Privacy Policy
Effective date: 14 September 2026
1. Introduction
Gestational Diabetes Tracker ("the app") is an Android application for recording and organising health information during a pregnancy affected by gestational diabetes. It is a tracking and organisation tool, not a medical device.
A record of your glucose readings, meals and symptoms is sensitive personal information, and the app is built around that fact. It is designed as a local, offline health diary: the information you enter is stored on your own device, and the app does not require an account, a sign-up or a login to use.
2. Information you enter
Everything in this section is information you choose to record. The app does not gather it from anywhere else. Depending on which trackers you switch on, it may include:
- Blood glucose readings and the reading type (fasting, pre-meal, post-meal, bedtime, random)
- Meals, free-text food descriptions, carbohydrate amounts and optional meal photos
- Blood pressure readings
- Weight entries
- Ketone results
- Medication and insulin doses
- Water intake
- Pregnancy profile details, including a profile name and estimated due date, from which the app calculates your current week and trimester
- Notes and symptom or mood tags attached to a reading
- Reminder times, weekday schedules and snooze preferences
- App settings such as units, target ranges, language, theme and which trackers are enabled
This information is written to a database file stored in the app's private storage area on your device. It is not transmitted to any server operated by the developer.
3. Health information
The health information you enter stays on your device. Because of this, anyone with access to your unlocked phone may be able to open the app and read it. Protecting access to your device — with a screen lock, and by not sharing it while it is unlocked — is the most important safeguard for this information.
The app offers an optional privacy lock that asks for your device's fingerprint, face or screen-lock credential before opening. This is a device-level convenience gate provided by the Android operating system. It is not an account, it does not encrypt your data with a separate password, and it should not be treated as medical-grade or professional-grade security.
4. Usage and crash reports (optional, off until you choose)
The app can send anonymous usage and crash reports to help fix problems and improve it. Nothing is sent unless you turn this on. The app asks you once, and you can change your choice at any time in Settings → Data and privacy → "Share anonymous usage & crash reports". If you turn it off, reporting stops and crash reports that have not yet been sent are deleted from your device.
If you turn it on, the app uses two Google services:
- Firebase Analytics records which features are used: that the app was opened, that the subscription screen was shown, that a purchase or restore was completed, that your subscription status changed, that a review request was made and that "Rate the app" was tapped. Each event carries only fixed labels (for example, which screen a subscription offer was opened from), never anything you typed or recorded. Firebase also collects standard technical information such as an app-instance identifier, device model, operating system version, app version, language, and an approximate location derived from your IP address.
- Firebase Crashlytics records crash reports: technical details of the error, the state of the app and device at the time (such as device model, operating system version, available memory and app version), a Crashlytics installation identifier, whether a Pro subscription was active, and short technical labels describing what the app was doing.
These reports never include your health entries: no glucose values, meals or food descriptions, notes, symptoms, photos, due dates, profile names or any other information you record. The app does not collect your advertising ID or Android ID, does not use your data for advertising, and turns off advertising storage and ad personalisation in Google Analytics.
Crash reports are kept by Google for a limited period (currently 90 days). Analytics data is kept according to the retention period set for the app's Google Analytics property. Google processes this data under the Firebase privacy and security terms.
5. Permissions
The app requests only the permissions it needs for features you use:
- Notifications — to show glucose check reminders and post-meal timer alerts. These are scheduled locally on your device.
- Alarms and reminders — so a scheduled reminder fires at the time you set, rather than being delayed by battery optimisation.
- Biometrics / fingerprint — only if you turn on the optional privacy lock. Your fingerprint or face data is handled entirely by Android and is never visible to the app.
- Photos and files — to let you attach a photo to a meal from your photo library, and to save or open a backup or report file. The app reads only the specific file you select.
- Vibration — for reminder alerts and touch feedback.
- Internet — used to open this website when you tap a link, to check and restore a Pro subscription, and to send usage and crash reports if you have turned them on. Your health entries are never uploaded.
- Google Play billing — to buy, restore and manage a Pro subscription through Google Play.
The app does not request location access, microphone access or camera access, and does not take photographs itself.
6. Data storage
- Your health data is stored locally on your device.
- The app does not use a cloud database for your health information.
- No account is required.
- No login is required.
- The developer has no access to, and no copy of, what you record.
- Subscription records and optional usage and crash reports are stored by the services described in sections 4 and 8. They do not contain your health entries.
