Privacy
Policy
Your personal health data is stored locally on your device by default. No sign-up. No tracking. No ads. Data is only synced externally if you explicitly enable iCloud Sync, and the optional Live World community features described in Section 07.
Introduction
Welcome to Octilum. This Privacy Policy explains how Octilum ("we," "our," or "the App") handles information in connection with your use of our iOS application.
Octilum is designed with a privacy-first architecture. Your personal health and wellness data is stored locally on your device by default and is only synced to your personal iCloud account if you explicitly choose to enable iCloud Sync.
Developer: Dr. German Amaya, MD · Contact: privacy@octilum.com · Website: octilum.com
Data We Do Not Collect
Octilum does not collect, store, or transmit any of the following:
If you choose to use the optional Live World community features, you select a display name that other users can see. That name is chosen by you, is not verified, and does not need to identify you. See Section 07 for exactly what is stored, for how long, and how to remove it.
Data Stored Locally on Your Device
All health and wellness data you enter into Octilum is stored exclusively on your device using Apple's Core Data framework. This includes:
- Running logs and GPS route data (stored locally via MapKit — never transmitted)
- Sleep session records and sleep quality ratings
- Breathing and meditation session records
- Hydration (water intake) logs
- Nutrition logs and calorie tracking
- Workout logs including exercises, sets, reps, and weight
- Bodyweight records
This data is protected by iOS device encryption and your device passcode or Face ID authentication.
Apple HealthKit Integration
Octilum integrates with Apple HealthKit to optionally import health data recorded by your Apple Watch or iPhone.
Data Read from HealthKit
- Running distance (walking/running distance recorded by Apple Watch)
- Sleep duration and sleep analysis data
How HealthKit Data Is Used
- HealthKit is read only when you tap "Sync Health Data", and only for the current day
- The value read is shown to you on a confirmation screen before anything is saved
- Nothing is written back to HealthKit — Octilum requests read access only
- Raw HealthKit samples are never uploaded to our servers or used for advertising
Once you confirm an import, the value becomes an entry in your own Octilum log, handled exactly like one you typed by hand: stored locally, and synced to your personal iCloud account only if you enabled iCloud Sync. If you are a member of a Circle, a running summary is shared with that Circle only when you explicitly confirm it on a separate screen.
You may revoke HealthKit access at any time via iOS Settings → Privacy & Security → Health.
iCloud Sync (Optional)
Octilum offers an optional iCloud Sync feature that allows your data to be synchronized across your Apple devices using Apple's CloudKit infrastructure.
- iCloud Sync is disabled by default
- You must explicitly enable it in Settings → Data & Security
- When enabled, your data is encrypted and stored in your personal iCloud account
- Governed by Apple's iCloud Privacy Policy — not accessible to us
- Can be disabled at any time from within the app
We do not have access to your iCloud data. Data stored in iCloud is managed by Apple under your Apple ID, governed exclusively by Apple's iCloud Privacy Policy.
Firebase Services
Octilum uses Google Firebase exclusively for app content delivery — not for user data collection.
Octilum does not use Firebase Analytics, Firebase Crashlytics, or any Firebase service that collects personal data or behavioral analytics.
Live World and Community Features
Live World is the optional community layer of Octilum. It includes a live globe showing anonymous activity worldwide, Octilum Circles (public communities organized by category and time of day), and private groups you create or join by invitation code. This section describes exactly what leaves your device when you use these features.
Live World is opt-in and reversible. If you never enable it, none of the data below is transmitted. Your personal health metrics — distances, durations, sleep, nutrition, weight — are never shared with other users under any circumstance.
What Is Transmitted
- Anonymous device identifier — a random value generated on your device and stored in the iOS Keychain. It is not your Apple ID, not your device serial, and is not linked to your identity.
- Country — derived from your device's region setting. Octilum never requests location permissions and never receives GPS coordinates for this purpose.
- Active category — which of the wellness categories you are currently practising (for example, Running or Meditation).
- Display name — the name you choose when joining a Circle or a private group. It is visible to other users, including people you do not know in public Circles.
- Session summaries — when you complete a session while a member of a Circle, an aggregate summary (duration, and for Running, distance and pace) is shared with that Circle so the group can see its combined activity for the day.
