Privacy Policy

Privacy Policy

Last updated September 20, 2026





This Privacy Notice for Fiora Cycle LLC ("we," "us," or "our"), describes how and why we might access, collect, store, use, and/or share ("process") your personal information when you use our services ("Services"), including when you:


Download and use our mobile application (Fiora), or any other application of ours that links to this Privacy Notice


Use Fiora. Fiora is a mobile app focused on cycle tracking and productivity. It helps users track periods, peak energy, and daily performance by syncing hormonal patterns with their routines.


Engage with us in other related ways, including any marketing or events





Questions or concerns? Reading this Privacy Notice will help you understand your privacy rights and choices. We are responsible for making decisions about how your personal information is processed. If you do not agree with our policies and practices, please do not use our Services. If you still have any questions or concerns, please contact us at support@fioracycle.app.





SUMMARY OF KEY POINTS


This summary provides key points from our Privacy Notice, but you can find out more details about any of these topics by clicking the link following each key point or by using our table of contents below to find the section you are looking for.





What personal information do we process? When you visit, use, or navigate our Services, we may process personal information depending on how you interact with us and the Services, the choices you make, and the products and features you use. Learn more about personal information you disclose to us.





Do we process any sensitive personal information? Yes. Fiora processes health-related information, including menstrual cycle and reproductive health data, as well as Apple Health data you choose to connect (such as sleep data), when necessary with your consent. Your cycle and health data are stored only on your device. They are never uploaded to iCloud or sent to our analytics provider. Learn more about sensitive information we process.





Do we collect any information from third parties? We do not purchase or collect information about you from public databases, marketing partners, or social media platforms. We do work with a small number of service providers (described below) who process information on our behalf.





How do we process your information? We process your information to provide, improve, and administer our Services, communicate with you, process subscription payments, for security and fraud prevention, and to comply with law. We process your information only when we have a valid legal reason to do so. Learn more about how we process your information.





In what situations and with which types of parties do we share personal information? We share information with Apple (for authentication, subscription processing, and iCloud sync of non-health data), RevenueCat (for subscription management), and PostHog (for product analytics). Learn more about when and with whom we share your personal information.





How do we keep your information safe? We have adequate organizational and technical processes and procedures in place to protect your personal information. However, no electronic transmission over the internet or information storage technology can be guaranteed to be 100% secure, so we cannot promise or guarantee that hackers, cybercriminals, or other unauthorized third parties will not be able to defeat our security and improperly collect, access, steal, or modify your information. Learn more about how we keep your information safe.





What are your rights? Depending on where you are located geographically, the applicable privacy law may mean you have certain rights regarding your personal information. Learn more about your privacy rights.





How do you exercise your rights? The easiest way to exercise your rights is by emailing us at support@fioracycle.app. We will consider and act upon any request in accordance with applicable data protection laws.





Want to learn more about what we do with any information we collect? Review the Privacy Notice in full.





TABLE OF CONTENTS





1. WHAT INFORMATION DO WE COLLECT?





2. HOW DO WE PROCESS YOUR INFORMATION?





3. WHAT LEGAL BASES DO WE RELY ON TO PROCESS YOUR PERSONAL INFORMATION?





4. WHEN AND WITH WHOM DO WE SHARE YOUR PERSONAL INFORMATION?





5. HOW LONG DO WE KEEP YOUR INFORMATION?





6. HOW DO WE KEEP YOUR INFORMATION SAFE?





7. DO WE COLLECT INFORMATION FROM MINORS?





8. WHAT ARE YOUR PRIVACY RIGHTS?





9. CONTROLS FOR DO-NOT-TRACK FEATURES





10. DO UNITED STATES RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?





11. DO WE MAKE UPDATES TO THIS NOTICE?





12. HOW CAN YOU CONTACT US ABOUT THIS NOTICE?





13. HOW CAN YOU REVIEW, UPDATE, OR DELETE THE DATA WE COLLECT FROM YOU?





WHAT INFORMATION DO WE COLLECT?





Personal information you disclose to us


In Short: We collect personal information that you provide to us, primarily through Sign in with Apple and your use of Fiora's cycle-tracking features.





