Privacy Policy
Contents
1. Summary (plain English)
Our apps store all your data on your device only. We never upload it to a server. We never sell it. We never share it with advertisers. We do not even have a server that could receive it.
Here is the full picture in four bullet points:
- What stays on your phone: all data you create within our apps — such as fasting sessions, weight logs, streaks, preferences, and custom configurations.
- What leaves your phone: nothing — unless you explicitly tap "Export Data" and choose to share it yourself.
- Who we share your data with: no one. There are no analytics SDKs, no advertising networks, and no third-party data processors embedded in our apps.
- How to delete everything: each app provides a Reset All Data option in Settings. Instant and permanent.
2. Who We Are
Velorolabs is a maker of simple apps for everyday needs. All apps are published on the Apple App Store under the Velorolabs developer account.
For any privacy-related questions, reach us at support@velorolabs.com.
3. Data We Collect
Our apps collect only the data you explicitly provide by using them. All data is stored locally on your device. None of it is transmitted to Velorolabs or any third party.
Per-App Data Details
Fastora
Fastora uses iOS secure storage (AsyncStorage) to persist the following data locally:
| Data Type | What It Includes | Where It Lives | You Can Delete It |
|---|---|---|---|
| Fasting sessions | Start time, end time, target duration, actual duration, fasting plan used, completion status | On-device only | Yes |
| Weight entries | Date, weight value, unit (kg or lbs) | On-device only | Yes |
| Streak data | Current streak count, longest streak, date of last completed fast | On-device only | Yes |
| User preferences | Selected fasting goal (e.g. lose weight), selected plan (e.g. 16:8), weight unit, notification on/off toggle | On-device only | Yes |
| Custom fasting plans | Name and duration of any custom plans you create | On-device only | Yes |
| Active fast state | Whether a fast is currently in progress and when it started (used to restore the timer if you close the app) | On-device only | Yes |
Health data classification
Fasting session history and weight logs are considered health data under Apple's App Store guidelines and applicable privacy laws (including GDPR and CCPA). We treat all data stored by our apps with the same elevated care regardless of regulatory classification. Because this data never leaves your device, it is not processed by Velorolabs and is not subject to most traditional data-processing obligations — however, we still want you to understand exactly what is stored and why.
4. Data We Do Not Collect
To be completely explicit, our apps do not collect:
- Your name, email address, or any account credentials — there is no account system
- Your location (GPS or approximate)
- Your device's contact list, camera roll, microphone, or calendar
- Crash reports or diagnostic logs sent to our servers
- Analytics events, screen views, or session recordings
- Advertising identifiers (IDFA)
- IP address or any network identifiers
- Device model, OS version, or hardware fingerprint
- Any data from HealthKit or other health platforms
- Any biometric data (Face ID / Touch ID are handled entirely by the OS — our apps never see the result)
5. How Your Data Is Stored
All data is persisted using the device's sandboxed file system (e.g. React Native's AsyncStorage). This means:
- Only the app that stored the data can read or write it — no other app has access.
- The data is included in iCloud backups if you have backups enabled on your device. This is a system-level feature outside our control. If you do not want your data included in backups, you can disable app data backup in your device settings.
- The data is automatically deleted when you uninstall the app.
- You can delete all data at any time from within each app via Settings → Reset All Data.
6. Data Sharing & Third Parties
Our apps do not share your data with any third party under any circumstances, with one exception: data you choose to export yourself.
Voluntary export
Where provided, the "Export Data" feature in Settings generates a file containing your stored data and opens your device's native Share sheet. You decide where that file goes — email, AirDrop, cloud storage, a notes app, etc. Velorolabs never receives a copy of this export.
Third-party SDKs
Our apps use only libraries that do not transmit personal data. We do not use Google Analytics, Firebase, Mixpanel, Amplitude, Sentry, Crashlytics, Meta SDK, or any other analytics or crash-reporting service.
Legal disclosures
Because we do not hold your data on any server, we have no data to hand over in response to a court order, subpoena, or law enforcement request. If we are ever compelled to produce user data and we have none, we will say so.
7. Notifications
Where our apps support notifications, they are scheduled locally on your device — they are not sent from a remote server and do not require an internet connection. No notification token or device identifier is collected or transmitted to Velorolabs. You can disable notifications at any time in each app's Settings or through your device's system Settings app.
8. Children's Privacy
Our apps are not directed at children under the age of 13 (or under 16 in the European Economic Area). We do not knowingly collect any information from children. Because our apps have no account system and store no data off-device, there is no mechanism by which we would receive data from a child user. If you believe a child has used one of our apps and you have concerns, please contact us at support@velorolabs.com.
9. Your Rights & Controls
Because all data is stored locally on your device, you have full and immediate control at all times. No request to us is required.
| Right | How to exercise it |
|---|---|
| Access your data | Settings → Export Data — generates a complete export of everything the app has stored |
| Delete your data | Settings → Reset All Data — permanently wipes all stored data and preferences |
| Portability | Settings → Export Data — the export is machine-readable and human-readable |
| Correct your data | Individual entries can be deleted within the app; full history can be cleared via Reset All Data |
| Opt out of notifications | Settings → Notifications toggle, or your device's system Settings → [App Name] → Notifications |
| Uninstall | Uninstalling the app deletes all locally stored data immediately and permanently |
GDPR (EEA residents)
Under the General Data Protection Regulation, you have the rights of access, rectification, erasure, restriction of processing, data portability, and objection. Because our apps do not process your data on any server operated by Velorolabs, the practical exercise of all these rights is through the in-app controls described above. If you have a question that cannot be answered by those controls, email support@velorolabs.com.
CCPA (California residents)
Under the California Consumer Privacy Act, you have the right to know what personal information is collected, the right to delete it, and the right to opt out of the sale of your personal information. Velorolabs does not sell personal information. All personal information is stored on your device only and can be deleted at any time via Settings → Reset All Data.
10. Data Retention
Our apps retain your data on your device for as long as you use them. There is no server-side retention because there is no server. Data is deleted:
- Immediately and permanently when you tap Settings → Reset All Data
- Immediately and permanently when you uninstall the app
- Individual entries can be deleted from within each app where supported
We have no ability to recover data after deletion because we never had a copy of it.
11. Security
The security of your data depends primarily on the security of your device, as all data is stored locally. We recommend:
- Keeping your device OS and apps up to date
- Using a device passcode, Face ID, or Touch ID
- Keeping iCloud backups enabled if you want your data preserved if you change devices (backups are encrypted with your Apple ID credentials)
Since our apps operate entirely offline, there is no network attack surface — no API keys, no user credentials, and no data in transit to intercept.
12. Changes to This Policy
We may update this privacy policy as our apps evolve — for example, if we introduce optional cloud sync, account systems, or other features that change how data is handled. When we make a material change, we will:
- Update the "Last updated" date at the top of this page
- Post a notice in the affected app's next release notes
- If the change is significant, prompt you in-app to review the updated policy
Continued use of our apps after a policy update constitutes acceptance of the revised policy. If you disagree with a change, you can export your data and delete the app at any time.
13. Contact Us
If you have any questions, concerns, or requests related to this privacy policy or your data, please contact us:
- Email: support@velorolabs.com
- Website: velorolabs.com
We aim to respond to all privacy inquiries within 5 business days.