What Is Never Transmitted
How Long Data Is Kept
Reporting, Blocking, and Safety
Octilum provides tools to report and block other users. When you submit a report, we store the anonymous identifier of the reporting device, the anonymous identifier and display name of the reported user, the reason selected, and the context in which the report was made. Reports are reviewed by us and are not visible to any other user.
Blocking is handled entirely on your device. The list of people you block never leaves your phone, the blocked person is not notified, and you can reverse it at any time from Live World settings.
Display names are automatically screened before becoming visible to others. Filtering is applied on your device before anything is transmitted.
How to Withdraw
- Stop appearing live: turn off "Show me in Live World" in Live World settings. Your presence stops being published immediately.
- Delete Circle data: open the Circle and tap "Leave Circle". Your membership record, including your display name, is deleted from our servers immediately.
- Delete private group data: tap "Leave Group". Your membership is deleted immediately, and if no members remain the group itself is deleted with it.
- Erase your entire community identity: in Live World settings, tap "Reset my Live World identity". This deletes your anonymous identifier from the iOS Keychain along with every Circle membership, group membership and session record associated with it, on your device and on our servers. You return to Live World as an entirely new participant. Your personal tracking history is not affected.
- Request deletion: if you need any remaining data removed, write to privacy@octilum.com. Because our records contain no real-world identifiers, please include the approximate dates and the display name you used so we can locate them.
Community features are governed by our Terms of Use, Section 07, which sets out prohibited conduct and our zero-tolerance policy for objectionable content and abusive users.
Device Authentication
Octilum uses Apple's Face ID and device passcode authentication (LocalAuthentication framework) to protect access to the app. This authentication is processed entirely on your device by iOS.
Octilum never receives, stores, or transmits your biometric data.
Subscriptions and Payments
Octilum offers premium access through auto-renewing subscriptions processed entirely by Apple's App Store. We do not collect or store any payment or financial information.
- Monthly and annual subscriptions processed exclusively by Apple
- 14-day free trial managed in accordance with App Store policies
For billing inquiries, refunds, or subscription management, visit your Apple ID account settings or contact Apple Support directly.
Children's Privacy
Octilum is not directed at children under the age of 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided personal information through the app, please contact us at privacy@octilum.com and we will delete it.
The Live World community features allow a self-chosen display name to be visible to other users. Parents and guardians should review Section 07 before permitting a minor to enable these features.
Data Retention and Deletion
Since all personal health data is stored locally on your device, you have full control at all times.
- Delete individual entries from within the app at any time
- Deleting the Octilum app removes all locally stored data
- If iCloud Sync is enabled, existing iCloud data can be deleted via iOS Settings → Apple ID → iCloud → Manage Account Storage
Data associated with the optional Live World community features is stored on our servers and follows the retention schedule set out in Section 07. You can remove it at any time by leaving a Circle or group, or by disabling Live World visibility.
Your Privacy Rights
Your health and wellness data is stored on your device and, if you enable it, in your personal iCloud account. We hold no copy of it and cannot access it.
If you use the optional Live World community features, the limited data described in Section 07 is stored on our servers under an anonymous identifier. Even then, we hold no real-world identifier for you: no name, no email, no phone number, no location. You can delete that data yourself at any time by leaving a Circle or group, or by disabling Live World.
Depending on where you live, you may have the right to access, correct, or delete personal data we hold, and to object to its processing. To exercise any of these rights, or for any privacy-related question, contact us at privacy@octilum.com. Because our records contain no identifiers linked to you, we may ask for details that let us locate them.
Data Security
We implement appropriate technical measures to protect your data, including reliance on Apple's secure frameworks and device-level encryption. All health data stored locally on your device is protected by iOS encryption, accessible only through your device passcode or Face ID.
We do not create advertising profiles or track user behavior across apps or services. Data transmitted for Live World is protected in transit and governed by server-side rules that restrict what can be written and read. Octilum has no visibility into how you use the app beyond what you explicitly log or choose to share with a community.
Third-Party Services
Octilum integrates with the following third-party services. Their respective privacy policies govern how these services handle data:
- Apple HealthKit — apple.com/legal/privacy
- Apple iCloud / CloudKit — apple.com/legal/privacy
- Apple App Store (payments) — apple.com/legal/privacy
- Google Firebase Storage & Firestore — firebase.google.com/support/privacy
Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will revise the "Last Updated" date at the top of this document. Your continued use of Octilum after any changes constitutes your acceptance of the updated policy.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy: