Privacy Policy
The short version
- We do not sell your personal information. Not to advertisers, not to data brokers, not to anyone. There is no advertising SDK in Peak.
- We do not track you across other apps or websites, and we don't ask for your contacts.
- Your journal entries and coach conversations are never shown to other users.
- Your messages to the AI coach are processed by OpenAI under an agreement that forbids training on them.
- Screen Time selections stay on your device under Apple's own privacy protections — we never receive the list of apps you use. Health data stays on your device too, with one exception you control: if you turn the Health integration on and you message the AI coach, a small summary (today's steps, exercise minutes and last night's sleep) is sent with that message so the answer is about your actual day. Turn either one off and it is not sent.
- You can delete everything from inside the app, in about three taps, without emailing anyone.
The rest of this page is the detail behind those six statements. It covers the Peak iPhone app and the peakapp.org website.
1. Who is responsible
Peak is operated by Brian Goodman, sole proprietor, in the State of Nevada, United States. For the purposes of the EU/UK GDPR, we are the data controller for the information described here.
Contact for any privacy question or request: support@peakapp.org. We have not appointed a Data Protection Officer, as we are not required to; that address reaches the person who can act on your request.
2. What we collect
| Category | Examples | Source |
|---|---|---|
| Account | Email address, password (stored only as a salted hash), username, display name, avatar selection, sign-up date | You |
| Your content | Goals, tasks and moves, habits, streak history, focus sessions, journal entries, coach messages, weekly reviews | You |
| Progress | XP, level, coins, completions, ranks and medals, challenge results | Generated by your use |
| Social | Friend connections, nudges sent and received, challenge and group membership | You and other users |
| Subscription | Whether you have an active entitlement, plan type, renewal and expiry dates, an anonymous purchaser ID | Apple, via RevenueCat |
| Product analytics | Named in-app events (e.g. "onboarding step completed," "task completed"), app version, device model, OS version, coarse region | Your device |
| Diagnostics | Crash reports, stack traces, performance traces | Your device |
| Support | Anything you write to us, and your email address | You |
Product analytics use explicitly named events only — we do not use automatic screen-or-tap capture, and analytics events do not carry your journal text, coach messages or task titles.
3. What we deliberately don't collect
- Your payment card. Apple handles payment; we never see a card number, and we never receive your full name or billing address from Apple.
- Your contacts or address book. Friends are added by username, on purpose.
- Precise location. Peak does not request location permission.
- Your photos, microphone in the background, or the list of apps installed on your phone.
- Advertising identifiers. We do not use the IDFA and do not present the App Tracking Transparency prompt, because we do not track you across other companies' apps or sites.
4. Why we use it
- To run the app — store your goals, sync them between your devices, calculate streaks and progress, and show you your own history.
- To provide AI features — pass what you asked, plus relevant context from your own account, to our AI provider so it can answer (see section 7).
- To operate social features — show your username and streak to friends you have added, and run challenges.
- To manage subscriptions — check whether your account should have Elite features unlocked.
- To fix and improve Peak — understand which flows people complete or abandon, and receive crash reports when something breaks.
- To communicate — reply to your support emails and send essential service notices (for example a security or billing issue).
- To keep the service safe and lawful — prevent abuse, enforce our Terms, and comply with legal obligations.
We do not use your content to build advertising profiles, and we do not make automated decisions that produce legal or similarly significant effects about you.
5. Legal bases (EEA/UK)
| Purpose | Legal basis |
|---|---|
| Providing the app and your account | Performance of a contract (Art. 6(1)(b)) |
| Subscription management & billing records | Contract; legal obligation for tax records |
| Product analytics & crash reporting | Legitimate interests (Art. 6(1)(f)) — improving and stabilising the product, balanced against your privacy by using named events and no cross-app tracking |
| Optional Health integration | Explicit consent (Art. 9(2)(a)) — you grant it in iOS and can revoke it at any time |
| Marketing email (if you ever opt in) | Consent, withdrawable at any time |
| Security, abuse prevention, legal claims | Legitimate interests; legal obligation |
Where we rely on legitimate interests, you have the right to object — see section 12.
