1. Scope and Contact
This Privacy Policy explains how Folli ("Folli," "we," "us," or "our") handles information when you use the Folli iOS application and usefolli.com. Folli is a local-first wellness application for adults managing PCOS. Questions and privacy requests can be sent to [email protected].
2. Information We Handle
Health and wellness information
Information you enter in Folli may include your age, goals, cycle and period entries, symptoms, wellness notes, meals and nutrition information, meal photos, movement, water, weight, medications, supplements, and onboarding answers. SwiftData on your device is the live source of truth for this information.
Account and identity information
Every installation receives an anonymous Firebase account, a random internal user UUID, and a six-character Folli ID. If you connect Sign in with Apple or Google Sign-In, we also process the provider identifier and email address made available by that provider. The internal UUID is used as the RevenueCat customer identifier. The Folli ID is used for account and support lookup and is not an authentication credential.
Encrypted cloud backups
Folli creates encrypted backups for provisioned accounts. Backup contents can include the local database and meal photos. They are encrypted on your device with AES-256-GCM before upload to Firebase Cloud Storage in the United States. Firestore stores identity records, encrypted-backup metadata, and wrapped encryption-key material. The service normally retains one current and one previous backup. This is server-assisted encryption, not zero-knowledge encryption: an authorized operator with access to the privileged backup service and Google Cloud KMS could obtain the data-encryption key.
AI meal analysis
When you choose AI meal analysis, the meal description or selected photo, measurement preference, and permitted units are sent over an authenticated connection to Folli's backend hosted by DigitalOcean in Frankfurt, Germany, and then to the paid Google Gemini API. The content is used to return an estimated meal and nutrition result. Folli's backend does not persist the submitted image or text after completing the request. Google processes paid Gemini API content as a service provider and states that prompts and responses from paid services are not used to improve its products. Do not use AI meal analysis if you do not want the selected content sent to these providers.
Barcode lookup
When you scan a packaged-food barcode, the barcode number is sent to Open Food Facts to retrieve product and nutrition information. Folli does not send your account identifiers or health entries with that lookup.
Purchases and subscriptions
Apple processes App Store purchases. RevenueCat processes the internal user UUID, Folli ID, app and device information, product identifiers, purchase status, subscription entitlement, and restore status so Folli can provide and restore paid features. Folli does not receive your full payment-card details.
Analytics and crash diagnostics
When analytics and diagnostics collection is enabled, Folli uses Firebase Analytics and Firebase Crashlytics to measure technical flows and diagnose failures. Analytics can include the internal user UUID, SDK-generated app or installation identifiers, app version, screens and feature interactions, permission outcomes, and purchase-flow outcomes. Crash diagnostics can include stack traces, device and operating-system details, app state, and sanitized error codes.
Health entries, Apple Health values, onboarding answers, age, height, weight, dates, meal content, symptoms, medications, photos, barcodes, free text, email addresses, Folli IDs, Firebase UIDs, prices, receipts, and transaction IDs are not intentionally sent to Firebase Analytics or Crashlytics. Advertising signals, Google Signals, Google Ads links, and BigQuery analytics export are disabled.
Feedback and support
When you submit the Feedback & Help form, Folli sends your selected topic, message, optional contact email, verified Firebase UID, internal user UUID, Folli ID, guest or connected-account status, installation ID, device type, operating-system version, app version and build, locale, time zone, request ID, and submission time to our private support chat hosted by Telegram. This information is used only to respond, reproduce the issue, prevent abuse, and improve Folli. Health entries, Apple Health values, meal photos, and other app content are not attached automatically.
Network and security information
Our hosting and security providers may process IP addresses, App Check tokens, authentication tokens, request identifiers, timestamps, and similar network metadata to route requests, verify the app and account, rate-limit abuse, and protect the service. Authentication and App Check tokens are not placed in feedback messages or analytics events.
