Legal

Privacy Policy

Metrya  ·  iOS Application  ·  Effective date: March 2026  ·  Last updated: March 2026

The short version
Contents
  1. Who we are
  2. Data we process — and where it stays
  3. Apple HealthKit data — local processing, AI sharing & prohibited uses
  4. Data Processing and Third-Party AI (BYOK)
  5. API key storage
  6. In-app purchases & RevenueCat
  7. What we do not collect
  8. Data retention & deletion
  9. Security
  10. Children's privacy
  11. Your rights (GDPR / CCPA)
  12. Changes to this policy
  13. Contact

1. Who we are

Metrya is an iOS application ("the App") developed and published on the Apple App Store by r6lab Radosław Jóżefowicz, a sole trader registered in Poland. References to "we", "us", or "our" in this policy refer to the developer and data controller identified below. References to "you" or "your" refer to you as a user of the App.

Data Controller (GDPR Article 13)

r6lab Radosław Józefowicz
ul. Akacjowa 3
55-003 Krzyków
Poland
EU VAT: PL9730929262
Email: radek@jozefowicz.dev

As a BYOK application with no backend data collection, we are not required to appoint a Data Protection Officer under Article 37 GDPR. For all privacy-related enquiries, contact us directly at the email address above.

2. Data we process — and where it stays

The App is architected to keep all data on your device. The table below summarises every category of data the App handles, where it is stored, and whether it ever leaves your device.

Data Stored where Leaves device? Purpose
Apple Health / HealthKit data HealthKit (read-only by App) Only to your AI provider AI analysis when you initiate a query
Session logs (sauna, cold plunge, etc.) Local device storage Only to your AI provider Enriching AI context (Pro feature)
Check-ins (energy, mood, stress) Local device storage Only to your AI provider Enriching AI context (Pro feature)
Events (supplements, caffeine, travel) Local device storage Only to your AI provider Enriching AI context (Pro feature)
Profile context (supplements list, equipment, food habits) Local device storage Only to your AI provider Enriching AI context (Pro feature)
AI Provider API key iOS Keychain (on-device) Never Authentication with AI provider
Preview usage counters Expo SecureStore (on-device) Never Tracking free-tier preview limits
Purchase receipt / entitlement RevenueCat SDK (see §6) To RevenueCat only Verifying Pro unlock status
Crash & diagnostic data Apple's systems (if opted in via iOS Settings) Apple only, if enabled App stability improvements

We do not collect analytics, usage statistics, or behavioural data of any kind. There are no third-party analytics SDKs in the App.

3. Apple HealthKit data

Metrya requests read-only access to your Apple Health data through Apple's HealthKit framework. This access is governed by Apple's strict HealthKit rules, which we comply with in full.

What we read

The App may read the following HealthKit data types, depending on what you have authorised in the iOS Health permissions dialogue:

Local processing — Dashboard & Biological Age

The Health Dashboard and Biological Age feature are computed entirely on your device. HealthKit data read for these features is processed locally in memory, never written to any remote server, and never stored outside of HealthKit itself. Metrya does not operate any servers or backend infrastructure. Your HealthKit data is never stored on Metrya servers or synced to iCloud by this App.

AI Advisor — data transmission disclosure

If you choose to use the AI Advisor feature, the App will format a relevant subset of your HealthKit data (and, for Pro subscribers, your manual logs and profile context) into a prompt and transmit it directly from your device to the AI provider whose API key you have entered (Anthropic, OpenAI, or Google). This transmission:

You may stop using the AI Advisor at any time; doing so stops all HealthKit data from being transmitted to any AI provider.

Prohibited uses — Apple HealthKit rules

Metrya does not use or disclose HealthKit data for advertising, marketing, or other use-based data mining purposes.

In full, HealthKit data obtained by Metrya is never used or disclosed for any of the following purposes:

How to revoke HealthKit access

You can revoke HealthKit access at any time via Settings → Privacy & Security → Health → Metrya. Revoking access immediately stops the App from reading any new health data. Existing data already processed locally or sent to an AI provider during a previous session cannot be recalled.

4. Data Processing and Third-Party AI

This section contains language required to comply with Apple's App Store privacy label requirements and HealthKit guidelines for Bring Your Own Key (BYOK) applications.

