Privacy Policy
Last updated: 24 August 2026
LifeLog is a personal timeline app. It records where you go and what you're doing, entirely for your own use. This policy explains exactly what LifeLog collects, why, and — most importantly — what happens to it.
Everything LifeLog records stays on your iPhone. There is no LifeLog server. Nothing is uploaded, synced, sold, or shared with advertisers or analytics companies. LifeLog does not track you across other apps or websites.
All of the above is stored in a local database inside the LifeLog app on your device, protected by iOS's own file encryption. LifeLog has no backend, no account system, and no cloud sync — there is nowhere else for this data to go.
To turn a raw location into a place name ("Home", a café, an office), LifeLog asks Apple Maps to look up nearby places for a coordinate you visited. That lookup is handled by Apple's MapKit framework under Apple's own Maps & privacy terms — LifeLog's developer never sees or receives this data. No other network requests are made by LifeLog.
You can create a local backup file from within LifeLog at any time. The file is a readable JSON snapshot of your recorded data. It is created on your device and stays there unless you choose to save or send it somewhere — for example, using iOS's own Share Sheet to save it to Files, iCloud Drive, or email it to yourself. LifeLog never uploads a backup automatically.
LifeLog keeps its own temporary sharing copy for up to 24 hours, and iOS may remove it sooner. A copy you save or share is outside LifeLog's control: it follows the retention, access, and deletion rules of the service or person that receives it. LifeLog cannot recall or delete that copy, and it does not add a password or its own portable-file encryption after you share it.
LifeLog's Diagnostics screen can generate a troubleshooting report for your own use — for example, to attach to a support email. By default, that report is redacted: it contains only aggregate timings, counts, the app version, and your device/OS class. It never includes coordinates, place names, notes, or Health values.
An explicit "Include detailed local evidence" toggle, which you must turn on yourself, opts into a more detailed report that also lists the retained events' own text. That text stays generic except for a few location-resolution lines, which can name places or distances if you've separately turned on detailed location diagnostics in Settings. This detailed mode is meant only for troubleshooting a problem you're actively reporting.
Either way, nothing leaves your iPhone automatically — LifeLog has no server. A report is only shared if you choose to copy or send it yourself, and a temporary copy of it is deleted from the device automatically after 24 hours even if you never share it.
Because everything lives only on your device, you are always in complete control of it. You can erase all recorded data from LifeLog's Settings at any time. Deleting the app deletes everything LifeLog ever recorded, since there is no server copy to separately remove.
You can revoke Location, Motion & Fitness, or Health access at any time from iOS Settings → Privacy & Security (or Settings → Health → Data Access & Devices → LifeLog for Health specifically). LifeLog keeps working with whatever access remains; it never re-prompts beyond what iOS itself allows.
LifeLog contains no advertising, no analytics SDKs, and no third-party tracking of any kind. It does not use the Advertising Identifier (IDFA) and does not track you across apps or websites.
LifeLog is not directed at children and is not knowingly used to collect data from anyone under 13.
If LifeLog's data practices ever change, this page will be updated and the "last updated" date above will change accordingly.
Questions about this policy can be sent to jorvanus@gmail.com.