Privacy Policy
This Privacy Policy explains how we handle information when you use Blood Oxygen Tracker: SpO2 (the "App"), including its iPhone and Apple Watch apps, or visit oxygenlog.com.
Information the App handles
Health and wellness data
With your permission, the App may read blood-oxygen, heart-rate, and sleep data from Apple Health. It may also write readings that you enter, heart-rate estimates from the iPhone camera, and completed breathing sessions. Notes, tags, thresholds, preferences, and report settings may be stored locally on your device.
Apple Health data is accessed only to provide features you request, such as history, trends, sleep insights, widgets, reports, and syncing between your iPhone and Apple Watch. We do not receive this health data on our servers.
Camera processing
If you use the camera heart-rate feature, the App analyzes the color changes in your fingertip on your device. The App does not take, save, or upload photos or video. The resulting heart-rate estimate may be saved to Apple Health only when you choose to save it and have granted permission.
Subscription information
Purchases are processed by Apple. The App uses Adapty to display subscription offers and manage entitlement status. Apple and Adapty may process an anonymous app or device identifier, purchase and subscription status, paywall interactions, and basic technical information needed to provide these services. For the Family Plan, our Cloudflare Worker receives opaque Adapty profile identifiers and subscription-expiry information so it can grant or remove a member's access. It never receives health values, names, notes, tags, or reports.
Family sharing through iCloud
If you accept a Family invitation and explicitly turn sharing on, the App can share blood-oxygen and heart-rate readings from Apple Health, together with their time and source, with the person who invited you. Sleep data, notes, tags, and location are not shared. Sharing is not real-time monitoring and the App is not an emergency service.
Shared readings travel through Apple's CloudKit into the inviting person's iCloud account. The developer cannot browse or retrieve those health values. You can stop sharing in one tap. Stopping sharing, or the owner removing you, deletes the shared readings from the owner's device and iCloud share.
A person added as a local family member does not need an iPhone or iCloud account. Readings that the caregiver logs for that person stay on the caregiver's iPhone and are never written to the local person's Apple Health record.
The Family entitlement service stores opaque Adapty profile identifiers, subscription expiry, hashed access capabilities, and operation status while a Family Plan is active and for up to 30 days afterward. Our servers never receive health values.
Crash diagnostics
The iPhone App uses Firebase Crashlytics to process crash reports, stack traces, app and operating-system versions, and basic device diagnostics so we can identify and fix reliability problems. The App sends only a privacy-safe error type and stack trace. Blood-oxygen or heart-rate values, HealthKit identifiers, notes, tags, reports, thresholds, and other user-entered text are not attached to crash reports. The Apple Watch app and widgets do not include Crashlytics.
Support communications
If you email us, we receive your email address and any information you include in your message. Please do not include sensitive health information unless it is necessary for your request.
Website data
oxygenlog.com is hosted by Cloudflare. Like most hosting providers, Cloudflare may process ordinary request information such as your IP address, browser type, requested page, and request time for security, reliability, and delivery. The website does not use advertising cookies and does not require an account.
How we use information
We use information only to:
- provide the App features you choose to use;
- manage subscriptions and restore purchases;
- respond to support requests;
- maintain security, prevent abuse, and troubleshoot technical problems; and
- comply with applicable law.
Sharing and service providers
We do not sell your personal information. Information may be processed by Apple for App Store purchases, Apple Health, iCloud, and CloudKit family sharing; by Adapty for subscription management; by Cloudflare Workers for Family Plan entitlement processing and by Cloudflare for website hosting and security; and by Google Firebase for privacy-safe iPhone crash diagnostics. These providers process information under their own terms and privacy policies.
We may also disclose information when required by law, to protect rights or safety, or as part of a business transfer. Because health data is stored on your device and in your Apple Health database, we ordinarily do not possess it to disclose.
Storage, retention, and deletion
App data stored locally remains on your device until you delete it in the App or remove the App, subject to any data separately retained in Apple Health or device backups. You can review or delete health records in the Apple Health app. Stopping an iCloud family share or removing a shared member deletes that member's shared readings from the owner's device and CloudKit share. Inactive Family entitlement records are deleted after 30 days once pending revocation work completes. Firebase Crashlytics crash reports are retained for up to 90 days under the configured Firebase retention policy. Support emails are retained only as long as reasonably necessary to handle your request and meet legal obligations.
To request deletion of information we may hold from a support interaction, email help@oxygenlog.com.
Your choices
- Manage the App's Apple Health permissions in the Health app under your profile and Apps.
- Manage camera permission in iOS Settings.
- Choose whether to save a reading or share a generated report.
- Choose whether to accept a Family invitation and whether to start or stop sharing Apple Health readings.
- As a Family owner, remove a member and their shared readings at any time.
- Manage or cancel a subscription in your Apple ID subscription settings.
Security
We design the App to minimize data collection and keep health information on your devices. No storage or transmission method is completely secure, so we cannot guarantee absolute security. We recommend protecting your devices with a passcode and keeping iOS and watchOS updated.
Children's privacy
The App is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has sent us personal information, contact us so we can delete it.
Changes to this policy
We may update this Privacy Policy as the App changes or as required by law. We will post the updated version here and revise the effective date.
Contact us
For privacy questions or requests, contact help@oxygenlog.com.
Health disclaimer
Blood Oxygen Tracker: SpO2 is intended for general wellness and informational purposes. It is not a medical device and does not diagnose, treat, cure, or prevent any disease or condition. Always seek advice from a qualified healthcare professional, and contact local emergency services if you may be experiencing a medical emergency.