Habitoo — Privacy Policy
Last updated: 2026-05-12 · Version 1.0
Overview
Habitoo is an AI habit coach for iPhone. We follow the principle of data minimization:
the vast majority of your habit data stays on your device. We only send the minimum data required to our backend
and AI provider when you actively trigger an AI feature (goal shrinking, anchor suggestions, monthly review).
This page describes every data flow honestly, without hiding any of it.
Data Stored Locally
The following data lives only on your device and never leaves your phone, unless you trigger one of the AI or reporting features described below:
- Habit definitions (habit name, micro-goal text, anchor type and value, difficulty level): SwiftData (local SQLite)
- Completion records (status, timestamp, journal note text for each day): SwiftData
- Monthly review results (cached locally after generation, for offline access to history): SwiftData
- App settings (reminder preferences, etc.): UserDefaults
- Local notification schedules (anchor reminders): scheduled via iOS Notification Center, no cloud scheduling
Data Sent to Our Backend
Our backend is hosted on Cloudflare Workers, with Cloudflare D1 storing analytics events and the waitlist.
The app sends HTTPS requests to our backend in the following situations:
AI Goal Shrinking / Anchor Suggestions / Coach Check / Monthly Review
When you trigger one of these AI features, the app sends the following over HTTPS to our backend, which forwards the request to our AI provider (MiniMax) for inference:
- Goal shrinking: the habit text you typed + your locale + names of habits you already track
- Anchor suggestions: habit text, the micro-goal you selected, locale
- Coach check: habit context, last ~7 days of completion statuses, recent journal entries (text + sentiment tag)
- Monthly review: all of the month's habit names, all completion records (date, status, journal text), locale
These requests do not carry your name, email, device ID, or any direct personal identifier
(your IP address is retained for ~30 days by Cloudflare edge logs for abuse detection and rate-limiting only).
The AI inference result is returned synchronously to the app and saved locally; we do not persist your AI inputs or outputs on the backend.
Analytics Events
To assess app retention and feature usage, the app sends analytics events in the following situations:
- Event types: app open, AI call requested, micro-goal selected, anchor selected, habit created, habit completed, monthly review viewed, Pro upsell shown/clicked, waitlist submitted
- Each event carries: device ID (iOS IDFV — a random ID assigned by iOS scoped to this app, reset on uninstall), event name, event properties (a few boolean/string fields), locale, app version, timestamp, app identifier
- Does not carry: your name, email, habit names, journal text, or AI response content
Analytics events are stored in Cloudflare D1 (APAC region) and are queryable only by the app author.
Pro Waitlist Email (Optional)
We collect the following only when you actively submit your email in the in-app Pro waitlist (Settings page):
email, source label (e.g. pro_upsell_settings), device ID, locale, user agent, timestamp.
These are used to: notify you when Pro launches, and to send a 50% early-bird discount to the first 200 sign-ups.
Beyond that, we will not use them for any other marketing or third-party purpose.
Sub-Processors
Habitoo relies on the following third-party services, all communicated with via encrypted HTTPS:
- Cloudflare (Workers + D1 + Pages) — executes our backend logic, stores analytics events and waitlist data. Cloudflare does not access request content for its own use; it acts purely as an infrastructure provider.
- MiniMax (AI model service) — processes goal shrinking, anchor suggestions, coach check, and monthly review inference requests. Per our agreement with MiniMax, user data is not used for model training.
What We Do Not Do
- No third-party analytics SDK (no Firebase Analytics, no Mixpanel, no GA, no AppsFlyer)
- No third-party crash reporting SDK (no Sentry, no Crashlytics)
- No advertising SDKs; we show no ads and track no cross-app behavior
- We do not request the IDFA (Identifier for Advertisers) permission
- We do not request access to photos, location, contacts, calendar, or Health data
- We do not send any remote push notifications (only local notifications)
- We do not share data with data brokers
Data Retention and Deletion
- Local data: follows iOS lifecycle — removed automatically when you uninstall the app.
- Analytics events: retained indefinitely during MVP validation; a formal retention/deletion policy is on the roadmap. To delete your analytics data immediately, email us with your device IDFV (visible in Settings at the bottom of the app); we will remove it within 7 business days.
- Waitlist email: retained until we send the Pro launch invitation, or removed immediately on your request. If Pro is never launched, we will purge the data when the product is shut down.
Children's Privacy
Habitoo is not designed for, and we do not knowingly collect any data from, children under the age of 13.
If you believe a child has used the app and submitted any data without permission, please email us to remove it.
Policy Changes
If this Privacy Policy changes in the future, we will update this page and change the "Last updated" date at the top.
Material changes (such as new data collection categories) will be announced inside the app.
We recommend reviewing this page periodically.
Contact Us
If you have any questions about this Privacy Policy, want to export or delete your data, or want to learn more about
how Cloudflare or MiniMax handle your data, please email:
freezing.myfriend@gmail.com