6. Who processes your data
We are a very small team, so we use established providers rather than running everything ourselves. Each acts as our processor under contract, may only use the data to provide their service to us, and may not sell it.
| Provider | What it does | What it sees |
|---|---|---|
| Apple | App distribution, payments, push/local notification delivery | Purchase and account data under Apple's own privacy policy |
| Supabase | Authentication, database, serverless functions | Your account and your content, encrypted in transit and at rest |
| RevenueCat | Subscription state and entitlements | An anonymous app user ID and your purchase status — not your content |
| OpenAI | AI coach responses and voice transcription | The message you send and the context needed to answer it (see section 7) |
| PostHog | Product analytics | Named events, device and app metadata — not your content |
| Sentry | Crash and error reporting | Technical diagnostics, which may incidentally include an identifier |
| Netlify | Hosting for peakapp.org | Standard web server logs (see section 18) |
We may also disclose information if we are legally required to (a valid subpoena, court order or equivalent), to protect our rights or someone's safety, or in connection with a merger or sale of the business — in which case we will give notice in the app before your data is transferred, and any acquirer will be bound by this policy or one no less protective.
We do not sell personal information, and we do not share it for cross-context behavioural advertising.
7. AI features
Peak's coach, voice transcription and AI-generated plans are powered by OpenAI's models, called from our own servers — the app never holds an AI provider key, and requests are authenticated as you.
- What is sent: the message or audio you submit, plus the minimum context needed to make the answer useful — for example your active goals, recent tasks, and streak length.
- What is not sent: your email address, your password, your payment details, or the content of other users' accounts.
- Training: data sent through OpenAI's API is not used to train their models under their API data-usage terms. We have not opted into any programme that would change that.
- Retention at the provider: OpenAI may retain API request data for a limited period (currently up to 30 days) for abuse monitoring, then delete it.
- Retention with us: your coach conversation is stored in your account so you can read it later, and is deleted when you delete your account or clear the conversation.
- Opting out: don't use the coach. Every other part of Peak works without it, and nothing is sent to any AI provider unless you initiate it.
Full detail, including limits and accuracy caveats, is in our AI Policy.
8. Health & Screen Time
Apple Health. If you turn the optional Health integration on, Peak reads only the specific data types you authorise in iOS, and uses them to mark relevant activities complete inside the app. There is one case where a summary leaves your device, and only if you also use the AI coach: when you send the coach a message, today's step count, exercise minutes and last night's sleep hours are included as context so its answer is about your real day rather than discipline in the abstract. That summary goes to our AI provider under an agreement that forbids training on it, and nowhere else. If you never message the coach, or you leave the Health integration off, no Health data ever leaves your phone. You can revoke access at any time in iPhone Settings → Health → Data Access & Devices. In line with Apple's rules, Health data is never used for advertising, never sold, and never shared with anyone for their own purposes.
Screen Time / App Lock. Where Peak uses Apple's Screen Time (Family Controls) framework, iOS is deliberately designed so that the selection of apps you choose to shield is opaque to us — we receive tokens, not app names, and the enforcement happens on your device. Any minutes-earned ledger is stored on your device and in your own account, and is not shared with other users.
9. What other users can see
Only people you have connected with, and only: your username and avatar, your level, your current streak, whether you completed today, and your score in challenges you both joined.
Never visible to other users: your email address, your journal entries, your coach conversations, your individual task or goal titles, and your subscription status.
Someone can find you if they know your exact username. If you'd rather not be findable, change your username to something only your friends know.
10. Notifications
Peak's reminders are scheduled locally on your device, so we do not need to know when you get them. If you enable notifications and later change your mind, turn them off in iPhone Settings → Notifications → Peak, or in the app's own notification settings, which let you keep some categories and drop others.
