EFFECTIVE OCTOBER 3, 2026
Privacy policy
Your wellness data belongs under your control. This policy explains how Body Automations handles it.
Body Automations is provided by the Body Automations developer. Contact us about this policy or a privacy request at vortrekdev@gmail.com.
Data used on your devices
The app processes your automation rules, preferences, manual check-ins, coarse body-state estimates, action results, and history locally. A supported watch can process heart-rate and activity observations to estimate changes relative to your own baseline. With your permission, the phone can read completed sleep summaries and supported sleeping wrist or skin-temperature data from Apple HealthKit or Android Health Connect. Temperature features use a personal baseline; they do not measure core temperature or detect fever.
Health access is read-only and limited to the permissions needed for enabled features. Supported Android versions may offer background health reads. You can refuse or revoke access in the operating system. Features relying on that access will then be limited or unavailable. Manual check-ins remain available.
What leaves your devices
- Phone and watch: the companion apps exchange coarse events, settings, acknowledgements, and action requests to run your rules. The automation engine stays on the phone.
- Integrations you configure: a webhook or connected provider receives the coarse fields and actions you choose and review. It does not receive exact heart-rate or temperature values from the standard event payload. That recipient handles received information under its own policies. Revoking an integration stops future authorized use; it cannot recall information already delivered.
- Purchases: Apple or Google and RevenueCat process transaction identifiers, receipts or purchase tokens, purchase history, entitlement status, an app user identifier, and technical information needed to provide and restore paid features. We do not receive your full payment-card details.
- App diagnostics: Android automatically uses Firebase Analytics and Crashlytics for product-usage and crash diagnostics. On Apple devices, these two services are off by default and are enabled separately through Settings. SDKs may process installation identifiers, device and app information, network information such as IP addresses, usage events, and crash reports. App-defined telemetry excludes health measurements, body states, rule contents, webhook contents, and free text. Advertising identifiers and ad-personalization signals are disabled.
- Support: when you email us, we receive your email address, message, and anything you choose to attach. Please avoid sending health records or secrets.
How we use information
We use information to execute the features you request, manage and restore purchases, investigate reliability issues, answer support requests, and protect the service. We do not sell health data or use HealthKit or Health Connect data for advertising, marketing profiles, or credit decisions. The app does not request tracking permission or include advertising.
Storage and retention
The app stores local automation data on your device and uses encrypted payload storage and operating-system secure storage for secrets. Local records remain until you delete them or remove the app, subject to operating-system behavior; secure-storage items may survive an uninstall on some platforms. Use in-app deletion before uninstalling when possible. Android app backup is disabled. Information you export is under your control.
Purchase providers retain transaction records under their own policies and applicable financial obligations. Firebase retention depends on the service and project settings; Crashlytics describes a 90-day retention period before its removal process begins. We retain support correspondence while needed to resolve the request and maintain necessary records. Contact us to request deletion of support or provider-held information that we can identify. We will explain any records we must retain.
Your choices and deletion
Use Settings to preview an export, delete local app data, review permissions, and open this policy. Apple users can turn Analytics and Crashlytics on or off independently. Revoking collection stops future collection; it does not automatically remove data already sent. To request access, correction, or deletion of information held by us or our processors, email vortrekdev@gmail.com. We may need limited information to locate a purchase or support record. There is no Body Automations account-registration requirement.
Deleting app data does not delete original Apple Health or Health Connect records, cancel a store subscription, or erase data previously sent to an integration. See the deletion instructions.
Service providers and international processing
Service providers may process information in countries outside your own. Their policies describe their safeguards and retention: Firebase, RevenueCat, Apple, and Google.
This website
Cloudflare Pages hosts these pages and processes connection and request information, such as IP addresses, to deliver and protect the website. We have added no analytics scripts, advertising, contact forms, or cookies to this site. See Cloudflare’s privacy policy. Email links open your email application.
Children and wellness
Body Automations is not directed to children under 13. If you believe a child has provided personal information to us, contact us for help removing it. The app is a wellness tool, not a medical device or emergency service.
Changes
We will publish changes here with an updated effective date and provide additional notice when required. Contact vortrekdev@gmail.com with questions.