Privacy Policy
How Volyia handles your data.
Last updated: August 16, 2026 · Effective: August 16, 2026
TL;DR
- Volyia is on-device first. Your alarm settings and many routine records stay on your phone. Account data can sync when you sign in.
- On supported iPhones, Apple Health sleep access is optional and read only. Connecting Apple Health does not allow cloud AI sharing.
- Volyia Plus cloud AI requires a connected account and a separate choice. If you allow it, a compact routine and wellness summary is sent to Anthropic to create the insight. Apple Health sleep requires an additional, separate choice.
- If you sign in, that data syncs to our Supabase backend so it survives reinstalls and follows you to a new device.
- We never sell your data or use it for behavioral advertising. On iOS, a standard Apple AdServices attribution token may be sent to RevenueCat only to measure Apple Ads campaign results. This does not use IDFA or include your health or routine data.
- PostHog product events and scrubbed Sentry crash reports are off by default. You can allow or stop optional diagnostics in the app at any time. Session replay, blanket autocapture, and GeoIP enrichment are disabled.
- If you send a business or partnership inquiry, we use the contact and organization information you provide only to evaluate and respond to that inquiry. It does not subscribe you to marketing email.
- You can delete your Volyia account and synced application data, or erase all local data as a guest, from the You tab at any time. Store subscriptions must be canceled separately.
This Privacy Policy explains what data Volyia collects, why, and what
choices you have. We've tried to write it like a human, not a lawyer.
Volyia is operated by Goshen Consulting LLC ("we", "us").
Contact: privacy@goshenconsultingllc.com
1. What data we collect
1.1 Data you give us during onboarding
The onboarding flow can ask about your sleep/wake bands, meal regularity,
hydration, movement, mood baseline, goals, constraints, and pace. This data
stays on your device until you sign in.
1.2 Data you create while using Volyia
- Mood entries — the mood you tap on the Today screen or after the Bedtime ritual, plus optional reasons. On-device; synced to our backend if signed in.
- Smart Wake settings — wake time, alarm sound choice, selected wake mode, and mode settings. On-device only.
- Routine and check-in records — selected day type, three-step routines, Momentum activity, hydration, movement, meals, mood, sleep check-ins, time off, and related preferences. These records are primarily stored on-device; supported account fields can sync when you sign in.
- Notification preferences — the reminders and channels you enable. On-device only.
1.3 Data we collect when you sign in
When you sign in through Apple, Google, or email magic link:
- Your email address — used to identify your account and to send the magic-link code.
- A Supabase auth token — stored in your device's local storage, used to keep you signed in.
- Your mood entries and onboarding profile — synced to your account so they follow you across devices.
We do not receive your Apple or Google password. Depending on the method you choose, the provider can supply an email address, name, and stable account identifier. Apple may provide a private relay email.
1.4 Optional Apple Health sleep data
On supported iPhones, you can choose to connect Apple Health. Volyia requests
read access only to Sleep Analysis. We do not request permission
to write data to Apple Health.
- What Volyia reads — sleep records needed to calculate nightly sleep summaries.
- What Volyia calculates — sleep date, total time asleep, deep sleep minutes, and REM sleep minutes when those stages are available.
- Local cache — recent nightly summaries may be stored on your device so the app can show trends and refresh insights.
- Local use first — connecting Apple Health lets Volyia show permitted sleep summaries on your device. It does not by itself allow those summaries to be sent to a cloud AI provider.
- Separate Apple Health-to-AI choice — after you separately enable cloud AI coaching, you may also choose whether nightly sleep duration, deep-sleep minutes, and REM minutes can be included in requests to Anthropic. Refusing this choice does not disable local Apple Health use.
- Identity minimization — the compact wellness snapshot does not include your name or email address. It may include dates and wellness patterns associated with your authenticated request.
Apple Health data is never used for advertising. We do not sell it, share it with data brokers, or use it to determine eligibility for employment, insurance, credit, housing, or other services.
1.5 Data Volyia does not collect
- We do not collect contacts, photos, files, microphone audio, or precise location.
- We do not access Apple Health data other than the optional Sleep Analysis records described above.
- We do not connect to Google Fit or other health tracking services unless this policy is updated before that feature becomes available.
- We do not use advertising identifiers (IDFA, GAID).
- We do not track you across other apps or websites.
1.6 Apple Ads attribution data
On supported iPhones, Volyia may collect Apple's standard AdServices attribution token and send it to RevenueCat. RevenueCat uses the short-lived token to request campaign attribution data from Apple. This helps us understand whether an eligible App Store download, trial, or subscription resulted from an Apple Ads campaign.
- The standard attribution path does not use IDFA and does not require App Tracking Transparency permission.
- It does not include your Apple Health, mood, hydration, alarm, sleep, or other routine data.
- We use it only for campaign measurement, not to build a behavioral advertising profile or track you across other apps or websites.
1.7 Product analytics data
Optional diagnostics are off by default. If you turn on Help improve Volyia, Volyia uses PostHog to understand whether core app and subscription features work and Sentry to receive scrubbed crash reports. You can turn this off again at any time.
