Privacy Policy for Ricodia
Privacy information about the Ricodia app, its local data, voluntary feedback and external services.
Date: June 24, 2026
Ricodia is an offline-first app for daily morning impulses, weather context, sayings, local notifications, widgets and voluntary challenges. Many data points remain only on your device.
Controller
Patrick Benkö e.U.
Contact: office@ricodia.app
Support: support@ricodia.app
Summary
The app uses no advertising, no own analytics or telemetry pipeline, no attribution SDKs and no third-party tracking for advertising purposes. Google Sign-In is used only for the optional Sync account login and not for advertising or tracking; embedded auth and store SDKs may still declare their own technical privacy details in iOS Privacy Manifests. Location, weather, air quality, pollen, notifications, Health steps, feedback, content ratings, Supabase content and in-app purchases are processed only for the relevant app feature.
Health data is read only for the voluntary step challenge. Optional Ricodia Sync can be used after a Sync purchase with a Sync account. Sign-in or registration uses Apple, Google, or email magic link. Supabase Auth may process an auth user ID, provider, email address if provided, device records, purchase and entitlement history, and synced app data. Users without Sync can use Ricodia without an account. Raw HealthKit/Health Connect records, provider provenance, precise coordinates and distance or time detail values are not synced.
Data processed
- Local app data: Settings, language, theme, location mode, manual places, archive, daily impulses, weather, air quality and pollen values, challenge state, widget data, notification scheduling and local unlock information.
- Location, weather, air quality and pollen: Coordinates, search terms, place name, time zone, language, request time, weather data, UV index, air quality values such as AQI, category, dominant pollutants and region, plus pollen values, pollen types, categories and recommendations when these features are used.
- Health and activity data: Today’s step count from Apple Health, HealthKit or Android Health Connect when permission has been granted.
- Sync and entitlement data: Ricodia Sync can be used only after a Sync purchase, for example through a bundle or as a separate Sync purchase after Plus/Pro. Sign-in or registration uses Apple, Google, or email magic link. Supabase Auth may process an auth user ID, provider, email address if provided, device records, purchase and entitlement history, plus synced archive data, daily aggregated step counts, weather snapshots, rest break sessions and challenge and achievement data. Name, profile photo, raw HealthKit/Health Connect records, provider provenance, precise coordinates and distance or time detail values are not synced.
- Feedback and support: Voluntarily submitted title, message, category, language, screen and time.
- Content ratings: Thumbs up/down, content type, rated text, language, impulse date, screen, optional weather code, a locally generated random rating client ID and server-side fingerprints for deduplication, rate limits and abuse prevention.
- Purchases: Product-related purchase and restore status data for Ricodia Plus and Ricodia Sync. Payment and billing are handled by Apple App Store or Google Play. If a subscription is cancelled in the store before it expires, access generally remains unlocked until the paid contract period ends; Ricodia does not provide prorated refunds. Refunds or special cases are handled through the relevant store.
External services
Ricodia may use Google Weather API for weather data, Google Air Quality API for air quality, Google Pollen API for pollen forecasts, Google Geocoding API for location search and reverse geocoding, Supabase and Supabase Auth for optional content, feedback, ratings and the Sync account, Apple App Store, Google Play, Apple Health/HealthKit, Android Health Connect and operating-system services for local permissions, notifications and widgets.
Purposes
Processing is used to provide daily impulses, weather, air quality, pollen and location features, local notifications, local challenges, optional content delivery, voluntary feedback, content curation, abuse prevention, deduplication, rate limits, purchase unlocking, an optional Sync account with sign-in and account deletion, and optional sync of archive data, daily aggregated step counts, weather snapshots, rest break sessions and challenge and achievement data.
Retention
Local data remains stored while the app is installed or until it is deleted through app or system settings. Feedback, support requests, content ratings and inactive server-side sync datasets are cleaned up regularly and should be stored for no more than 24 months unless longer retention is needed for legal claims, security or abuse investigation. A Sync account can be deleted in the app; this deletes server-side sync data and device records unless longer retention is required for legal, security or abuse reasons.
Sharing
Ricodia does not sell personal data. Data may be sent to external services when technically required for a feature, such as weather, air quality or pollen lookup, location search, Supabase content, feedback, ratings, optional sync, payment processing or Health permissions. Internet requests may involve technical request data such as IP address, time, headers or user agent for delivery, security, deduplication and abuse prevention.
Rights and deletion
Depending on applicable law, you may have rights of access, correction, deletion, restriction, portability, objection and withdrawal of consent. Many data points are stored only on the device and can be removed through app/system settings or by deleting the app. Users without Sync can use Ricodia without an account. A Sync account can be deleted in the app. Requests about server-side feedback, rating or sync data can be sent to support@ricodia.app.
Children
Ricodia is not aimed specifically at children. If minors use the app, this should happen within applicable legal requirements and, where needed, with guardian consent.
Changes
This privacy policy may be updated when app features, data processing, external services or legal requirements change.