Contents
- Who we are
- The short version
- Using Orken without an account
- What we collect with an account
- Apple Health
- Screen Time
- Challenges and user content
- Subscriptions
- Diagnostics and analytics
- Legal bases (GDPR)
- Who we share data with
- Where your data lives
- How long we keep it
- Your rights
- Children
- Security
- Changes
- Contact
1. Who we are
Orken ("Orken", "we", "us") is a habit-tracking app for iPhone. This policy explains what the app and this website do with your information, and what they deliberately do not do.
The data controller is Orken, contactable at support@orken.app. This policy covers the Orken iOS app and the orken.app website.
2. The short version
Orken is designed to work entirely on your device. You can install it, track habits for years, and never send us a single byte. An account is optional and only needed for syncing between devices and joining challenges.
We do not sell your data. We do not share it with advertisers. We do not track you across other apps or websites. There are no advertising SDKs in the app.
| Data | Where it goes |
|---|---|
| Your habits and check-ins | On your device. Copied to our server only if you turn on cloud sync. |
| Apple Health readings | Your device only. Never uploaded, never synced, never stored by us. |
| Screen Time | Your device only, inside Apple's sandboxed extension. We cannot read it. |
| Email address | Our server, only if you create an account. |
| Payment details | Apple only. We never see your card. |
| Crash and usage diagnostics | Sentry and PostHog, not linked to your identity. |
3. Using Orken without an account
Orken opens in local guest mode. In this mode your habits, check-ins, notes, streaks, statistics, reminders and settings are stored only in the app's local database on your iPhone, protected by iOS app sandboxing and device encryption.
In guest mode we receive no habit data at all. If you delete the app, that data is gone — which is why the app offers JSON and CSV export.
4. What we collect with an account
If you choose to create an account — with Sign in with Apple or an email address — we process:
- Account identifiers: a user ID, and your email address if you sign in by email. If you use Sign in with Apple and choose to hide your address, we only ever receive Apple's private relay address.
- Habit data you sync: habit names, types, schedules, goals, notes, check-ins and archive state. This is the content you created; it is stored so it can appear on your other devices.
- Device identifiers: a per-installation identifier used to reconcile sync between your devices and to deliver notifications.
- Technical records: server logs containing IP address, timestamp and request type, kept briefly for security and abuse prevention.
We use this only to run the service: authenticating you, syncing your data, and keeping the service secure. We do not profile you and we do not use your habit content for advertising.
5. Apple Health
Apple Health access is read-only, optional, and granted one metric at a time. Orken can read up to six metrics: steps, walking and running distance, active energy, exercise minutes, workouts, and sleep.
Orken reads daily totals to automatically complete the habits you have linked to a metric. Specifically:
- Orken never writes anything to Apple Health.
- Raw Health samples are never stored in our database and never synced to our servers or to any third party.
- Health data is never used for advertising or marketing, and is never sold or shared with data brokers.
- You can withdraw access at any time in the iOS Health app under Sharing → Apps, or in Orken's settings.
If you set a personal daily goal on a Health metric, that goal is local metadata stored by Orken. It never modifies your Health data.
6. Screen Time
If you enable Screen Time features, reports are rendered inside a sandboxed Apple Device Activity report extension. By Apple's design, the underlying usage data is not readable by Orken and is never transmitted off your device or synchronised.
7. Challenges and user content
If you join or create a Marketplace challenge, some information necessarily becomes visible to other participants:
- Your display name and avatar, your rank, and your weighted completion percentage.
- Sanitised daily challenge values, completion state, streak and rank movement.
Challenge creators see aggregate progress and leaderboards. They never see your email address, your notes, your exact check-in times, or any Apple Health samples.
Challenge titles, descriptions and habit templates you publish are user-generated content. We provide reporting and blocking tools, and we may remove content or suspend accounts that breach our Terms of Service.
8. Subscriptions
Optional Premium subscriptions are sold through Apple's App Store using StoreKit. We never receive or store your payment card details. Apple handles the transaction and sends us a verified server notification confirming the subscription's status, which we use to unlock Premium features on your account. Billing questions are handled by Apple.
9. Diagnostics and analytics
To keep the app stable we use two services, and both are limited to non-identifying data:
- Sentry — crash reports and performance data. Personally identifying information is explicitly disabled in our configuration.
- PostHog — aggregate product-interaction events, such as which screens are opened. This is not linked to your identity and is not used for advertising.
Neither service is used for cross-app or cross-site tracking. Orken does not request App Tracking Transparency permission because it does not track you in Apple's sense of the word.
10. Legal bases (GDPR)
| Purpose | Legal basis |
|---|---|
| Providing the app and syncing your account | Performance of a contract (Art. 6(1)(b)) |
| Apple Health and Screen Time integrations | Your explicit consent (Art. 9(2)(a)), withdrawable at any time |
| Security, abuse prevention, crash diagnostics | Legitimate interests (Art. 6(1)(f)) |
| Aggregate product analytics | Legitimate interests (Art. 6(1)(f)) |
| Processing subscriptions | Performance of a contract (Art. 6(1)(b)) |
11. Who we share data with
We do not sell personal data, and we do not share it for advertising. We use a small number of processors purely to run the service:
| Processor | Purpose | Location |
|---|---|---|
| Oracle Cloud Infrastructure | Hosting our application server and database | Frankfurt, Germany (EU) |
| Apple | Sign in with Apple, App Store purchases, push notifications | Global |
| Sentry | Crash and performance diagnostics | EU / US |
| PostHog | Aggregate product analytics | EU / US |
We may also disclose information where we are legally required to, or to protect the rights and safety of our users.
12. Where your data lives
Habit data you choose to sync is stored on servers located in Frankfurt, Germany, within the European Union. Where a processor transfers data outside the EU, that transfer relies on the European Commission's Standard Contractual Clauses or an adequacy decision.
13. How long we keep it
- Synced habit data: until you delete it, or until you delete your account.
- Account records: deleted when you delete your account.
- Server logs: a short retention window for security purposes, typically no more than 30 days.
- Diagnostics: retained according to each provider's default retention, then deleted.
- Purchase records: retained where tax or accounting law requires it.
Local data on your device is kept until you delete it or uninstall the app.
14. Your rights
Depending on where you live, you may have the right to access, correct, delete, restrict, object to, or port your personal data, and to withdraw consent.
Orken is built so you can exercise most of these yourself, immediately:
- Access and portability: Settings → Export data (JSON or CSV).
- Deletion: Settings → Account → Delete account. This removes your account and your synced data. See the account deletion page for the web route.
- Withdraw Health consent: the iOS Health app → Sharing → Apps → Orken.
For anything else, write to support@orken.app. We answer within 30 days. If you are in the EU or UK, you also have the right to lodge a complaint with your local data protection authority.
15. Children
Orken is not directed at children under 13, and we do not knowingly collect personal data from them. If you believe a child has given us personal data, contact us and we will delete it.
16. Security
Data in transit is encrypted with TLS. Data on your iPhone is protected by iOS sandboxing and device encryption, and you can add a Face ID, Touch ID or passcode lock to the app itself. On the server, database row-level security restricts every record to the account that owns it. No system is perfectly secure, but we take these measures seriously and fix problems promptly when they are reported.
17. Changes to this policy
If we change this policy we will update the date at the top of the page, and for material changes we will notify you in the app or by email before the change takes effect.
18. Contact
Questions, requests or complaints: support@orken.app.