- Interaction events — examples include app lifecycle activity, paywall views, selected subscription plan, purchase and restore outcomes, notification opens, Night Ritual use, selected mood category, hydration cup count and goal, and review-banner taps.
- Event context — app version, build number, operating system, device type, event time, session identifier, and a pseudonymous analytics identifier.
- Signed-in identity — after sign-in, analytics may be associated with the opaque Supabase account UUID. We do not send your email address to PostHog through this analytics path.
- No location enrichment — Volyia disables PostHog GeoIP enrichment and does not request GPS for diagnostics.
- Excluded data — this analytics path does not send Apple Health records, alarm times, free-form mood reasons, meal names, passwords, authentication tokens, or session recordings.
1.8 Website business and partnership inquiries
If you use the partnership form on our website, we collect the business information you choose to provide: your name, work email, organization, optional website, partnership type, country or region, audience, optional audience-size and timing ranges, your message, and any source tags attached to the page link.
- Why we use it — to evaluate the inquiry, prevent spam, respond, and keep a record of the business conversation.
- How it is handled — Netlify processes the form submission as our website hosting provider. Authorized Volyia operators can review the submission.
- No automatic marketing enrollment — submitting the form does not add the contact to a newsletter or consumer marketing list.
- Separate from app data — the form does not give an organization access to a person's Volyia routine, sleep, mood, meal, movement, hydration, alarm, AI insight, subscription, attendance, grade, or work-performance information.
1.9 Permissions Volyia requests
- Notifications — to send Smart Wake alarms and daily nudges you opted into.
- Exact alarm / full-screen intent (Android) — required for Smart Wake to fire at the precise time you set, like a real alarm clock.
- Motion / Activity Recognition — optional. Used in step-based wake modes. Never sent off-device.
- Apple Health Sleep Analysis (iOS) — optional and read only. Used locally to show sleep summaries; inclusion in cloud AI requires a separate in-app choice.
- Wake lock / foreground service (Android) — keeps Smart Wake reliable when the phone is dozing.
2. How we use your data
We use your data only to:
- Run Volyia for you — show your patterns, fire your alarms, sync your moods across devices, personalize Today/Insights copy based on your own history.
- Generate requested Volyia Plus insights — after you connect an account and allow cloud AI coaching, process a compact wellness snapshot through Supabase and Anthropic. Apple Health information is included only if you allow that separately.
- Keep Volyia working — if you allow optional diagnostics, diagnose crashes via Sentry after sensitive fields are scrubbed.
- Improve product and subscription flows — if you allow optional diagnostics, use limited PostHog events to understand feature use, paywall progression, purchase outcomes, and app reliability.
- Measure Apple Ads — connect eligible iOS installs and subscription outcomes to Apple Ads campaign metadata through Apple's standard AdServices attribution and RevenueCat.
- Communicate with you — only the magic-link sign-in code, sent via Resend on our behalf. We do not send marketing email from your account record.
We never use your data to: sell to data brokers, advertisers, or insurers; build a profile to target ads; or make automated decisions about employment, insurance, credit, housing, or eligibility for services.
3. Who we share data with
3.1 Service providers we use
| Provider | What they receive | Why |
| Supabase (Postgres + Auth) |
After sign-in: your email, mood entries, supported profile data, auth tokens, and—only after AI consent—a compact wellness snapshot for requested processing |
Stores your account, syncs supported data, and securely routes requested AI insights |
| Anthropic |
Only after cloud AI consent: a compact wellness snapshot that omits your name and email. Apple Health sleep summaries require a separate choice |
Generates the Volyia Plus AI insight, weekly badge, or monthly report you request |
| Resend |
Your email + magic-link code |
Delivers the sign-in code |
| Sentry |
Only if you allow optional diagnostics: scrubbed crash reports + device metadata (OS, app version) |
Diagnoses bugs. Personal data is scrubbed before sending |
| PostHog |
Only if you allow optional diagnostics: named product-interaction events, limited event properties, app/device metadata, and pseudonymous identifiers. GeoIP enrichment is disabled |
Measures feature use, subscription-flow performance, and product reliability. Session replay and blanket autocapture are disabled |
| RevenueCat |
An anonymous app user identifier, purchase and subscription status, and on iOS the standard Apple AdServices attribution token |
Manages Volyia Plus access and requests Apple Ads campaign attribution data from Apple |
| Google Sign-In |
A short-lived ID token only when you choose Google |
Verifies your Google identity |
| Expo / EAS |
App update channel only |
Delivers app updates |
| Netlify |
Website form fields and basic submission metadata when you choose to submit a waitlist or partnership inquiry |
Hosts the site, receives the form, and helps prevent spam and abuse |
These providers process data to deliver their contracted services to Volyia. Their own privacy and security terms also apply to their processing.
