1. Summary
- Core inventory, dose logs, profile fields, and chat history you save are stored on your device (SwiftData). We do not require a Vitalog account for everyday use.
- Optional AI features may send limited data to a third-party AI service (Google Gemini) only after you grant permission in the app.
- We do not sell your personal data.
2. Data we collect and where it lives
Depending on how you use the app, the following may be stored on your device:
- Inventory & logs: supplement names, nutrients, dosages, photos you attach, expiration, and dose times/notes.
- Profile: display name, age, height, weight, sex, activity level, goals, optional avatar.
- Chat history: messages you exchange with the in-app AI assistant (saved locally).
- Preferences: language, AI usage counters, AI privacy consent state, notification preferences.
- Widget snapshot: limited summary counts shared via App Group with the Home Screen widget on the same device.
We do not operate a Vitalog cloud backend for your inventory or logs. Deleting the app removes on-device app data (subject to iOS backups you control).
3. Optional third-party AI (Google Gemini)
When you use optional AI features and have granted AI data-sharing permission, the app sends data from your device to the Google Gemini API, operated by Google LLC, to generate a response. Vitalog does not run its own AI model server.
What may be sent (by feature):
- Label scan: photos of supplement labels you capture or select, on-device OCR text extracted from those photos, and optionally a short profile context summary to improve extraction.
- AI chat: your message text, recent chat turns included for context, and short summaries of profile, inventory, and today’s dose logs.
What is not sent to AI without your permission: routine inventory edits and dose logging that stay fully on-device.
Purpose of sharing: solely to provide the AI feature you requested (structured label fields or chat reply). We do not use AI requests to build advertising profiles.
Google’s processing of API data is subject to Google’s terms and privacy practices for the Gemini API. Review Google’s documentation for retention and use of API inputs.
4. Permission and control
- Before the first network AI call, Vitalog shows an in-app disclosure that explains what data may be sent, who receives it (Google Gemini / Google LLC), and asks for your permission.
- You may withdraw permission anytime in Profile → AI Privacy. After withdrawal, optional AI features will not send data until you allow again.
- Device permissions (Camera, Photos, Notifications) are requested by iOS for their stated purposes and are separate from AI data-sharing consent.
5. How we use information
- Provide inventory, logging, history, widgets, and optional AI assistance.
- Enforce a daily AI usage limit on device.
- Show educational disclaimers and improve on-device UX.
We do not sell personal information.
6. Children’s privacy
Vitalog is not directed at children under 13. Do not use the app if you are under 13. If you believe a child has provided data, contact us and we will help you remove on-device content where feasible.
7. International and security notes
AI requests may be processed on servers operated by Google in locations they choose. On-device data is protected by iOS sandboxing and your device passcode / biometrics. No method of transmission is 100% secure.
8. Changes
We may update this policy. Material changes for AI sharing may require renewed in-app consent. The “Last updated” date at the top will change when we revise this page.
9. Contact
Questions about privacy: tech.swsw@gmail.com. Support hub: /support.