3. Apple Health
If you grant permission, Folli may read steps, active energy, workouts, weight, water, period flow, and spotting from Apple Health. Folli writes only workouts, workout energy, weight, and water that you explicitly record in Folli. Apple Health data is used only for health and wellness features. It is not used for advertising, marketing, data brokerage, credit or insurance decisions, or cross-company tracking, and it is not sent to analytics, crash reporting, or Telegram. You can change Health permissions in iOS Settings.
4. Why We Use Information
- Provide local tracking, reports, account access, encrypted backup and restore, AI estimates, barcode lookup, and subscription features.
- Authenticate requests, maintain security, prevent abuse, and troubleshoot failures.
- Respond to feedback and support requests.
- Measure reliability and improve Folli when analytics and diagnostics collection is enabled.
- Comply with legal obligations and enforce our Terms of Service.
Depending on where you live, these activities are based on performing our agreement with you, your consent for optional features or permissions, our legitimate interest in securing and improving the service, or compliance with law. You can avoid optional AI analysis, barcode lookup, Apple Health access, analytics, and the feedback form.
5. Service Providers and International Transfers
We use Apple, Google Firebase and Google Cloud, Google Gemini, RevenueCat, DigitalOcean, Open Food Facts, and Telegram for the limited purposes described above. Firebase Authentication operates in the United States. Folli's Firestore, Cloud Storage, Cloud Functions, and Cloud KMS resources are configured in us-east1 (South Carolina). The Folli nutrition backend is hosted in Frankfurt. Other providers may process information in the United States and other countries where they operate. Where required, we rely on provider data-processing terms and appropriate contractual safeguards for international transfers.
6. Retention
- Local data remains on your device until you delete it in Folli or uninstall the app.
- Account records and active encrypted backups remain until account deletion. The backup service normally retains one current and one previous snapshot. Abandoned uploads are scheduled for deletion after 48 hours, and infrastructure soft-delete protection may retain deleted backup objects for up to seven additional days.
- Firebase Analytics event data is configured for retention of up to 14 months. Firebase Crashlytics retains covered crash data for approximately 90 days.
- Folli does not retain AI request content on its nutrition backend after returning the result. Google and infrastructure providers retain service data according to their applicable terms and data-processing agreements.
- Feedback and its technical context may be retained in the private Telegram support channel for up to 12 months after the last support interaction, then deleted unless a longer period is required for security, legal, or dispute-resolution purposes.
- Apple, RevenueCat, and other providers retain transaction and service records according to their policies and legal obligations.
7. Your Choices and Rights
You can change Apple Health and photo permissions in iOS Settings, choose not to use AI or barcode features, disable available analytics controls, export or clear local data in Folli, and delete your Folli account in the app. Account deletion removes the Firebase user, identity mappings, backup metadata, wrapped backup key, and cloud backup objects. Local deletion occurs as part of the in-app deletion flow. Provider backup systems may take the additional periods described above to complete deletion.
Depending on your location, you may have rights to access, correct, export, restrict, object to, or delete personal information, and to withdraw consent. Send a request to [email protected]. We may need to verify your identity before completing a request. You may also complain to your local data-protection authority.
8. Security
Folli uses transport encryption, Firebase Authentication, App Check, device Keychain storage, access controls, and encrypted backups. No security measure is perfect, and we cannot guarantee absolute security. Keep your device and connected Apple or Google account secure.
9. No Sale, Advertising, or Cross-App Tracking
Folli does not sell personal information, serve third-party advertising, or use app data to track you across other companies' apps or websites. Health information is not used for advertising or data brokerage.
10. Adults Only
Folli is intended for adults aged 18 and older. We do not knowingly provide the service to or collect personal information from anyone under 18. If you believe a minor has provided information, contact us so we can investigate and delete it.
11. Changes and Contact
We may update this Privacy Policy as Folli changes. We will post the revised policy here and update the date above. If a change materially affects how we use information, we will provide additional notice where required.
Email: [email protected]
Website: https://usefolli.com