Privacy Policy
Clear information about how OnGLP works, what you can expect, and the choices available to you.
This Privacy Policy explains how Klyne Labs, LLC, a Delaware limited liability company (“Klyne Labs,” “we,” “us,” or “our”), handles information when you use the OnGLP iOS app, identified by com.klynelabs.onglp, and this website.
OnGLP is a wellness and self-management app. We do not sell personal information or health information, and we do not use Apple Health data for advertising, marketing, or data mining.
Information you provide
- Account information: account identifiers and basic profile information when you sign in with Apple or Google.
- Profile and onboarding information: name or nickname, date of birth, sex, height, weight, goals, activity level, food preferences, allergies, disliked foods, GLP-1 status, medication name and schedule, health concerns, and side-effect concerns.
- Tracking information: meals, estimated nutrition, water, weight, medication events, injection sites, activity, side effects, notes, saved recipes, meal plans, goals, and app preferences.
- Content you choose for food analysis: photos, camera images, menu or nutrition-label images, barcodes, written meal descriptions, and voice recordings.
- Support information: your email address, message, attachments, and any app or device details you choose to send to us.
Apple Health
If you choose to connect Apple Health, OnGLP requests read-only access to step count, active energy burned, and body mass. Apple Health permission is optional, you may grant only some categories, and you may change access at any time in iOS Settings or the Health app.
OnGLP uses authorized Apple Health data to update your activity, calorie, and weight progress. We do not write data to Apple Health. Authorized values may be stored with your OnGLP account so your history and current progress remain available in the app.
We do not use information obtained through HealthKit for advertising, marketing, use-based data mining, or sale to data brokers.
How we use information
- Provide onboarding, personalized goals, tracking, progress views, reminders, and account synchronization.
- Analyze food content and generate nutrition estimates, meal suggestions, and recipe recommendations that reflect the preferences you provide.
- Generate a short daily action from your latest log, relevant tracking history, goals, and recent daily-action history.
- Process purchases, restore subscription access, prevent abuse, secure the service, troubleshoot failures, and respond to support or privacy requests.
- Comply with applicable law and enforce our Terms of Service.
AI daily insight, food analysis, and recipe providers
After a tracking change reaches your account, OnGLP may decide whether your current Daily Insight should stay or be replaced. On supported Apple Intelligence devices, OnGLP first asks an Apple Foundation Model that runs on Private Cloud Compute. If Apple reports that the device, service, network, or daily quota is not available, OnGLP uses OpenAI as the fallback. The request can include the new action; relevant profile goals and preferences; medication, meal, water, weight, activity, side-effect, and Apple Health-derived tracking values; the prior seven days of Daily Insight history; all tracking events from the prior seven days; daily summaries for the relevant action from the prior month; weekly summaries for the next three months; and older monthly summaries. OnGLP does not send your name, email address, account identifier, photos, audio, or free-text notes for Daily Insight generation. Device model and operating-system details used to check Apple model eligibility stay on the device. The server receives only a fixed fallback reason when OpenAI is needed. The result is general wellness guidance, not medical advice, and it cannot safely diagnose a condition or change a medication or dose.
When you choose an AI food feature, OnGLP sends the content needed for that request—such as an image, voice recording or transcript, or written description—to our authenticated server functions. For personalization, the request may also include only your primary goals, dietary preference, allergy exclusions, disliked foods, daily calorie goal, and daily protein goal. Those functions use OpenAI services to transcribe or analyze the request. They do not send your name, date of birth, sex, medication, body measurements, health concerns, or tracking history to OpenAI for food analysis. Raw images and audio are processed for the request and are not intentionally stored in the OnGLP database. The analysis result remains in app memory only while you review it; OnGLP does not keep a separate analysis-history record. If you explicitly log a meal or save a reusable food, the visible food and nutrition fields needed for that item are stored with your account.
When you scan a barcode, OnGLP sends the barcode from our authenticated server to Open Food Facts and requests only the product identity, serving, ingredient, category, nutrition, and Nutri-Score fields needed to show the result. Barcode lookup does not use OpenAI when a product is found.
Recipe requests may send dietary preferences, allergies, disliked foods, goals, and nutrition targets to our server, which can request recipe content from Spoonacular. Recipe providers may return third-party recipe images, source names, and source links.
Automated results can be incomplete or inaccurate. Do not rely on them to identify allergens or make medical decisions.
Service providers and disclosures
These providers may process device, network, account, request, and diagnostic information needed to operate their services. We do not authorize them to use Apple Health data for advertising.
PostHog uses a random installation analytics identifier rather than your OnGLP account identifier. OnGLP never links it to your account, email address, subscription customer ID, or health record. Help improve OnGLP controls optional Sentry crash reporting, and OnGLP does not assign a user identifier to Sentry reports. Previously received anonymous product events and scrubbed diagnostic records remain subject to each provider’s configured retention and deletion capabilities; because those records are not linked to your OnGLP account, account deletion cannot reliably identify each previously received record for individual erasure.
- Supabase provides authentication, database storage, server functions, and related infrastructure.
