← Back to home

Privacy Policy

Last updated: 2 October 2026

This Privacy Policy explains how the Strathlon mobile application (the "App") handles your information. We have designed Strathlon to keep your data on your device wherever possible. The App does not require an account or a login, and we do not run any advertising or third-party analytics SDKs.

In short: Your data lives on your iPhone. You don't need an account. Your training history is also backed up to your own private iCloud so it survives a new phone, and you can turn that off in the app. Apple Health access is permission-based: Strathlon reads the figures you permit, and with your permission your iPhone saves the food you log in Strathlon (daily totals of calories, protein, carbs and fat) to Apple Health; if you use Strathlon on an Apple Watch, the watch app saves the workouts it records to Apple Health. Those are the only things Strathlon writes. Your Apple Health figures are sent to the AI Coach only if you switch on "Share my health data with the AI coach". When you use the AI Coach, your message, any photo you give it, and the profile and plan context it needs to answer about your programme (including your health & safety details) are sent to our AI provider to generate that response. A few other things leave your phone too: a barcode in a food photo is looked up in a public food database, and, unless you switch them off, the App registers for product-update notifications and reports app steps that failed. Sections 4, 5 and 5A list exactly what, and which switch governs it. Subscriptions are handled entirely by Apple. We don't sell your data, and we never use your health data for advertising.

1. Who we are (Data Controller)

The data controller is Chanaka Ekanayake trading as Strathlon, developer of Strathlon. You can contact us about privacy at support@strathlon.com.

2. No account needed

Strathlon does not require you to create an account, and we do not ask for your name purely to identify you (the name you optionally enter during setup is used only to personalise the App on your device). There is no email/password sign-up and no social login. Your subscription is identified to us only by the anonymous transaction identifier Apple assigns (see section 6). The one time we hold an email address is when you choose to give us one: sending a feature request (from the app, or from the form on this site), or, before 25 September 2026, joining our launch list (see section 14).

3. What we collect, and why

The following is created and stored on your device and is not transmitted to us, except where this policy explicitly says otherwise:

DataWhyWhere it lives
Profile & setup (name, accent colour, age, gender, height, weight, goals, experience, training setup, food preferences, sports and schedules) To build and personalise your training plan and nutrition targets On device. The parts your coach needs to answer about your own programme are included in what is sent when you use an AI feature (see section 5)
Health & safety details you choose to enter (food allergies and supplements to avoid, injuries, pregnancy/breastfeeding, chronic conditions, medications, and the optional relationship-with-food and readiness questions) To keep your plan and your coach's advice safe for you: for example leaving out a food you're allergic to, pointing you to your midwife's or doctor's guidance on eating instead of a calorie target during pregnancy or breastfeeding, and showing you the UK national activity guidance for that period in place of a generated programme On device. Shared with the AI Coach so its advice is safe (see section 5). Not included in the default iCloud backup (see section 7)
Food logs, training history, weight and progress entries To power your tracker, charts and plan progression On device. A summary of where you are (today's totals and targets, your plan phase and your progress) is included in what is sent when you use an AI feature (see section 5)
In-app workout & body analytics (e.g. session and rest data, body-metric and sleep samples) To power your Progress tab, streaks and phase progression On device (Apple SwiftData store). Your weigh-ins and logged sets are also backed up to your own private iCloud (section 7)
Chat messages, food descriptions and food photos you send to the AI Coach To generate coaching answers, meal plans and calorie/macro analysis Sent to our AI processors (section 5); see retention in section 9
Push registration code and failure reports To send product-update notifications, and to see which steps of the App are failing On our Cloudflare Worker (section 5A)
Apple subscription transaction identifier & anonymised usage records (feature, model, token counts, estimated cost) To verify your subscription and meter AI usage fairly On our Cloudflare Worker (section 6)

4. Apple Health (HealthKit)

With your permission, Strathlon reads data from Apple Health to personalise your plan and nutrition targets and to auto-fill your stats. Access is permission-based: Strathlon reads the figures you permit. With your permission, your iPhone saves the food you log in Strathlon to Apple Health as daily totals of calories, protein, carbs and fat, and keeps each day's entries in step when you change that day's food; if you use Strathlon on an Apple Watch, the watch app saves the workouts it records to Apple Health. Those are the only things Strathlon writes, and it changes or removes only the entries it saved itself. Food and workouts Strathlon saved to Apple Health stay in Apple's Health app when you clear your data in Strathlon or delete the App; you can delete them in the Health app. Health data is not sent to us or our AI provider unless you switch on the AI coaching described below or one of the two separate cycle opt-ins in section 4A. Your latest weight, which may come from Apple Health, is part of the default-on iCloud backup to your own iCloud (section 7), and a workout route is used only on your phone (see the list below). The list below is a list of reads only: it sets out what the App asks permission to read from Apple Health, and nothing in it describes anything written back. Specifically, the App requests read access to:

