← Back to home
Tract

Privacy Policy

Last updated: August 1, 2026

1. Information We Collect

Health Data

The app allows tracking of:

  • Symptom data (pain levels, bowel movements, mood, energy)
  • Medication information and adherence tracking
  • Health notes and observations
  • HealthKit data (with user authorization)

Key Point: All health data is stored locally on your device using Core Data. We do not have access to it, and we operate no server that stores your health records. It leaves your device only through the optional features described in this policy: iCloud sync (section 3), exports you start yourself (section 6), and the food analysis features (section 5).

Meal Analysis Data

When you use AI-powered food analysis features, the following data may be sent to external services for processing:

  • Meal Photos: Images you photograph are sent to our cloud proxy, and on to Google's Gemini model, for AI food identification
  • Food Names: Text you type when searching or logging foods is sent for nutrition and dietary compliance estimation
  • Meal Context: A small amount of context is sent with a photo or food name so the result is more accurate: the time of day, which diet approach you are following (for example FODMAP or SCD), and tags from your recent meals
  • Barcodes: Scanned product barcodes are sent to the Open Food Facts database, and to UPCItemDB if Open Food Facts has no entry, to retrieve product and ingredient information
  • Meal Ideas: If you ask for meal suggestions, a list of food names from the app's built-in food database is sent, including which of them you have saved as staples

Key Point: Meal analysis data is only sent when you actively use these features (camera, text search, barcode scanner, or meal ideas). Nothing is sent automatically or in the background. Your symptom history, medications, notes, and HealthKit data are never included.

Technical Data

Limited analytics collected:

  • App usage patterns (features used, session duration)
  • Feature interactions (button clicks, screen views)
  • Error categories and loading times
  • Device information (iOS version, device model—no advertising identifiers)

Key Point: Analytics data excludes all health information and is anonymized before transmission.

2. How We Use Your Information

Health Data

Since data remains on-device, processing includes:

  • Displaying health trends and insights
  • Generating personalized recommendations
  • Sending medication reminders (if enabled)
  • Exporting data for healthcare providers

Analytics Data

Anonymized data supports:

  • Optimizing app performance
  • Understanding helpful features
  • Improving user experience
  • Making data-driven feature decisions
  • Resolving technical issues

3. Data Storage and Security

Local Storage

Device-stored using Apple's Core Data, protected by:

  • Passcode/Face ID/Touch ID security
  • iOS sandboxing
  • Encryption at rest

iCloud Sync (Optional)

Encrypted in transit and at rest by Apple via CloudKit. We have no server access. Users control activation.

Important: HealthKit-sourced data is excluded from iCloud sync and remains on-device only.

4. HealthKit Integration

Data We Read (With Permission)

Tract only requests the metrics needed by the cards you have enabled, so most people are asked for a subset of this list:

  • Steps, walking/running distance, flights climbed, exercise and stand time, workouts
  • Heart rate, heart rate variability (HRV), resting heart rate
  • Respiratory rate, blood oxygen (SpO₂)
  • Sleep analysis and duration
  • Active energy burned
  • Body temperature, body weight
  • Menstrual flow
  • Nutrition metrics: water, caffeine, calories, protein, carbohydrates, fat, sugar, fiber, sodium, cholesterol, and the vitamins and minerals Apple Health tracks

Data We Write (With Permission)

Only for entries you logged yourself in the app:

  • Body weight
  • Water intake
  • Sleep, when you record it manually in Tract

Key Point: HealthKit data is accessed only on your device via Apple's approved HealthKit APIs. We do not transmit HealthKit data to our servers.

Control: You can change or revoke permissions via iOS Settings → Privacy & Security → Health → Tract.

5. AI-Powered Food Analysis

Tract offers optional AI-powered features to help you log meals and understand their nutritional and dietary impact. These features require an internet connection and involve sending limited data to external services.

Photo Recognition

When you photograph a meal, the image is sent to a proxy service we operate on Cloudflare Workers, which forwards it to Google's Gemini API for food identification. The image is used solely to identify foods and estimate nutrition data. Our proxy does not store the image; Google processes the request under the Google Gemini API terms.

Text-Based Nutrition Estimation

When you type food names, the text is sent through the same proxy to estimate nutrition and dietary compliance data (e.g., FODMAP levels, SCD classification). Only the food names you enter are sent, together with the meal context described in section 1. Your name, account information, symptom history, and HealthKit data are not included.