Metrya uses a Bring Your Own Key (BYOK) model. We do not operate backend servers or store your health data. However, to provide AI analysis, the app transmits your selected Apple Health data and manual logs directly from your device to the AI provider whose API key you have entered (e.g., Anthropic, OpenAI, or Google). This data is subject to the privacy policies of your chosen AI provider. We do not link this data to your identity, and we do not use it for tracking or advertising.

What this means in practice

When you send a query in the AI Advisor, the App packages the relevant portion of your Apple Health data (and, if you are a Pro subscriber, your manual logs and profile context) into a prompt and sends it as an API request directly from your device to the AI provider you have configured. This communication is between your device and the AI provider. We are not involved in, and do not have access to, the content of those requests.

Choosing your AI provider

The App currently supports the following AI providers. Before using any provider, you should review their privacy policy:

API usage (as opposed to consumer products) is generally subject to stricter data processing terms at these providers — for example, Anthropic's API does not use your prompts to train models by default. However, you are responsible for reviewing and accepting the terms of your chosen provider independently.

What data is sent to the AI provider

Only the data necessary to answer your query is included in each API request. The App does not send your entire HealthKit history in every request — it selects the relevant recent data (typically the last 7–30 days) based on the context of your question. For Pro users, relevant manual logs, session data, and profile context are appended to provide richer, more personalised responses.

5. API key storage

When you provide a third-party API key to use the AI Advisor, it is securely encrypted and stored locally on your device using the native iOS Keychain. Metrya cannot access, read, or recover this key.

The iOS Keychain is an encrypted, hardware-backed secure storage system provided by Apple. Keychain entries are protected by the device's hardware security module (Secure Enclave on supported devices), meaning the key is never exposed in plaintext outside of the secure enclave — not to Metrya, not to other apps, and not during backups. Your API key is:

You are responsible for keeping your API key secure. If you believe your API key has been compromised, revoke it immediately in your AI provider's dashboard and generate a new one.

6. In-app purchases & RevenueCat

The Pro upgrade is a one-time, non-consumable in-app purchase processed through Apple's App Store. To verify your entitlement status across app reinstalls, the App uses RevenueCat, a third-party purchase management SDK.

What RevenueCat receives

What RevenueCat does not receive

RevenueCat's privacy policy is available at revenuecat.com/privacy. All payment processing is handled entirely by Apple; we never see or store your payment information.

7. What we do not collect

To be explicit, the following data is never collected, processed, or stored by Metrya:

There are no advertising networks, behavioural analytics SDKs, or marketing trackers in the App.

8. Data retention & deletion

Because all data is stored locally on your device, you are in full control of retention and deletion:

We hold no data on our own servers and therefore there is nothing further for us to delete.

9. Security

The App is designed with a privacy-first, minimal-collection architecture. Specific security measures include:

While we take all reasonable precautions, no method of data transmission or storage is 100% secure. If you discover a security vulnerability, please disclose it responsibly to radek@jozefowicz.dev.

10. Children's privacy

Metrya is not directed at, and is not intended to be used by, children under the age of 13 (or the applicable age of digital consent in your jurisdiction). We do not knowingly collect any personal information from children. If you believe a child has used the App and provided data to an AI provider via the BYOK feature, please contact us and the relevant AI provider immediately.

11. Your rights

Because we do not collect or hold personal data on our servers, most data subject rights (access, correction, portability, erasure) are exercisable directly by you on your own device. Nonetheless, the following rights apply:

For users in the European Economic Area, UK, or Switzerland (GDPR)

The legal basis for processing (to the extent any processing occurs via RevenueCat) is the performance of a contract — specifically, verification that you have purchased the Pro upgrade you are entitled to use.

For California residents (CCPA / CPRA)

To exercise any privacy right, email radek@jozefowicz.dev. We will respond within 30 days.

12. Changes to this policy

We may update this Privacy Policy from time to time, for example when we add new features, integrate additional AI providers, or as required by law. Material changes will be communicated by updating the "Last updated" date at the top of this document. We encourage you to review this page periodically.

Continued use of the App after a change constitutes acceptance of the updated policy. If you do not agree with a material change, you should stop using the App and delete it from your device.

13. Contact

For any privacy-related questions, requests, or concerns, please contact us:

We aim to respond to all privacy enquiries within 30 days. For data deletion requests involving RevenueCat, allow up to 45 days for the third-party deletion to be confirmed.