Privacy Policy
Last updated: September 26, 2026
Orbit ("we", "the app") turns your activity, sleep and food data into a daily meal, workout and sleep plan. This policy explains what we collect, why, who processes it, and the choices you have.
What we collect
| Data | Where it comes from | Why |
|---|---|---|
| Email address, name (optional), password (stored hashed) | You, when you create an account | To sign you in |
| Sex, age, height, weight, activity level, goal, calorie and macro targets | You, during setup | To calculate and show your targets |
| Daily health summaries: steps, active calories, resting heart rate, heart rate variability, sleep duration and stages, workouts | Apple Health (iPhone) or Health Connect (Android), only for the data types you allow | To build your workout and sleep suggestions and show your trends |
| Food log entries, meal groupings and meal photos | You, when you log food | To track what you've eaten against your targets |
| Weigh-ins you log (date and weight) | You | To show your weight progress and keep your targets current |
| Workouts you log by hand (type, time, duration, optional distance and calories) | You | To count them in your plan, trends and achievements |
| Achievements you've unlocked, and a count of workouts you added to your calendar | The app | To show your badges and progress |
| Daily plans the app generates | The app | To show and keep your plan for the day |
| Period days and flow (optional, only if you turn on cycle tracking) | Apple Health / Health Connect, or days you log in the app | To show your cycle phase and next period, and to adjust your scores for normal changes across your cycle |
| Daily screen time totals (optional, only if you turn on screen time insights) | iPhone Screen Time (with your permission), Android usage access, or totals you enter | To compare your phone use with your sleep, steps and HRV |
Calendar (optional). If you turn on "Suggest workout times from my calendar", the app reads the calendars on your phone to find free time for a workout. This happens only on your device: event titles, attendees, locations and notes are never uploaded or stored by us. When you ask the in-app coach about timing, it receives only today's busy time ranges (for example "9:00–10:50 AM"), with no event details. If you tap "Add", the app creates a workout event in your calendar.
Cycle tracking (optional). Off unless you turn it on. We store only which days were period days and the flow level, never notes, symptoms or sexual activity. Predictions are estimates and not for contraception. You can delete all cycle data at any time in Profile › Cycle.
Screen time (optional). Off unless you turn it on. We store only daily totals (minutes per day and minutes after 10pm), never which apps or websites you used. On iPhone this uses Apple's Screen Time API: you allow access and choose what to count, and iOS only tells Orbit how many minutes have been used, never which apps. On Android this needs "Usage access". You can turn either off in Settings at any time.
WHOOP (optional). If you connect your WHOOP account, WHOOP shares your sleep (including stages), Recovery, Strain, HRV, resting heart rate, SpO2, skin temperature and workouts (including heart rate zones) with the app through WHOOP's official API. We store your WHOOP access tokens securely on our server (never in the app) and a daily summary of that data. Disconnecting in Profile revokes access at WHOOP and deletes the copied data.
Reminders (optional). Workout and bedtime reminders are scheduled on your phone only; nothing about them is sent to us.
Oura, Fitbit and Polar (optional). If you connect one of these accounts, it shares your sleep (including stages and sleep score), readiness or recovery, HRV, resting heart rate and workouts with the app through the company's official API. Fitbit data comes through the Google Health API, after you sign in with Google and choose what to share. As with WHOOP, access tokens stay on our server, and disconnecting deletes the copied data and (where the service supports it) revokes access.
We only read from Apple Health / Health Connect. We never write to them in the released app.
How your data is processed
- Supabase (our database and authentication provider) stores your account and the data above. Each record is only accessible to your own account.
- Google Gemini API: when you log a meal by photo, the photo is sent to Google's Gemini API to identify the food and estimate portions. We request that Google not store it, and it is not used to train Google's models under Google's paid API terms.
- Google Gemini API (coach): when you message the in-app coach, your messages and a summary of your day (goals, today's plan, recent steps/sleep/workouts, what you've eaten, busy time ranges if calendar suggestions are on, your cycle phase if cycle tracking is on, and daily screen time totals if screen time insights are on) are sent to Gemini to write a reply. No name, email or photos are included, and we request that Google not store it.
- WHOOP, Oura, Fitbit, Polar (only the ones you connect): the app requests your data from that company's API with your permission; we don't send them any of your other data.
- Resend: sends account emails (confirming your email address and resetting your password). It receives only your email address and the email's contents.
- USDA FoodData Central: food names (never photos or personal information) are sent to the USDA's public nutrition database to look up nutrition values.
We do not sell your data, share it with advertisers or data brokers, or use it for advertising.
Apple Health and Health Connect
Data from Apple Health and Health Connect is used only to provide the app's features (your plan, trends and recommendations). It is not used for advertising or marketing, not sold, and not shared with third parties except the service providers above that process it on our behalf.
Orbit's use of information received from Health Connect adheres to the Health Connect Permissions policy, including the Limited Use requirements.
Orbit's use and transfer of information received from Google APIs (including the Google Health API, used for Fitbit) adheres to the Google API Services User Data Policy, including the Limited Use requirements.
You can change what the app can read at any time in the Health app (iPhone: Settings › Health › Data Access & Devices) or the Health Connect app (Android: App permissions).
Retention and deletion
We keep your data while your account exists. You can delete your account at any time in the app (Profile › Delete account). This permanently deletes your account, profile, food log and meal photos, health summaries, weigh-ins, logged workouts, cycle data, screen time totals, wearable data and tokens, achievements and plans from our systems. Data stored in Apple Health or Health Connect on your phone is not affected.
Security
Data is encrypted in transit (HTTPS) and access is restricted to your own account by row-level security rules in our database.
Children
Orbit is not intended for children under 13 (or the minimum age in your country), and we don't knowingly collect their data.
Health disclaimer
The app provides general wellness suggestions, not medical advice. Talk to a healthcare professional before making significant changes to your diet or exercise.
Changes and contact
We'll update this page if our practices change and note the date above. Questions or requests: support@orbitrecovery.app