The personal information we collect may include the following:





Name, as entered in the app or provided through Sign in with Apple (Fiora does not request or collect your email address)





Authentication identifiers (Apple user ID)





Sensitive Information. When necessary, with your consent, we process the following categories of sensitive information:





Health Data. This includes period dates, sleep, daily energy levels and feeling or body tags, peak-window feedback, and hormonal phase data calculated by the app. During onboarding you may also give your birthday, birth control method, and health conditions. If you choose to connect Apple Health, we access two categories of HealthKit data: menstrual flow data and sleep analysis data. Fiora does not access step count, motion data, or other activity data. This data is used to power Fiora's phase predictions and peak-energy insights. Health data is stored only on your device. It is not uploaded to iCloud, and no analytics event contains it.





Payment Data. When you subscribe to Fiora, your payment is processed entirely by Apple through StoreKit (Apple's in-app purchase system). We do not collect, see, or store your payment card details. Subscription status and entitlement management are handled by RevenueCat, which receives your App Store transaction data and an identifier created by Fiora (a random ID, or a one-way hash of your Apple user ID if you are signed in) — never your payment information. You may review Apple's privacy practices at https://www.apple.com/legal/privacy/ and RevenueCat's privacy policy at https://www.revenuecat.com/privacy/.





Application Data. If you use our application, we also may collect the following information if you choose to provide us with access or permission:





Mobile Device Access. We may request access to certain features from your device, including notifications and Apple Health (menstrual and sleep data only), to support reminders and importing and saving your cycle and sleep data. You can change these permissions at any time in your device's settings.





Mobile Device Data. We automatically collect limited device information (such as device model, operating system version, app version, and language), sent with analytics events, for the purpose of troubleshooting. If you email support from the app, the message includes app version, device, language and region, time zone, a support ID, sign-in status, and subscription plan, all visible before you send.





Push Notifications. We may send notifications regarding peak energy windows and cycle reminders. You may opt out of these in your device's settings at any time.





All personal information that you provide to us must be true, complete, and accurate, and you must notify us of any changes to such personal information.





Information automatically collected


In Short: We use PostHog, a product analytics service, to understand how Fiora is used so we can improve it. All analytics activity is tied to a single randomly-generated identifier stored on your device — never your name, Apple ID, or email address.





When you use Fiora, we record app-usage events (such as onboarding progress, paywall views, plan selection, trial starts, sign-in completion, notification permission choices, sign-out, data export and deletion, peak-window feedback, app open and close events, and technical errors such as iCloud sync failures) against a randomly-generated identifier that is created the first time you open the app and stored only in your device's local settings. This identifier is never derived from, or connected to, your Apple ID, name, or email address, and it does not change if you sign in or out.





None of our analytics events include the actual content of your health data (such as specific cycle dates, symptoms, or hormone values) — only the fact that an action occurred. You can turn analytics off at any time in Settings → Data & Privacy → Analytics.





This information is hosted in the United States and is used solely for internal product improvement. We do not use this data for targeted advertising, and we do not sell or share it with data brokers or advertising networks.





Information collected from other sources


We do not collect information about you from public databases, data brokers, or social media platforms.





HOW DO WE PROCESS YOUR INFORMATION?


In Short: We process your information to provide, improve, and administer our Services, process subscription payments, communicate with you, for security and fraud prevention, and to comply with law.





We process your personal information for the following purposes:


To facilitate account creation and authentication via Sign in with Apple.


To deliver Fiora's core functionality, including cycle tracking, phase predictions, and peak-window insights.


To process and manage your subscription via Apple StoreKit and RevenueCat.


To respond to support inquiries.


To send administrative information, such as changes to our terms or this notice.


To protect our Services, including fraud monitoring and prevention.


To understand feature usage and improve the app, using the anonymized analytics events described above.





WHAT LEGAL BASES DO WE RELY ON TO PROCESS YOUR INFORMATION?


In Short: We only process your personal information when we believe it is necessary and we have a valid legal reason to do so, like your consent, to fulfill our contractual obligations to you, or our legitimate business interests.