3.2 We do not share with anyone else
We do not sell, rent, or trade your data. We do not share personal data for targeted or behavioral advertising. The limited Apple Ads campaign measurement described above is used only for attribution and subscription performance reporting. We do not allow third parties to build behavioral profiles of you using Volyia data.
3.3 Legal disclosures
If we receive a legally binding request from law enforcement (subpoena, court order), we may disclose the minimum data required by that request. We will notify you first unless legally prohibited.
4. Where data is stored
- On your device — by default. Your unsynced data lives in your device's local storage.
- Apple Health — raw sleep records remain in Apple's HealthKit store. Volyia reads the records only after you grant permission and calculates recent nightly summaries for local use.
- Supabase — if you sign in, in our project hosted in us-west-1 (United States).
- Anthropic — receives a compact wellness snapshot only after you allow cloud AI coaching and request a Volyia Plus AI feature.
- Sentry — receives scrubbed crash reports only if you allow optional diagnostics.
- PostHog — receives limited product events only if you allow optional diagnostics.
- RevenueCat — subscription records and Apple Ads campaign attribution data are processed through RevenueCat's services.
These providers may process data in the United States. Where required, we rely on appropriate legal safeguards and your applicable choices for these transfers.
5. How long we keep data
- On-device data — kept until you use Erase all Volyia data, delete your account and data, clear the app's storage, or delete the app. Recent Apple Health sleep summaries may include up to 90 nights.
- AI results on your device — daily, weekly, and monthly results may be cached locally for the relevant period to avoid unnecessary repeat processing.
- AI request processing — Volyia does not intentionally add the compact AI request snapshot to your application database. Supabase and Anthropic may retain operational or security records according to their applicable service terms.
- Account data on Supabase — kept while your account is active. When you tap Delete account (You → Account), synced application rows associated with your user ID are deleted and your auth user is removed. This is irreversible.
- Sentry crash reports — when optional diagnostics are enabled, retained according to Volyia's configured Sentry retention, then deleted.
- PostHog analytics — when optional diagnostics are enabled, retained according to Volyia's configured analytics retention and PostHog's applicable service terms. You may request deletion using the contact below.
- Subscription and attribution records — retained as needed to administer subscriptions, maintain transaction records, prevent fraud, and measure campaign performance, subject to RevenueCat's applicable service terms and legal requirements.
- Business and partnership inquiries — normally kept for up to 24 months after the last meaningful contact so we can understand the conversation and avoid duplicate outreach. We may keep a shorter or longer record when required for security, legal, tax, contract, or dispute purposes. You may request deletion using the privacy contact below.
6. Your rights and choices
Wherever you live, you can:
- Access the data you've created — visible directly in the app (Today, Day, Insights, You).
- Export supported account data — use Export my data in the app or email privacy@goshenconsultingllc.com for a broader request.
- Delete or erase — signed-in users can choose Delete account and data; guests can choose Erase all Volyia data. Both controls are at the bottom of the You tab. To request deletion of associated diagnostics records, email us.
- Control cloud AI — allow or withdraw cloud AI coaching in You → Privacy controls. Withdrawing removes cached AI results from the device.
- Control Apple Health-to-AI sharing — connecting Apple Health and sharing its summaries with Anthropic are separate choices. You can stop AI sharing without disconnecting local Health access.
- Control diagnostics — optional PostHog and Sentry diagnostics are off by default and can be allowed or stopped in You → Privacy controls.
- Disable notifications — Settings → Apps → Volyia → Notifications (Android) or Settings → Notifications → Volyia (iOS).
- Control Apple Health access — connecting is optional. You can deny access or revoke it at any time in Apple Health or iOS Settings. Revoking access prevents future refreshes but does not delete records held by Apple Health.
- Revoke Google Sign-In at any time via your Google account's Security → Third-party access page.
Residents of the EU, UK, California, and similar jurisdictions
You additionally have the right to rectify inaccurate data, restrict processing, withdraw consent, object to processing, and lodge a complaint with your local data protection authority. Email privacy@goshenconsultingllc.com and we'll honor these rights within 30 days.
7. Children
Volyia is intended for adults and is not directed to children. We do not knowingly collect personal data from a child. If you believe a child has provided data to us, email privacy@goshenconsultingllc.com and we will investigate and delete it where required.
8. Security
- Auth tokens are stored in the app's private local storage and protected by the device's operating-system security controls.
- Network traffic to Supabase, Anthropic, Sentry, PostHog, Resend, and RevenueCat uses encrypted connections.
- Supabase Row-Level Security ensures each user can only read/write their own rows.
- Sentry receives crash reports with a
beforeSend scrubber that removes email, mood values, mood reasons, and any field whose key contains "token" or "password".
No system is perfectly secure. We follow industry-standard practices but cannot guarantee absolute security.
9. Changes to this policy
We may update this policy when the product, service providers, or legal requirements change. Material changes will be announced through an in-app notice, email, or another appropriate method where required. Changes apply prospectively, and we will request consent when applicable law requires it. The "Last updated" date reflects the most recent revision.
10. Contact
Questions, requests, or complaints: