Privacy Policy
Effective 2026-06-12T00:00:00.000Z · Last updated 2026-06-12T00:00:00.000Z
The short version
attensio is a personal wellness journal you keep on your iPhone. Your health data stays on your device. There is no account, no sign-up, and no attensio server holding your readings. We cannot see your blood pressure, your medications, or your notes — and this policy explains the small number of places where any data can leave your phone, every one of which is under your control.
Who we are
attensio is developed by Anggie Aziz (“attensio”, “we”). For anything in this policy, you can reach us at [email protected].
No account, no server, no analytics
attensio works without a sign-up. There is no external server and no cloud database for your health data, and the app contains no analytics or advertising SDK of any kind. Everything you log lives in your device’s storage and in Apple Health, under the protections Apple provides on your device.
If you turn on the optional Face ID / Touch ID lock, the biometric check is performed entirely by iOS. attensio never sees or stores your biometric data.
What the app stores on your device
- Blood pressure readings, pulse, and the context you attach to them: mood, tags, notes, arm, and body position.
- Your medications, dosage history, and adherence log.
- Your profile name, preferred units, personal target range, reminder preferences, and app settings.
All of it stays on your phone unless you take one of the explicit actions described below: connecting Apple Health, turning on the encrypted backup, exporting a report or CSV, or opting in to crash reports.
Apple Health
With your permission, attensio reads blood pressure, heart rate, weight, height, sleep analysis, active energy, and step count from Apple Health. You grant or refuse each data type individually, and you can change your choices at any time in the Health app. Apple Health is the authoritative record: when the same reading exists in both places, the Apple Health value is kept and your manual entry is archived rather than deleted, so the notes and tags you added stay attached.
Writing readings back to Apple Health is an explicit, off-by-default option for Pro users. attensio never writes to Apple Health unless you turn that on.
Data you read from or write to Apple Health is handled by Apple under the protections described in Apple’s own privacy documentation. attensio never uses Apple Health data for marketing or advertising, and never discloses it to third parties — both are also forbidden by Apple’s HealthKit rules.
Encrypted backup (Pro)
Pro users can turn on an encrypted backup of the journal data Apple Health does not hold: the mood, tags, notes, arm, and position attached to readings (including archived entries), your medications, dosage history and adherence log, your profile name and preferred units, your personal target range, reminder preferences, and app settings.
- The backup is encrypted on your device with AES-256-GCM before any byte leaves the phone.
- The encryption key is a random 256-bit key stored in your iOS Keychain and synced through your end-to-end-encrypted iCloud Keychain. Only you can reach it, with your device passcode and two-factor authentication.
- The encrypted file is written to your own iCloud Documents, under your Apple Account.
- attensio operates no server and holds no key. We cannot decrypt your backup.
Blood pressure readings, weight, height, date of birth, and biological sex are not in this backup — those ride Apple Health, which iOS can sync across your devices at the system level when you have Health syncing enabled.
Crash reports — opt-in, scrubbed, and the only third party
Crash reporting is off by default. Nothing is ever sent unless you turn it on, during onboarding or later from Profile — until then, the crash reporting library is never started.
If you opt in, crash reports are delivered to Sentry (Functional Software, Inc.), a crash-reporting service that processes them on our behalf. This is the only third party that can receive data from the app. A crash report contains the technical trace of the crash, the app version, the iOS version, and the device model. It contains no analytics events, no user or advertising identifiers, no health data, no note contents, and no backup contents.
Before any report leaves your phone, an on-device scrubber redacts:
- Any text matching a blood-pressure shape — the pattern
\d{2,3}/\d{2,3}(for example,120/80). - Known field names:
systolic,diastolic,pulse,weight,bmi,medication,dosage. - The contents of any free-text note field.
You can turn crash reporting off at any time from Profile.
Reminders on your lock screen
Reminder notifications are written so that the surface visible on your lock screen never contains a blood pressure value, a dose amount, or any other health number. Pro users can additionally enable Discreet mode, which keeps the notification body fully generic too.
Purchases
The Pro purchase is processed by Apple through the App Store and tied to your Apple Account. Apple handles the payment; attensio never receives your name, address, or payment details.
Deleting your data
Your data is kept on your device until you delete it — there is no attensio copy to ask us to erase.
- Delete an individual reading from its entry sheet.
- Erase everything the app holds with the factory reset in Profile.
- Readings that live in Apple Health are managed (and deleted) in the Health app.
- The encrypted backup file lives in your iCloud Documents; turning backup off and removing the file deletes it. Deleting the app from your phone removes all of its on-device data.
Children
attensio is made for adults tracking their blood pressure, typically on a doctor’s advice. It is not directed at children, and we do not knowingly collect personal data from anyone under 13 — the app collects none from anyone at all.
Your rights
Privacy laws such as the GDPR and CCPA give you rights over personal data an organization holds about you. attensio’s design answers most of them directly: we hold no personal data about you, so access, correction, deletion, and portability are all in your hands, on your device — including the CSV and PDF exports for portability. If you believe we hold any personal data about you (for example, an email you sent to support), write to [email protected] and we will resolve it.
This website
This site sets no cookies, runs no analytics, loads no third-party scripts or fonts, and makes no external requests — everything the page loads is served from our own origin. The site is delivered by our hosting provider, Render, whose servers — like any web host — process the IP address of each request in order to serve the page. We receive no analytics about your visit and make no attempt to identify you.
Changes to this policy
If we change how the app handles data, we will update this policy and its “Last updated” date before the change ships. Substantive changes — such as a new data recipient — will also be called out in the App Store release notes for that version.
Contact
Questions about privacy? Email [email protected].