7. Backup and restore
Because your data lives only on your device, the app includes an export function that writes everything you have recorded into a backup file (JSON), and a report function that can produce PDF and CSV files. Handing that file to another app is always an action you take deliberately, through your device's own share sheet.
Once a file leaves the app, its handling is controlled by you and by whichever destination you choose — for example your device's storage, a cloud storage provider, an email message or a messaging app. Those destinations have their own privacy policies and terms, and this policy does not cover them. Please consider where you are sending a file that contains your health information.
8. Third-party services
None of the services below receive your health entries. The app uses:
- Google Play — distributes the app and processes payments for the optional Pro subscription. Payment details are handled entirely by Google and never reach the app or the developer. See Google's Privacy Policy.
- RevenueCat — manages the Pro subscription: it checks with Google Play whether a subscription is active, restores purchases and shows the subscription screen. Because the app has no account, RevenueCat identifies your installation with a random identifier it generates. It receives purchase and subscription information (such as the product, purchase and renewal dates, price and currency, and Google Play transaction identifiers) along with basic device and app information (such as device model, operating system version, app version, country, and your IP address as part of the connection). It is used only to provide the subscription. See RevenueCat's Privacy Policy.
- Google Play In-App Review — occasionally, after a completed task, the app may ask Google Play to show its review prompt. Google decides whether the prompt appears, and your rating or review goes directly to Google Play. The app never learns whether you rated it or what you wrote.
- Firebase Analytics and Firebase Crashlytics (Google) — only if you turn on usage and crash reports, as described in section 4.
The app does not use Firebase Authentication, Cloud Firestore, Firebase Realtime Database, Firebase Cloud Storage, Firebase Cloud Messaging, any advertising network, or any other analytics or tracking provider.
If you use the optional Wear OS companion, readings you enter on the watch are sent to your paired phone over the Android Wear connection so they can be saved into the same local database. This transfer happens between your own two devices.
9. Security
We take reasonable steps to protect the information you record:
- Data is kept in the app's private storage area, which other apps cannot read.
- An optional biometric or device-credential privacy lock can gate access to the app.
- There is no account system, so there are no passwords or credentials to be breached.
- Usage and crash reporting is off unless you turn it on, and never includes your health entries.
- Exporting and sharing a file always requires a deliberate action from you.
No method of storing information is completely secure, and we cannot guarantee absolute security. In particular, the app cannot protect your information if your device is lost, unlocked by someone else, compromised by other software, or if you share an exported file with someone.
10. Your rights and choices
- Access — everything you have recorded is visible inside the app at any time.
- Export — you can export your data as a backup file, or as a PDF or CSV report.
- Correct — entries can be edited or deleted individually.
- Delete — "Delete all data" in Settings removes every reading, meal, reminder and profile from the device.
- Remove — uninstalling the app removes its local database from your device.
- Reports — turn anonymous usage and crash reports on or off at any time in Settings → Data and privacy.
- Subscription — manage or cancel a Pro subscription at any time in Google Play.
Because there is no account and your health entries are never uploaded, there is no remote copy of them for the developer to retrieve, correct or delete on your behalf. Deleting your data on the device deletes it completely, and it cannot be recovered afterwards unless you made a backup file yourself.
11. Children's privacy
The app is intended for adults managing their own pregnancy care, and is not directed to children. It is not designed for, marketed to, or intended to be used by children, and it does not knowingly collect information from children. Because the app has no account system and never uploads health entries, the information you record is held only on the device where it was entered.
12. Medical disclaimer
This app is for tracking and informational purposes only. It is not a medical device. It does not diagnose, treat, cure or prevent any disease or condition.
Target ranges, trends, time-in-range figures, patterns and reminders shown in the app are descriptions of the information you entered. They are not medical advice and must not override the instructions of your healthcare provider.
Always consult your doctor, obstetrician, midwife, diabetes educator or other qualified healthcare professional about diagnosis, treatment, target ranges, medication and any decision about your care. Do not start, stop or change any medication, insulin dose, diet plan or treatment based only on what this app shows.
If you have an urgent medical concern, contact your healthcare professional or your local emergency service. This app is not an emergency service and cannot summon help.
13. Changes to this policy
This policy may be updated when the app changes or when our privacy practices change — for example if a service that receives information is added or changed. The effective date at the top of this page shows when the current version took effect. Continuing to use the app after an update means you accept the revised policy.
14. Contact
Questions about this policy or about how the app handles your information are welcome: