hAiity

Privacy Policy

For the iOS app hAiity and this site · Last updated: 14 August 2026

In short: hAiity has no server of its own and no account. Your habits live on your device and — if you are signed into iCloud — in your own private iCloud database. We collect nothing, we see nothing, we do not track. There are no analytics SDKs and no ads. The only thing that ever reaches us is what you send yourself — a problem report, for instance (section 9).

1. Who is responsible, and contact

hAiity is a private, non-commercial project by an individual and part of the aiity family. Privacy questions go to getaiityapp+hAiity@gmail.com; the full provider details are in the imprint on aiity.de.

2. No accounts, no trackers

There is no registration and no login. The app sends us nothing on its own: no usage statistics, no telemetry, no automatic crash reports. Nothing is tracked, no analytics or advertising SDKs are built in, and no data is sold or handed to third parties. The app's privacy manifest declares exactly that: no tracking, no collected data types. The one route to us is the one you open yourself: the voluntary problem report in section 9.

3. Where your data lives

Everything you create in hAiity — habits, names, icons, colours, check-ins, notes and settings — sits in one file inside your iPhone's app group container. The widget reads that same file. If the device is signed into iCloud, hAiity also mirrors that file as a single record in the private CloudKit database of your Apple ID. That database is yours; we have no access to it and run no server that could see any of it. Apple's privacy terms apply to it.

Signed out of iCloud, or offline, the app keeps working exactly the same — the status row under “More” says so instead of pretending. Delete the app and the local data is gone; the iCloud record can be removed through your device's iCloud storage settings.

4. Calendar (optional)

Only when you switch on the calendar mirror does iOS ask for calendar access. hAiity then creates a hAiity calendar of its own and writes only your own habit events into it. Your other calendars are neither changed nor read for anything, and no calendar data is sent to us or to anyone else. You can revoke the permission in iOS Settings at any time.

5. Notifications (local)

Reminders and the evening summary are scheduled by your device as local notifications. There is no push service and no device token on our side. You are asked for permission only at the moment you switch a reminder on — never at launch.

6. Sign in with Apple (optional, first name only)

You can sign in with Apple so the app can address you by name. Only the name is requested, no email address. The first name stays on the device and is never transmitted anywhere; no account is created by it. A nickname you type yourself does the same job without signing in at all, and you can delete the name again whenever you want.

Alongside the first name, the app stores the opaque identifier Apple hands over with that sign-in (a string like 001234.abcd… that Apple issues per developer and Apple ID; no person can be read out of it). It stays on the device, is never transmitted anywhere, and does not appear in a problem report either. It answers exactly one question: whether this is the developer's own device, the one where the app's hidden diagnostics area opens. Remove the name and it is deleted with it.

7. Siri and Shortcuts

hAiity's shortcuts run on the device and work on the same local file. If you talk to Siri, Apple processes the voice input under its own terms — none of it reaches us.

8. Buying hAiity Pro

The purchase runs entirely through the App Store. Apple handles the payment; we receive no payment details, no address and no Apple ID. Inside the app only an “unlocked” flag is stored locally. “Restore” simply asks Apple about that purchase again.

9. Export, sharing and reporting a problem

The JSON export and the share card leave your device only when you send them yourself — and then only to wherever you send them.

The same goes for the problem report: shake your iPhone and hAiity opens a form. You write what happened, and right below it you can expand the full technical text that would go along — app and iOS version, build, device model (such as iPhone18,2), the number of habits, check-ins and scheduled notifications, file size, iCloud and calendar state, purchase status. Habit names, notes, emoji, values, your name or nickname are not in it; the app cannot even technically write them into that report. Nothing is sent automatically: the text lands in your device's mail composer (or, without a mail account, in the share dialog) and you tap Send yourself — from your own address, which we therefore see. The report goes to getaiityapp+hAiity@gmail.com and is used only to understand the problem and, if needed, to reply to you. If you would rather not be asked at all: “More” → turn off Shake to report (also possible straight from the form).

10. This website

This page is static, sets no cookies and loads no external fonts, scripts or analytics. When you request it, the server processes technically necessary connection data (IP address, time, requested file, user agent) to deliver and secure the page; the legal basis is Art. 6(1)(f) GDPR. This data is not combined into profiles.

11. Your rights

Under the GDPR you have the rights of access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20) and objection (Art. 21), plus the right to lodge a complaint with a supervisory authority (Art. 77). In practice: we store no personal data about you, so we can neither disclose nor delete anything — we simply do not have it. Your data sits on your device and in your own iCloud, both of which you control. The one exception is a problem report you sent us yourself (section 9): it then sits in our mailbox as an email. Write to us and we will delete it.

12. Changes

If the way the app works changes, this policy is updated. The version published here, with the date shown above, is the one that applies.

← Back to the start page