Meal Ideas

If you ask Tract to suggest meals, it sends a list of food names drawn from the app's built-in food database, marking which ones you have saved as staples, so the suggestions use foods you actually eat. No symptom or medication data is sent.

Barcode Scanning

When you scan a product barcode, the barcode number is sent to Open Food Facts, a public, open-source food product database, to retrieve product name, ingredients, and nutrition information. If Open Food Facts has no entry for the product, the barcode number is sent to UPCItemDB instead. No personal data is sent with either request. The ingredient list that comes back may then be analyzed by the text estimation described above.

Anonymous Device Registration

To use these features, the app registers anonymously with our service. It sends the app name, bundle identifier, platform, and app version, and receives a randomly generated device identifier and an access token, stored in your device's Keychain. This identifier is not derived from you or from your device's hardware, and it is never linked to your health data. We use it only to apply fair-use limits so the service is not abused. It persists until you uninstall the app or clear its data.

Retention

Meal photos are not stored by our proxy. Results of barcode and text lookups are cached on our proxy for up to 30 days, keyed to a hash of the product's ingredient list rather than to you or your device, so that scanning the same product again does not require a new AI request. Requests forwarded to Google are handled under Google's Gemini API terms, linked above.

Key Point: Your symptom logs, medications, notes, and HealthKit data are never transmitted during meal analysis. These features are entirely optional and only activate when you explicitly use them.

6. Data Sharing

Core Policy: We never sell your data, and we never share the health record you build in Tract—your symptoms, medications, appointments, and notes—with anyone. The services listed below receive only what is described against each one, and only at the moment you use the feature that sends it.

Analytics Service Provider

Amplitude: Receives anonymized technical data only (app events, feature usage, performance metrics)—never health data.

Amplitude Privacy Policy

AI Food Analysis Providers

Cloudflare: Our proxy runs on Cloudflare Workers. Meal photos, food names, and meal-idea requests pass through it. It does not store meal photos.

Google: The proxy forwards those requests to Google's Gemini API, which performs the food identification and nutrition estimation and returns the result. Google processes them under its Gemini API terms.

Google Gemini API Terms

Open Food Facts: Barcode numbers are sent to the Open Food Facts open-source database to retrieve product information. No personal data is included.

Open Food Facts Terms of Use

UPCItemDB: Used only as a fallback when Open Food Facts has no entry for a scanned barcode. It receives the barcode number and nothing else.

User-Initiated Sharing

Occurs only when you explicitly choose to:

  • Export data for healthcare providers
  • Share via iOS features (AirDrop, email)

7. Children's Privacy

The app is not intended for users under 16. We do not knowingly collect information from children under 16.

8. Analytics and Tracking

Data Collection Details

  • User Events: Button taps, screen views, feature usage (no content)
  • App Performance: Error categories, loading times
  • Session Data: App opens, session duration, navigation patterns
  • Device Context: iOS version, device model, app version (no unique identifiers)

Opt-Out Options

Access Settings in the app and toggle "Usage Analytics" off. Your preference is saved immediately.

Data Retention

  • Amplitude: Up to 2 years for trend analysis
  • Anonymization: No individual traceability
  • Deletion: You can request deletion via contact

Crash Reporting

Tract does not include a crash reporting service. Crash and diagnostic information reaches us only if you have opted in with Apple, via iOS Settings → Privacy & Security → Analytics & Improvements, which Apple governs.

Third-Party Standards

Amplitude maintains:

  • GDPR and CCPA compliance
  • Data encryption in transit and at rest
  • No cross-referencing with other sources
  • Regular security audits and certifications

9. Your Rights

You maintain complete control:

  • Access: View all data within the app
  • Export: Export in PDF and CSV formats
  • Delete: Remove individual entries or all data
  • Control: Choose what data to track and share

10. Changes to This Policy

We may update this policy with notifications via posting and updating the "Last Updated" date. Continued use of the app after changes constitutes acceptance of the updated policy.

11. Contact Us

Email: support@signalishealth.com

For privacy-related questions, data deletion requests, or concerns, please reach out via email.

12. Medical Disclaimer

Tract is for informational and tracking purposes only. It is not intended to diagnose, treat, cure, or prevent any disease. Always consult with qualified healthcare professionals regarding your health condition and treatment.