- Apple processes eligible Daily Insight requests through Private Cloud Compute. Apple states that request data is used only to fulfill the request and is not stored.
- OpenAI processes the limited tracking context only when Daily Insight needs a fallback. OpenAI also processes content submitted to AI food-analysis features on our behalf.
- Open Food Facts provides product and nutrition information when you choose barcode lookup.
- Spoonacular provides recipe and nutrition content for recipe discovery.
- RevenueCat and Apple process subscription products, purchase status, trial eligibility, and restoration. Klyne Labs does not receive your full payment-card details.
- Expo Push Service processes an installation-scoped push token and generic notification delivery information when you enable notifications. OnGLP does not put medication, weight, meal, or other health details in remote lock-screen notification text.
- PostHog processes a small allowlist of product-usage events from first launch of the public App Store app so we can measure onboarding completion and feature use. Product analytics stays off in local development, simulator, ad-hoc, and TestFlight installations. Sentry processes scrubbed crash reports only if you turn on “Help improve OnGLP.” This data does not include your health profile, food logs, free-text entries, screenshots, session replay, or OnGLP account identifier.
- Apple and Google process optional account sign-in under their own privacy terms.
- Cloudflare delivers and protects this website and may process ordinary request and security logs.
- We may disclose information when required by law, to protect users or the service, or as part of a corporate transaction subject to appropriate safeguards.
Information stored on your device
OnGLP stores onboarding progress, session information, cached product data, settings, and pending or recent activity in app-controlled storage on your device. Sensitive profile, onboarding, session, and product snapshots in app-controlled storage are encrypted using keys kept in the iOS secure credential store. iOS and your chosen backup settings may govern device backups. Notifications are scheduled through iOS using the preferences you select.
Permissions
- Camera: used only when you choose to scan food, a menu, barcode, or nutrition label.
- Photos: used only to select food or menu images you choose for analysis.
- Microphone: used only when you choose to record a meal description.
- Notifications: used for reminders you configure and app-status messages.
- Apple Health: optional read-only access to steps, active energy, and body mass as described above.
- Face ID or device authentication: may be used by iOS to protect locally stored credentials when enabled.
Subscriptions
RevenueCat receives an app user identifier and purchase information needed to determine your OnGLP Pro entitlement. Apple determines introductory-offer eligibility, processes payment, and manages renewals, cancellation, billing retry, and refunds. We use this information only to provide and support subscription access.
Retention
We retain account and tracking information while your account is active so the app can provide history and synchronization. We may keep limited security, transaction, support, and legal records for as long as reasonably necessary for fraud prevention, accounting, dispute resolution, or legal obligations.
Raw food-analysis images and audio are sent only for the analysis you request, are not intentionally retained in the OnGLP database, and temporary processed media is removed from the device after the request. Unsaved analysis results remain only for the current in-app review session. Food and nutrition fields you explicitly log as a meal may remain in meal history, and foods you explicitly save may remain in your saved-food library. External processors may keep limited logs or content for security and service operation according to their contracts and policies.
OnGLP stores the current Daily Insight with your account. It keeps replaced Daily Insight text and its minimal processing-event record for approximately eight days, then removes them. The underlying tracking history follows the account retention choices described in this policy.
Your choices and deletion
- You can decline camera, photo, microphone, notification, and Apple Health permissions and continue using features that do not require them.
- You can turn Help improve OnGLP on or off at any time in Profile > Settings > About. It controls optional scrubbed crash reporting. Anonymous product analytics uses only the limited event categories described in this policy.
- You can edit or delete many tracking entries in the app and disconnect Apple Health in iOS Settings.
- You can export a portable JSON copy of your profile, tracking logs, reminders, app preferences, and the subscription-access metadata OnGLP controls from Profile > Settings > Account > Export My Data.
- You can delete your OnGLP account and associated app data from Profile > Settings > Account > Delete Account. OnGLP first requests deletion of the corresponding RevenueCat customer and any configured identified analytics person, then deletes the Supabase account and app database rows, removes its completed deletion job, and clears app-controlled local encrypted data and keys. If a provider is temporarily unavailable, the app keeps your account available, tells you deletion is pending, and lets you retry instead of claiming deletion completed. You may also email us if you cannot access the app.
- Deleting a RevenueCat customer or your OnGLP account does not cancel an App Store subscription. Manage or cancel it in Apple ID subscription settings. Apple and limited transaction, security, support, legal, and already-ingested scrubbed diagnostic records may remain under provider or legal retention requirements.
Security and international processing
We use access controls, encrypted network connections, row-level database policies, secure credential storage, and other reasonable safeguards. No system is completely secure.
Our service providers may process information in the United States and other countries. Privacy laws in those locations may differ from those where you live.
Children
OnGLP is not directed to children under 13, and we do not knowingly collect personal information from a child under 13. If you believe a child has provided information, contact us so we can investigate and delete it where required.
Changes
We may update this policy when our features, providers, or legal obligations change. We will post the updated policy and effective date here and provide additional notice when appropriate.
Contact
For privacy questions, rights requests, or deletion help, email anian@klynelabs.com or visit https://onglp.app/support.