Last updated: August 24, 2026
The Good Habits (“we,” “us,” or “our”) is built and operated by Viorel Petrea. This Privacy Policy explains what information we collect, why we collect it, and how we protect it when you use The Good Habits iOS app.
By using the app you agree to the practices described in this policy. If you do not agree, please do not use the app.
1. Information We Collect
Account Information
We use Sign in with Apple for authentication. When you sign in, Apple shares:
- A unique, stable Apple User ID (used only to identify your account)
- Your name — only on the first sign-in; we store it so your profile has a default display name
- An email address or Apple’s private relay address (only if you choose to share it)
Your Apple credentials are stored securely in your device’s Keychain. We never store your Apple ID password.
Habit & Check-In Data
When you create and track habits, we store:
- Habit name, emoji, summary, start and end dates
- Allowed and not-allowed rules you define
- Daily check-in records (date, optional text note, optional photo)
- Missed-day records and notes
- Streak and consistency statistics derived from your check-ins
Profile Information
- Display name and initials you set during onboarding
- Profile color you choose
- Optional tagline
- Optional profile photo
Social & Friends Data
- Your unique friend code (e.g. “ALEX42”) — visible only to people you share it with
- Friend connections you establish by exchanging codes
- Friend requests (sent and received)
- Habit membership — which of your habits you share with which friends
Wall Posts
When you post to a shared habit’s wall:
- Your display name, initials, and color are shown alongside the post
- Post text and optional photo are stored
- Reactions (fire, muscle, heart, party) and counts are stored
Subscription Status
We record whether you have an active Premium subscription. This is verified in real time through Apple’s StoreKit framework. We never see or store your payment card details — all billing is handled entirely by Apple.
Device & Technical Data
To protect our backend from unauthorized access we use Firebase App Check, which generates a device attestation token. This token confirms that requests come from a legitimate copy of the app. It contains no personal information and is not used for advertising or tracking.
2. Information We Do NOT Collect
- Location data — we never request or access your device location
- Contacts — we use a manual friend-code system; we never scan your address book
- Advertising identifiers (IDFA) — we run no ads and do no ad tracking
- Analytics — we do not use Firebase Analytics or any other behavioral analytics SDK
- Microphone or audio data
3. How We Use Your Information
- Provide the service — sync your habits, check-ins, and social features across devices
- Display your profile — show your name and avatar to friends inside shared habits
- Enable social features — connect you with friends, show the wall, and deliver reactions
- Verify your subscription — unlock Premium features if you subscribe
- Secure the backend — block unauthorized API access via App Check
We do not sell, rent, or share your personal data with third parties for advertising or marketing purposes.
4. Third-Party Services
Apple (Sign in with Apple & StoreKit)
Authentication and all payment processing are handled by Apple. Apple’s Privacy Policy applies: apple.com/legal/privacy
Google Firebase (Firestore & App Check)
Your habit, social, and wall data is stored in Cloud Firestore, a Google Firebase service. Firebase App Check is used to verify device integrity. Google’s Privacy Policy applies: policies.google.com/privacy
Firebase data is stored in Google’s US data centers. If you are located in the EU/EEA, this constitutes a transfer of data to the United States under Google’s Standard Contractual Clauses.
Apple CloudKit
Profile photos and check-in photos are stored in Apple CloudKit, which is tied to your Apple ID and subject to Apple’s iCloud Terms and Privacy Policy.
5. Photos & Camera Access
The app requests access to your photo library or camera only when you explicitly tap to attach a photo to a check-in or set a profile photo. Photos are stored in CloudKit (profile) or Firebase Firestore / CloudKit (check-in photos) and are visible only to members of the habit you posted them in.
You can revoke photo access at any time in iOS Settings → The Good Habits → Photos.
6. Data Retention
We retain your data for as long as your account is active. If you delete your account, your habits, check-ins, posts, and profile are permanently deleted from our servers within 30 days. Keychain credentials are removed immediately on device.
Subscription records are maintained by Apple and governed by their policies.
7. Children’s Privacy
The Good Habits is not directed at children under 13 (or under 16 in the EU). We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us and we will delete it promptly.
8. Your Rights
Depending on where you live you may have the right to:
- Access the personal data we hold about you
- Correct inaccurate data
- Request deletion of your data (“right to be forgotten”)
- Object to or restrict processing
- Data portability
To exercise any of these rights, or to request account deletion, contact us at the address below. We will respond within 30 days.
9. Security
We take reasonable technical and organizational measures to protect your data, including:
- All data in transit is encrypted via HTTPS/TLS
- Firestore security rules restrict access so users can only read data they are authorized to see
- Firebase App Check blocks non-app clients from accessing our backend
- Sensitive credentials are stored in the iOS Keychain, not in plain storage
No method of transmission over the internet or electronic storage is 100% secure. We cannot guarantee absolute security.
10. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the “Last updated” date at the top. For significant changes we will notify you inside the app. Continued use of the app after changes constitutes acceptance of the updated policy.
11. Contact Us
If you have questions about this Privacy Policy or want to request data deletion, please contact:
Viorel Petrea
📧 petrea_viorel@yahoo.com