, and follow-up dates.
- Profile: your name, the name you want printed on reports, your date of birth (optional, used only on reports when you choose to show it), your perimenopause stage, your usual symptoms and the nicknames and symbols you give them.
- App settings, including your "What others can see" choice.
This information is stored:
- On your device, encrypted by iOS data protection. So that widgets and background refresh can work, PeriPal's data becomes available to the app after you first unlock your device following a restart. Like most app data, it's included in your device's own backups (iCloud Backup or a computer backup), except Apple Health readings and your report library, which are excluded.
- In your private iCloud account, only if you turn on iCloud sync. iCloud sync is off by default. You can turn it on in PeriPal → Settings → Privacy & data → iCloud sync, so your data syncs between your own iPhone and iPad. It's kept in your personal CloudKit private database. Revivr Studios has no access to it, and it's protected by your Apple Account. If you turn sync off later, what's already in iCloud stays there until you delete it (see "Keeping and deleting your data"). This setting covers everything you log. Separately, the free-report marker described under Purchases is kept in your iCloud account even when sync is off.
Information from Apple Health (optional)
If you choose to connect Apple Health, PeriPal reads these data types:
- Sleep
- Heart rate variability
- Resting heart rate
- Basal body temperature
- Menstrual flow and spotting
PeriPal uses them to show them alongside your check-ins and in the app's charts and widgets.
- PDF reports: if you create a doctor report, period dates from Apple Health can appear in its cycle section (for example, cycle lengths and when your last period started), together with any periods you logged in PeriPal. Other Apple Health readings (sleep, heart rate, heart rate variability and temperature) are never included in PDF reports.
- Data exports (CSV): Apple Health readings are included in data exports you choose to create.
- Apple Health data is stored only on the device where you connected Apple Health. It is not synced to iCloud and is excluded from device backups.
- PeriPal never writes to Apple Health.
- Apple Health data is never sent to Revivr Studios or anyone else, and is never used for advertising or marketing. It only leaves your device inside a report or export that you choose to share.
- You can remove PeriPal's access at any time in the Health app → Sharing → Apps → PeriPal. Disconnecting in PeriPal's Settings stops it from reading new data.
Reports and exports
Doctor reports (PDF) and data exports (CSV) are created on your device. The CSV export holds your daily check-ins, symptoms and Apple Health readings, one row per day. It isn't a full backup of everything in PeriPal. Reports and exports are only shared when you choose to share or print them, for example by emailing a report to your clinician. Once you share a file, it's handled by the app or person you sent it to.
Reports you make or share are saved in a private library inside PeriPal. The library is stored only on that device, protected by iOS data protection and excluded from device backups. It is not synced to iCloud.
Purchases
PeriPal Pro is sold through the App Store, and Apple processes all payments; we never see your payment details.
We use RevenueCat to manage subscriptions and restore purchases. RevenueCat receives:
- An anonymous app user ID
- Your purchase history
- Basic technical details such as app version, device type, operating system and country
These are used only to confirm your subscription. RevenueCat does not receive your name, your health data or anything you log. See RevenueCat's privacy policy.
If you use your free report, PeriPal stores a small marker in your iCloud account (and on your device) recording that it has been used. It contains no health data, nothing you've logged, and no report content, and it's stored whether or not iCloud sync is on, so the free report applies once across all your devices. Revivr Studios can't see it.
Other features
- Face ID / Touch ID / passcode lock. This is handled entirely by iOS. PeriPal never receives your biometric data.
- Reminders and notifications. These are scheduled locally on your device. No notification data is sent to us. By default, notification wording is neutral and doesn't mention symptoms or health topics.
- Calendar (optional). If you ask PeriPal to add a visit or follow-up to your calendar, it requests permission to add events only. It can't read your calendar. Events are titled "Doctor visit". You can turn this off in PeriPal's Settings, and remove access in iOS Settings → Privacy & Security → Calendars.
- Home Screen and Lock Screen widgets, and Control Center. Widgets read and write the same on-device data as the app. What they show depends on your "What others can see" setting (Settings → Privacy & data):
- Discreet (the default): neutral words and your own symbols and nicknames. No symptom names or cycle information.
- Private until unlocked: details are hidden on the Lock Screen until Face ID or your passcode unlocks your device.
- Full detail: symptom names and visit details are shown.
- Background refresh. PeriPal may refresh your widgets in the background. This happens on your device and sends nothing to us.
- Learn. Links to outside organizations (for example, the NHS, NICE or The Menopause Society) open their websites. Those sites have their own privacy policies.
What we don't do
- We don't run analytics, advertising or crash-reporting services in the app.
- We don't track you across apps or websites.
- We don't sell or rent your personal information, and we share only what RevenueCat needs to confirm your subscription.
- PeriPal is not a medical device and doesn't provide medical advice or diagnoses.
Keeping and deleting your data
Your data stays until you delete it.
- Delete everything: go to Settings → Delete all my data. This erases your PeriPal data from this device (including your saved reports). If iCloud sync is on, it's also removed from iCloud and your other devices once this device next connects and syncs. Apple Health data isn't affected, and your subscription isn't cancelled. The free-report marker isn't removed. It holds no personal or health information, and it keeps the free report to one per Apple Account.
- Deleting the app removes data from that device. If iCloud sync was on, a copy remains in your iCloud account (so it can be restored if you reinstall and turn sync on again). To remove it, use Delete all my data while sync is on, or go to iOS Settings → [your name] → iCloud → Manage Account Storage.
- Subscription data held by RevenueCat: contact us to request deletion.
Children
PeriPal is intended for adults and is not directed to children under 16.
Your rights
Because Revivr Studios doesn't hold your health or personal information, there's usually nothing on our side to access, correct or delete. Your data is in your control on your device and, if you use iCloud sync, in your iCloud account. For questions, or requests about subscription data held by RevenueCat, email support@revivrstudios.com.
Changes to this policy
If we change how PeriPal handles data, we'll update this page and the effective date above.
Contact
Revivr Studios · support@revivrstudios.com