If you are located in the EU or UK, this section applies to you.


We may rely on the following legal bases:


Consent. For health data and Apple Health integration, which you actively opt into and may withdraw at any time.


Performance of a Contract. To provide the Services you've signed up for, including subscription management.


Legitimate Interests. To analyze anonymized app usage to improve the product, and to maintain app security.


Legal Obligations. Where necessary to comply with applicable law.





If you are located in Canada, this section applies to you.


We may process your information based on express or implied consent, which you may withdraw at any time, subject to standard legal exceptions (fraud prevention, legal compliance, and similar circumstances described in applicable law).





WHEN AND WITH WHOM DO WE SHARE YOUR PERSONAL INFORMATION?


In Short: We share limited information with a small number of service providers who help us operate Fiora. We do not sell your personal information.





We share information with the following service providers:





Apple Inc. — for Sign in with Apple authentication, to process subscription payments via StoreKit, and, if you are signed in, to sync your name, bed and wake times, tracking status, and focus sessions to your private iCloud account. Health data is not synced to iCloud. Apple's privacy practices are governed by their own privacy policy: https://www.apple.com/legal/privacy/.





RevenueCat, Inc. — to manage subscription status and entitlements. RevenueCat receives your App Store transaction data and an identifier created by Fiora (a random ID, or a one-way hash of your Apple user ID if you are signed in), but never your raw payment information. RevenueCat's privacy policy: https://www.revenuecat.com/privacy/.





PostHog, Inc. — for product analytics, hosted in the United States. As described in Section 1, no health data is sent to PostHog. All events, including onboarding and subscription events, are sent under the same randomly-generated, non-account-linked identifier described in Section 1 — none are tied to your Apple ID, name, or email. PostHog's privacy policy: https://posthog.com/privacy.





We do not share your information with data brokers, advertising networks, or any third party for targeted advertising purposes. We do not sell your personal information.





We may also share information in connection with a merger, acquisition, or sale of company assets, in which case your information would remain subject to the protections described in this notice or a comparably protective successor policy.





HOW LONG DO WE KEEP YOUR INFORMATION?


In Short: We keep your information for as long as you have an account with us, unless you request deletion sooner.





We retain your personal information, including health data, for as long as you maintain an account with Fiora. If you delete your account through the in-app "Delete My Data" feature, We will permanently delete your Fiora data from your device and any private iCloud data stored by Fiora. Fiora does not operate its own servers. Anonymized analytics events that cannot be linked back to you may be retained in aggregate for product improvement purposes, consistent with PostHog's standard data retention period.





HOW DO WE KEEP YOUR INFORMATION SAFE?


In Short: We aim to protect your personal information through a system of organizational and technical security measures, including minimizing the linkage between sensitive health data and your identity.





We have implemented appropriate technical and organizational security measures designed to protect your personal information, including keeping health data only on your device. However, no electronic transmission or storage system can be guaranteed 100% secure. Transmission of personal information to and from our Services is at your own risk.





DO WE COLLECT INFORMATION FROM MINORS?


In Short: We do not knowingly collect data from or market to anyone under 18 years of age.





By using the Services, you represent that you are at least 18 years of age. If we learn that personal information from someone under 18 has been collected, we will deactivate the account and delete such data. Contact us at support@fioracycle.app if you become aware of any such data.





WHAT ARE YOUR PRIVACY RIGHTS?


In Short: You may review, change, delete, or export your personal information, including your health data, at any time.





Depending on your location, you may have the right to access, correct, delete, or receive a copy of your personal information, and to withdraw consent for the processing of your health data at any time. You can exercise most of these rights directly within the app via Settings → Delete My Data, or by contacting us at support@fioracycle.app.





If you are located in the EEA, UK, or Switzerland, you also have the right to lodge a complaint with your local data protection authority.





CONTROLS FOR DO-NOT-TRACK FEATURES


We do not currently respond to Do-Not-Track browser signals, as no uniform standard for recognizing these signals has been finalized industry-wide.





DO UNITED STATES RESIDENTS HAVE SPECIFIC PRIVACY RIGHTS?