11. How long we keep it
| Data | Retention |
|---|---|
| Account & your content | While your account exists. Deleted or irreversibly anonymised within 30 days of account deletion |
| Backups | Purged on the normal backup rotation, no later than 90 days after deletion |
| Product analytics | Up to 12 months, then deleted or aggregated beyond re-identification |
| Crash reports | Up to 90 days |
| Support emails | Up to 24 months |
| Purchase & tax records | As long as tax and accounting law requires (typically 7 years). These records do not include your app content |
12. Your rights & choices
Wherever you live, you can ask us to:
- Access a copy of the personal data we hold about you;
- Correct anything inaccurate (most of it is editable in the app);
- Delete your account and data;
- Export your data in a portable, machine-readable format;
- Restrict or object to processing based on legitimate interests;
- Withdraw consent you previously gave, without affecting processing already carried out.
Email support@peakapp.org from the address on your account. We will verify it is you, respond within 30 days, and will not charge you or degrade your service for exercising a right.
If you are in the EEA or UK and you think we've got it wrong, you may complain to your local supervisory authority — but please email us first; it is usually faster.
13. Deleting your account
In the app: Settings → Account → Delete Account. It is a real deletion, not a deactivation, and it does not require you to contact support. Step-by-step instructions, including what survives and why, are on the Delete your account page.
Deleting your account does not cancel an App Store subscription — cancel that separately in iPhone Settings, or you will keep being charged.
14. US state privacy rights
If you live in California, Colorado, Connecticut, Virginia, Texas or another US state with a comprehensive privacy law, you have rights to know, access, correct, delete and port your personal information, and to appeal a refusal.
For the avoidance of doubt: in the last 12 months we have not sold personal information and have not shared it for cross-context behavioural advertising, including for consumers we know to be under 16. We do not use or disclose sensitive personal information for purposes beyond providing the service. Exercise any of these rights at support@peakapp.org; you may use an authorised agent, and we will not discriminate against you for asking.
15. International transfers
We are based in the United States and our providers operate globally, so your data may be processed in the US and elsewhere. Where data leaves the EEA or UK, transfers are covered by the European Commission's Standard Contractual Clauses (with the UK Addendum where applicable) in our agreements with those providers, together with technical measures including encryption in transit and at rest.
16. Security
Passwords are stored only as salted hashes and never in plain text. Data is encrypted in transit (TLS) and at rest. Access to production data is limited to the operator of the service and protected by multi-factor authentication. Database access rules are enforced row by row so one account cannot read another's data, and AI functions run server-side with your session validated on every request.
No system is perfectly secure. If we discover a breach affecting your personal data, we will notify affected users and the relevant authorities as required by law, without undue delay. If you believe you have found a vulnerability, please report it to support@peakapp.org — we will not pursue legal action against good-faith security research that avoids privacy violations, data destruction and service disruption.
17. Children
Peak is not directed to children under 13 and we do not knowingly collect personal information from them. If you believe a child under 13 has given us data, email support@peakapp.org and we will delete the account promptly. Where a higher digital-consent age applies (up to 16 in parts of the EEA), that age applies instead.
18. This website
peakapp.org sets no cookies, runs no advertising or analytics scripts, and does not build a profile of you. Our host keeps standard server logs (IP address, timestamp, page requested, user agent) for security and troubleshooting, retained on their normal rotation. The only third-party request the site makes is to Google Fonts to load a typeface. If you email us from this site, we hold that email as described in section 11.
19. Changes
We may update this policy. The "Last updated" date at the top always reflects the current version, and we will give notice in the app or by email before any material change takes effect. If a change would require your consent, we will ask for it rather than assume it.
20. Contact
Peak · Brian Goodman
Nevada, United States
Email: support@peakapp.org
Related documents: Terms of Use · AI Policy · Delete your account