Data & Deletion
Last updated 22 August 2026 · Applies to the Glpfy app for Android and iOS (com.nelu.glp)
Contents
1. What the app stores, and where
All of the following is written to a private database in the app's own storage area on your device. None of it is transmitted anywhere.
| Data | Why the app has it | Where it lives |
|---|---|---|
| Profile — height, weight, age, sex, activity level, goal | Calculating your calorie, protein, fibre and hydration targets | On your device |
| Medication, dose and injection schedule | Next-dose countdown and the estimated medication level curve | On your device |
| Dose log | Adherence history and the level estimate | On your device |
| Weight entries | Progress trend and milestones | On your device |
| Meals and saved foods | Macro totals against your daily targets | On your device |
| Hydration log | Daily water target | On your device |
| Side effects and severity | Spotting patterns around dose changes; safety warnings | On your device |
| Journal entries | Your own notes | On your device |
| Settings — units, theme, reminders, analytics choice | Making the app behave the way you set it | On your device |
| Subscription status | Unlocking paid features | On your device; the store holds the purchase |
2. What is collected off the device
One category, on Android, and only while you leave it switched on:
| Data | Purpose | Optional? | Shared with |
|---|---|---|---|
| App interactions — screens opened, features used, whether an action succeeded | Understanding which parts of the app to improve | Yes — off in Settings | Google Firebase Analytics, as our processor |
| Crash logs and diagnostics — stack traces, device model, OS version, app version | Finding and fixing crashes | Yes — off in Settings | Google Firebase Crashlytics, as our processor |
| A random installation identifier | Grouping the above into sessions so a crash is diagnosable | Yes — off in Settings | Google Firebase |
This data is tied to a random installation identifier, not to you. It is never sold, never used for advertising, and never linked to an identity — there is no identity in the app to link it to.
3. What we never collect
- Your health data — off the device. Weight, medication and its name, doses, meals, hydration, side effects, journal entries, and any date attached to them, plus anything read from Health Connect. None of it is transmitted anywhere. Analytics record that a dose was logged, never which dose.
- Your identity. No name, no email address, no phone number, no account.
- Your location. The app requests no location permission.
- Your contacts, photos, calendar or files, beyond a file you deliberately choose during import or export.
- Advertising identifiers. There are no ad SDKs in the app.
4. Device permissions
- Notifications — so dose and habit reminders can appear. Decline it and the app still works; you simply get no reminders.
- Health Connect (Android, optional) — read-only access to steps, exercise, active and total calories burned, distance, floors climbed, weight, body fat and sleep, so you don't have to re-enter data you already track elsewhere. Nothing is read until you turn it on and grant it; you can grant individual types and decline others, and revoke access at any time in Health Connect or from the app. The app never writes to Health Connect. This version does not connect to Apple Health on iOS.
- No location. The app requests no location permission.
5. Export your data
Open the app → Settings → Export my data. The app writes a complete copy of your data to a file you choose. It is yours: keep it, move it to a new phone and import it, or delete it. Nothing is uploaded as part of the export.
6. Delete your data
You have two ways to remove everything, and both are immediate:
- From inside the app. Open Settings → Erase all data and confirm. Every log, your profile and your treatment details are deleted from the device permanently.
- Uninstall the app. Removing the app removes its private storage, and with it all of your data.
There is no server copy and no waiting period. Because of that, deletion cannot be undone and we cannot recover anything for you — export first if you might want it later.
One thing outside our reach: if your device's own backup system (Android Backup, iCloud) has already captured the app's data, that copy is controlled by your Google or Apple account. You can remove it in your device's backup settings.
Cancelling a subscription is separate and is done in your Google Play or App Store account; it does not delete your data, and deleting your data does not cancel a subscription.
7. Account deletion
Glpfy has no accounts. You do not create one, we do not issue one, and there is no profile of you held on any server to delete. The equivalent action — removing all of your data — is the in-app Erase all data option described above, and it takes effect immediately.
If you need written confirmation of this for a store review or a data request, email nelucode+glpfy@gmail.com.
8. Turning off analytics
Open Settings and switch off Share anonymous usage data. Collection stops at that point — the setting disables it rather than merely hiding it. Data already sent to Firebase before you switched it off is deleted on the schedule in section 9 — 14 months for analytics events, 90 days for crash reports. If you want it purged sooner, contact us with your approximate dates and we will ask for it to be deleted, though because it holds no identifier tied to you, it can only be removed in bulk.
9. Retention
We do not store or retain your health data. It never reaches us, so we hold no copy of it for any length of time. In full:
- Your logs, profile and treatment details: retained on your device only, for as long as you keep them. Erased immediately and permanently when you delete them, use Erase all data, or uninstall. We never hold them, so there is nothing for us to retain or delete on your behalf.
- Anonymous analytics events: retained by Google Firebase Analytics for a maximum of 14 months from collection, then deleted automatically by Google. They contain no health information and no identifier tied to you.
- Crash reports: retained by Firebase Crashlytics for 90 days, then deleted automatically.
- Support emails: retained for up to 24 months so we can follow up, then deleted. Ask us and we will delete yours sooner.
10. Security
Your data sits in the app's private storage, which the operating system isolates from other apps, protected by your device's own lock screen and disk encryption. Keeping a passcode or biometric lock on your device is the single most effective thing you can do to protect it.
Because nothing is transmitted, there is no account to be breached, no password to be stolen, and no central database of users' health data to be attacked.
11. Contact
Data questions and requests: nelucode+glpfy@gmail.com. See also the Privacy Policy.