In Short: Residents of California and other U.S. states with comprehensive privacy laws have the right to know what personal information we collect, correct it, delete it, and opt out of certain processing.





Categories of Personal Information We Collect





Category | Examples | Collected


A. Identifiers | Apple user ID (device-generated analytics ID; no email collected) | YES


G. Geolocation data | Approximate location (device-level only) | NO


L. Sensitive personal information | Health/cycle data, account login data | YES





We have not sold or shared any personal information to third parties for advertising or marketing purposes in the preceding twelve months.





Your Rights


Right to know what personal data we process about you


Right to access and obtain a copy of your data


Right to correct inaccuracies


Right to request deletion


Right to opt out of any future sale or sharing of personal data (we do not currently sell or share data)


Right to non-discrimination for exercising these rights


Right to limit use of sensitive personal information (we have already limited this by design — see Section 1)





How to Exercise Your Rights


Contact us at support@fioracycle.app. We will verify your identity before fulfilling requests involving sensitive information. If you wish to appeal a decision regarding your request, you may also email support@fioracycle.app.





California "Shine The Light" Law


We do not disclose personal information to third parties for their own direct marketing purposes, so this law's disclosure requirements do not apply to our practices.





DO WE MAKE UPDATES TO THIS NOTICE?


In Short: Yes, we will update this notice as necessary to stay compliant with relevant laws and to reflect changes to our service providers or practices.





We will update the "Last updated" date at the top of this notice when changes are made. Material changes will be communicated via an in-app notice or direct notification.





HOW CAN YOU CONTACT US ABOUT THIS NOTICE?


If you have questions or comments about this notice, you may email us at support@fioracycle.app.





Fiora Cycle LLC


Washington, USA





HOW CAN YOU REVIEW, UPDATE, OR DELETE THE DATA WE COLLECT FROM YOU?


You may review, update, or delete your personal information at any time through Settings within the app, where you can export or delete your data, or by emailing support@fioracycle.app.







Fiora Health Data Privacy Policy


Last Updated: September 20, 2026





This notice supplements Fiora's Privacy Policy. It explains how we collect, use, and share consumer health data and provides the disclosures required by applicable privacy laws, including Washington's My Health My Data Act and Nevada's consumer health privacy requirements.





Health Data Storage





Your health data is stored locally on your device. It is not uploaded to our servers, iCloud, or our analytics provider. Fiora does not operate its own servers.





Collection of Health Data





The health data we collect includes:





Reproductive health information, including period dates and cycle length





Information about your health conditions, birth control method, and how you feel each day, including energy levels and feeling or body tags





Sleep and menstrual flow data from Apple Health, if you choose to connect it. Fiora does not access step count, motion, or other activity data.





Sources of Health Data





We collect health data directly from you and, with your permission, from Apple Health.





Use of Health Data





We use health data only to provide the Services, including tracking your cycle, predicting phases, and estimating your peak energy windows. We may use health data for other purposes only with your consent as required by applicable law.





Sharing of Health Data





We do not sell or otherwise share your health data with third parties. It stays on your device unless you choose to export it yourself.





Fiora reads sleep and menstrual flow data from Apple Health, and, with your separate permission, writes back the periods and sleep you log in Fiora so your history stays with you. Fiora only ever updates or deletes records it created itself; it never modifies data written by you or by other apps, and it will not write a sleep entry that overlaps one another app already recorded. Writing to Apple Health keeps the data on your device. It is not sent to us or to any third party.





If there is a merger, acquisition, or sale of our business, this notice would continue to apply to your health data.





Your Rights





You can access, export, or delete your health data at any time in Settings within the app.





You can withdraw permission for Fiora to access Apple Health by disconnecting Apple Health in your device's Settings. You can also delete your Fiora data in the app.





If you have questions about these rights, email support@fioracycle.app.





If we deny a request, you may appeal by emailing support@fioracycle.app. If your appeal is unsuccessful, you may file a complaint with your state Attorney General, including:





Washington: https://www.atg.wa.gov/file-complaint





Nevada: https://ag.nv.gov/Complaints/File_Complaint/