Privacy Policy
Dial is built for people working on something personal, so we designed the app to know as little about you as possible. This page explains, plainly, what stays on your device, what reaches our servers, and why.
The short version: your health data, weights, meals, calories, journal entries, training logs, lives on your device and is not stored on our servers. Our servers only ever learn that you did something, never the numbers. Even coach chat stays on your device, see "Coach chat" below.
What stays on your device
Dial is local-first. The content of your day-to-day use is stored on your own device and is not transmitted to us:
- Weigh-ins and body measurements
- Meals, food logs, and calorie information
- Journal entries and moods
- Workouts, cardio, and training logs
- Your plan, its settings, and every adjustment you make to it
If you delete the app (or clear your browser's site data on the web version), this data is gone with it. We could not recover it for you, because we never had it.
What we do collect
Account information
When you sign in (in the native app), we store the basics needed to run an account: your email address and a user ID. Accounts and data are hosted with Supabase, our authentication and database provider.
Occurrence-only usage events
To understand engagement, and to know when a gentle check-in might help, the app records that certain actions happened and when. For example: a weigh-in was logged, a workout was logged, a meal was logged, the app was opened. These events carry a name, a timestamp, and the platform (iOS, Android, or web). They never include the content or the values: not the weight, not the calories, not the mood, not a word of a journal entry.
We use these events for product improvement and for the re-engagement check-ins described below. You can turn this off in the app's settings, and it is off entirely when you use Dial without signing in.
From these events we also keep simple engagement summaries per account, things like the date you were last active, how many days you have logged something, and a lifecycle label (for example "engaged" or "inactive"), so we can see who might benefit from a check-in without reading through raw events.
Push notification tokens
If you enable notifications in the native app, we store the device push token needed to deliver them. Turn notifications off and it goes unused.
Website analytics
On our marketing site we record occurrence-only interactions: that a page was viewed or a button was clicked, with a random anonymous identifier stored in your browser. We do not store your IP address with these events, and we do not fingerprint your device. If you choose to join the waitlist, we connect that anonymous identifier to the email you give us so we can see which visits led to signups. If you never submit the form, the identifier never meets a name or an email.
Coach chat
The in-app coach runs entirely on your device. Your messages, your plan numbers, and the coach's replies never leave your phone or browser, are never sent to our servers, and are never processed by any AI service. Changes the coach makes to your plan also happen on your device.
Re-engagement check-ins
If you have been away for a while, we may send a gentle check-in by push notification or email. These are deliberately constrained, with the core limits enforced in our database, not left to good intentions:
- Never more than 2 messages in any rolling 7-day period
- Each type of message has a cooldown of at least 30 days before it can repeat
- The moment you open the app again, any pending check-in is automatically cancelled
- A do-not-contact setting that always wins, ask once and outreach stops
- No sends during quiet hours (10pm–8am in your timezone)
To stop these at any time, use the notification settings in the app or email us and we will set do-not-contact on your account.
Apple Health
In the native iOS app, and only with your permission, Dial reads your step count from Apple Health. Steps are processed on your device to inform your plan. They are not sent to our servers.
What we don't do
- We do not sell your personal data. Not to advertisers, not to data brokers, not to anyone.
- We do not use third-party advertising trackers. There are no ad pixels or ad SDKs in Dial.
We share data only with the service providers needed to run the product, Supabase (accounts and hosting) and Vercel (web hosting), each only for the purpose described above.
Deleting your data
You can delete your account from within the app. That deletes your server-side account and everything associated with it, your email, usage events, engagement summaries, and push tokens. You can also email us at ethanwolk04@gmail.com and we will delete your account for you.
Your on-device health data is yours to remove any time by deleting the app or clearing its data, it was never on our servers to begin with.
Age
Dial is for adults. You must be 18 or older to use it, and we do not knowingly collect data from anyone under 18. If you believe someone under 18 has created an account, contact us and we will delete it.
Changes to this policy
If we change how we handle your data, we will update this page and its effective date. For meaningful changes, we will tell you in the app before they take effect.
Contact
Questions about privacy, or a deletion request: ethanwolk04@gmail.com.
Dial provides general fitness and nutrition guidance and is not medical advice. See our Terms of Service for the full health disclaimer and crisis resources.