Phase Privacy Policy
Effective date: 2026-05-04
Last updated: 2026-10-01
Contact: hello@phasequit.com
Phase is a habit-recovery companion for iPhone. This policy explains what data Phase handles, where it lives, and what control you have over it. Plain language only.
Summary
- No accounts. Phase has no login, no signup, no email collection.
- Local-first. Your habit, craving, journal, and daily intention data is stored on your device (SwiftData). It never leaves the device unless you export it yourself.
- Health data stays on your device. If you grant access, Phase reads resting heart rate, HRV, and sleep from Apple Health to display recovery insights, and, if you also allow it, writes a mindful-minutes session when you finish a breathing exercise. Phase never uploads health data anywhere.
- Analytics are off by default. Phase can record anonymous product usage events via PostHog, but only if you explicitly turn this on in You tab → Privacy. Off, nothing is sent.
- Payments go through Apple. The single in-app purchase (Phase Pro, $29.99 one-time) is processed by the App Store. Phase never sees your payment information.
What Phase collects
Stored on your device only
- Habit configuration: habit name, category, quit date, intensity, currency, cost per unit, units per day, savings goal.
- Cravings: timestamp, triggers, intensity, outcome, optional notes, optional AI response.
- Daily intentions: date, intention text, focus word, completion status.
- Journal notes: timestamp, text, optional links to specific cravings or milestones.
- Health data: if you grant HealthKit permission, Phase reads resting heart rate, HRV, and sleep from Apple Health each time it shows them. It doesn't keep its own copy. If you grant write access, Phase saves a mindful-minutes session to Apple Health when you complete all four rounds of a breathing exercise.
- Settings: units, haptic intensity, notification preferences, onboarding state, opt-in flags. Stored in Apple's
UserDefaults. - Achievement progress: which milestones and badges you've earned. Stored locally.
This data is not transmitted to any server. It exists only inside the app's sandbox on your device, protected by iOS file-system encryption.
Written on your device by Apple's model
Craving responses, daily intentions, and weekly recaps are written by Apple's on-device language model (Apple Intelligence). What Phase gives the model (your habit, streak, and recent craving details) and what it writes back stay on your device. Phase does not send them to any server.
Sent to PostHog only if you opt in
If you turn on You tab → Privacy → Help improve Phase, Phase sends anonymous product-usage events to PostHog (analytics provider). These events include:
- Screen views and feature interactions (e.g., "paywall shown," "craving logged," "milestone unlocked").
- App version, OS version, device model.
- A randomly generated install ID (not linked to your name, email, or Apple ID).
- App lifecycle events (open / background), only after you opt in.
Phase does not send PostHog any of the following: your habit content, craving notes, journal entries, contact information, health data, savings amounts or savings goal names, or any other identifying information about you. For a savings goal, the only thing sent is whether it has a name.
PostHog's SDK includes a crash-reporting component (PLCrashReporter), but Phase does not turn on automatic crash capture, so no crash reports are sent.
You can turn analytics off at any time in You tab → Privacy. When off, no events are sent.
Sent to Apple
- In-app purchase: Apple processes the Phase Pro purchase. Phase receives only the result (purchased / restored / failed) and a transaction ID. Apple's privacy policy applies to the purchase itself: https://www.apple.com/legal/privacy/.
- HealthKit: if you grant access, Phase reads heart rate, HRV, sleep, and writes mindful-session entries when you complete a breathing exercise. HealthKit data never leaves the device through Phase. Apple's HealthKit terms apply: https://support.apple.com/en-us/HT203037.
- Notifications: Phase schedules local notifications (daily intention reminder, milestone celebrations, streak encouragement). These are scheduled by iOS on the device. Phase does not use Apple Push Notification Service.
Feature requests (Featurebase)
You tab → About → Request a Feature opens Phase's public feedback board at https://phase.featurebase.app, which is run by Featurebase. Phase does not send any of your app data to it. To post or vote there you sign in with Featurebase, and anything you post is public. Featurebase's privacy policy applies to the board: https://help.featurebase.app/articles/4744036-privacy-policy.
If you email hello@phasequit.com (for example through You tab → About → Contact Support), we receive your email address and message and use them only to reply.
Required Reason API disclosures
Per Apple's Required Reason API policy, Phase declares the following API usage in its bundled PrivacyInfo.xcprivacy manifest:
UserDefaults. Used to store your settings, opt-in flags, and onboarding state. Reason codeCA92.1(app functionality).UserDefaultsin a shared app group. Used so Phase's widgets can read your widget settings. Reason code1C8F.1(shared with the app's own extensions).
Third parties
| Service | Purpose | Data sent | When |
|---|---|---|---|
| PostHog (analytics) | Anonymous product usage telemetry | Screen events, app version, install ID | Only if you opt in |
| Apple StoreKit | Process Phase Pro purchase | Apple-managed transaction data | When you tap "Unlock" |
| Apple HealthKit | Read heart rate, HRV, sleep; write mindful-minutes sessions | Read and written locally only, never transmitted by Phase | If you grant HealthKit permission |
| Featurebase | Public feature-request board | Only what you post or vote on there | If you open Request a Feature and sign in |
Phase uses no advertising SDKs, no tracking SDKs, no fingerprinting, no Apple's App Tracking Transparency framework, and no IDFA. Phase does not share data with any other third party.
Your controls
- Export: You tab → Data → "Export your data" hands you a JSON file via the iOS share sheet. The file includes every habit, archived ones too, with its cravings, daily intentions, and journal notes. Send it wherever you want: Files, Mail, AirDrop, and so on.
- Delete: You tab → Danger Zone → "Delete all data" wipes every record from the on-device store. Cannot be undone.
- Analytics opt-out: You tab → Privacy → "Help improve Phase", toggle off. PostHog will stop sending events immediately.
- HealthKit: revoke access in iOS Settings → Health → Data Access & Devices → Phase.
- Notifications: turn off any category in You tab → Notifications, or revoke entirely in iOS Settings → Notifications → Phase.
- Uninstall: removing Phase from your device deletes all local data, including SwiftData store, UserDefaults, and shared widget data.
Children
Phase is rated 12+ in the App Store and is not directed at children under 13. Phase does not knowingly collect personal information from children. If you believe a child has provided information to Phase, contact us at hello@phasequit.com and we will help.
Security
- All on-device data is protected by iOS sandbox isolation and the device's full-disk encryption.
- All network traffic uses HTTPS (TLS).
- The Phase Pro purchase is processed by Apple. No payment data passes through Phase.
- No passwords, tokens, or credentials are stored. There are no accounts to compromise.
Data retention
- On-device data: kept until you delete it or uninstall Phase.
- PostHog analytics (if opted in): retained per PostHog's policy at https://posthog.com/privacy. You can request deletion of your install ID's events by emailing hello@phasequit.com with the install ID. While analytics is on, the ID appears in You tab → About; tap the row to copy it.
International transfers
If you opt into analytics, PostHog stores events on infrastructure in the United States (https://us.i.posthog.com). By opting in you consent to this transfer.
Changes to this policy
Material changes will be reflected by an updated effective date at the top of this page and surfaced in the app's release notes. Continued use of Phase after a change indicates acceptance.
Contact
Questions, deletion requests, or concerns: hello@phasequit.com