Privacy Policy
Peptide Buddy is designed as a local-first app. Peptide inventory, vial data, logs, calculator entries, metrics, reminders, and notes are stored on your device. Peptide Buddy does not provide cloud sync and does not upload this health-related app data to Peptide Buddy servers.
1. Scope
This Privacy Policy explains how the Peptide Buddy mobile app handles information. It applies to the Android app distributed under the package name com.peptidebuddy.app.
Peptide Buddy is a tracking and calculation tool. It is not a medical device and does not provide medical advice, diagnosis, or treatment. Always consult a qualified healthcare professional for medical advice, diagnosis, or treatment.
2. Developer And Privacy Contact
Peptide Buddy is the app name used for this app. For privacy questions, data deletion requests, subscription support, or other inquiries, contact: peptide.buddy.app@gmail.com
3. Data Stored Locally On Your Device
Peptide Buddy may store the following information locally on your device when you enter or create it in the app:
- Peptide, substance, inventory, and vial information.
- Dose logs, schedules, plans, reminders, and calculator entries.
- Notes and health-related metrics that you choose to record.
- Local app settings, including optional app-lock settings.
This local health-related data is not sent to Peptide Buddy servers. Peptide Buddy does not currently provide account login, cloud sync, or a custom backend service.
4. Purchases And Subscriptions
Peptide Buddy Pro subscriptions are processed by Google Play Billing and RevenueCat. These providers process purchase and subscription information needed to complete purchases, restore purchases, manage subscription status, and unlock Pro features in the app.
RevenueCat may process purchase history, product identifiers, entitlement status, transaction status, store information, and an anonymous RevenueCat app user identifier. Peptide Buddy does not send peptide names, dose amounts, injection sites, health metrics, or notes to RevenueCat as subscriber attributes.
Payment method details, such as full payment card or bank account numbers, are processed by Google Play. Peptide Buddy does not receive full payment card or bank account details.
Peptide Buddy displays its own in-app paywall. RevenueCatUI is used only for the Customer Center; purchases, restoration and entitlement checks continue through RevenueCat.
5. CSV Export And Sharing
If you use export or sharing features, you choose when to create and share exported files. Exported files may contain information you entered in the app. When you share an exported file through the operating system share sheet, the selected destination app or service handles that file according to its own terms and privacy policy.
6. Local Reminders And Device Security
Peptide Buddy may use local notifications for reminders that you configure. Reminder content is generated on your device.
Optional app lock uses device authentication where available, such as biometric or device credential authentication. Peptide Buddy does not receive your biometric data. Android automatic cloud backup is disabled for app data.
7. Analytics, Ads, And Backend Services
Peptide Buddy does not use advertising SDKs and does not display ads. Peptide Buddy does not use a general-purpose analytics SDK for behavior tracking.
Peptide Buddy uses Sentry for crash and error reporting to diagnose and fix problems. These reports contain technical diagnostics — stack traces, redacted error messages, a count of how many items changed before the error, and device and operating system type. They never include your health data (peptide names, dose amounts, injection sites, notes, or metrics), email address, or username.
Sentry also receives a random UUID generated on your device so errors from the same app installation can be grouped. This UUID is not derived from a hardware, advertising, or account identifier and is reset when the app is reinstalled. Peptide Buddy disables default PII collection and removes any IP-address event field before sending. It does not intentionally attach an IP address. Like any network service, Sentry may process connection data under its own privacy terms. Crash and error reporting is always on; there is no separate in-app opt-out.
RevenueCat may provide purchase and subscription analytics based on purchase data processed for subscription functionality.
8. Data Sharing
Peptide Buddy does not sell personal or sensitive user data. Peptide Buddy uses Google Play Billing and RevenueCat as service providers for subscriptions and entitlement management. User-initiated exports may transfer data to apps or services you choose.
9. Service Providers
Peptide Buddy uses the following service providers for payment and subscription functionality:
- Google Play Billing, for payment processing, subscription purchase flow, and Google Play subscription management.
- RevenueCat, for purchase validation, entitlement management, purchase restoration, the Customer Center, customer support tooling, and purchase/subscription analytics. Peptide Buddy's paywall is rendered by the app itself.
- Sentry, for crash and error reporting. Sentry receives technical diagnostics and the random per-install identifier described above, but Peptide Buddy excludes health data, email addresses, usernames, and intentionally attached IP-address fields.
10. Retention And Deletion
Local app data remains on your device until you delete it in the app or uninstall the app. Purchase and subscription records may be kept by Google Play and RevenueCat as needed for subscription management, accounting, fraud prevention, support, and legal compliance.
To learn how to delete local app data or request deletion of purchase-related data, visit the Peptide Buddy Data Deletion page.
11. Security
Data transmitted to Google Play Billing, RevenueCat and Sentry is sent over encrypted connections. In production native builds, the local SQLite database is encrypted at rest with SQLCipher. Its random 256-bit key is kept in the operating system's secure Keychain/Keystore and is not uploaded. Unsupported development or test environments without SQLCipher or secure key storage may use a local plaintext fallback. You are responsible for protecting access to your device and operating system account.
12. Children
Peptide Buddy is not directed to children. The app is intended for adults and is not designed for users under 18 years of age.
13. Privacy Rights And Requests
Depending on where you live, you may have rights to request access, correction, deletion, restriction, portability, or objection related to personal data processed for Peptide Buddy. You can submit requests by email to: peptide.buddy.app@gmail.com
Because Peptide Buddy does not use app accounts or a custom backend, purchase-related requests may require limited information needed to locate the relevant Google Play or RevenueCat purchase record. Please do not include peptide names, dose information, injection sites, health metrics, or other health details in support emails.
14. Changes To This Policy
This Privacy Policy may be updated when the app changes, when providers change, or when legal or store requirements change. The effective date above shows when this page was last updated.
15. Contact
For privacy questions or data deletion requests, contact: peptide.buddy.app@gmail.com