  • Active and resting (basal) energy burned
  • Heart rate, resting heart rate, walking heart rate average and heart-rate variability (HRV)
  • The beat-to-beat heartbeat timings behind your Apple Watch's overnight HRV readings, from which your phone works out its own HRV figure
  • Heart-rate recovery (Apple's one-minute recovery after a hard effort)
  • Respiratory rate
  • Blood oxygen (SpO2)
  • Wrist temperature (overnight, while sleeping)
  • Body temperature you log, for example from a thermometer
  • Blood pressure (systolic and diastolic), from a cuff that saves to Apple Health or readings you add yourself
  • VO₂ max
  • Body weight, height, body-fat percentage and lean body mass
  • Biological sex and date of birth (for accurate metabolic calculations)
  • Steps, flights climbed, walking and running distance, cycling distance, swimming distance and exercise minutes
  • Your Activity ring summaries (Move, Exercise and Stand, with your own goals)
  • Mindful minutes
  • Food calories (dietary energy) that other apps save to Apple Health; the food Strathlon saves there itself is left out of this read
  • Workouts, and the route of a workout that has one. A route is read only to tell outings of the same length apart: on your phone its coordinates are reduced to three numbers and discarded, and the route is never stored, shown or sent anywhere
  • Sleep analysis, including sleep stages (deep/REM/core/awake), sleep efficiency and bed/wake times
  • Menstrual flow, only if you use the cycle-aware features in section 4A (asked for separately)
Health data is never sold and never used for advertising. In line with Apple's requirements, data obtained through HealthKit is used only to provide and personalise the App's features on your device. It is not shared with third parties for advertising or marketing, and is not disclosed to data brokers.

Optional: sharing Health data with the AI Coach. By default, your Apple Health data is not sent to our AI provider. If you turn on "Share my health data with the AI coach" (off by default; offered once during onboarding and available any time in Settings → App settings → Privacy & your data), certain Health-derived figures may be sent to our AI provider (section 5) solely to generate your coaching and the AI Health Analyst's answers, and only when a feature you use needs them. These are: your weight and weight history, BMI and body composition (including body-fat %), your metabolic rate (BMR), your whole-day calorie burn split into its resting and active parts, heart rate and resting heart rate, overnight heart-rate variability (HRV; on nights with enough Apple Watch beat-to-beat timings, an HRV your phone works out from those timings), the heart-rate recovery measured between your sets and Apple's one-minute heart-rate recovery, your walking heart rate compared with your own usual, respiratory rate, blood oxygen (SpO2), overnight wrist temperature, cardio fitness (VO₂ max), your blood pressure as your own average over the last 30 days (or, with no reading in those 30 days, over the last 90) and over the 30 days before, with how many readings are behind each (an average over a single reading is that reading's value) and, when Apple Health shares readings only from a recent date, that date, a note when you logged a body temperature of 38 °C or above in the last 24 hours, with that temperature and the time you logged it, today's steps, flights climbed (today and over the last 7 days), walking and running distance and exercise minutes, your Apple Activity rings over the last 7 days (on how many days each ring was closed, your own Move, Exercise and Stand goals and your average stand hours), your mindful minutes and the number of sessions over the last 7 days, your recent workouts and the heart-rate shape of your most recent one (a dozen figures worked out on your phone, never the readings themselves), a summary of your activities from the last 28 days (for each kind: how many, the latest date, usual length, average heart rate and calories; your five most recent; and how your repeated activities compare with your own earlier ones, never the route), your sleep in detail (including the deep/REM/core/awake breakdown, broken nights, sleep efficiency, bed/wake times and sleep debt), the effort rating you give a session after it, and a derived "readiness" score. The same switch adds your calories burned, energy balance, heart rate and sleep to your written weekly review and to the Progress cards you ask the coach about. Wherever your energy balance goes to the coach, a day with nothing logged in Strathlon counts the food calories another app saved to Apple Health, and the coach is told on how many days that happened. The list of your blood-pressure readings and when each was taken, the beat-to-beat timings and other apps' individual food entries are used only on your phone. If you have told the App you are on hormone therapy, including HRT for menopause (an optional question; see below), that status is also covered by this same switch and is shared only when it is on, so the coach reasons from your actual logged data. This is never sold and never used for advertising, and you can turn it off at any time. Your reproductive/cycle information has its own separate controls and is not governed by this switch. See section 4A.

This same opt-in powers the AI Health Analyst, which lets you ask the coach plain-English questions about your Health data (for example your sleep, resting heart rate or recovery) and shows a "readiness" summary. No new data is shared beyond the figures listed above, and none of your cycle dates, flow, symptoms or history are ever included (see section 4A).

Biological sex and hormone therapy. Strathlon asks for your biological sex as a required setup field. It is a calculation input rather than a label: the metabolic-rate equations the App uses were derived separately for male and female bodies, and the App's minimum daily calorie floor is keyed to it. Like your age and height, it forms part of your basic profile and is included in the standard iCloud backup and in the context sent to the AI Coach, because the calorie model cannot be applied or explained without it. Strathlon separately asks an optional question about hormone therapy (testosterone, estrogen, HRT for menopause, or none / prefer not to say), asked of every user. Its only purpose is accuracy: for testosterone or estrogen, where no measured body-fat percentage or lean mass is available, it adjusts the App's estimate of your body composition, which changes your calorie targets; HRT for menopause uses the standard calorie estimate. It is treated as special-category health data: it is stored on your device, excluded from the iCloud backup unless you switch on the separate, off-by-default "Back up health & safety details", and shared with the AI Coach only under the "Share my health data with the AI coach" switch above. Setting it back to None in Settings → Body & stats deletes it everywhere the App holds it. It is never used for advertising, profiling or sale.

You can grant or revoke Health access at any time in iPhone Settings → Privacy & Security → Health → Strathlon. Declining only means you'll enter some values manually.

4A. Cycle data: what stays, and the two things that can leave

If you log your period in Apple Health, Strathlon can read it to add gentle, optional cycle-aware guidance. Cycle data is special-category data, so it is handled separately from everything in section 4, under its own switches in Settings → Cycle-aware insights. "Cycle-aware insights" itself is on unless you switch it off, and does nothing until you allow Strathlon to read menstrual flow from Apple Health; the two switches that can send anything are off by default. It is not governed by the "Share my health data with the AI coach" switch. So that you can see exactly where the line falls:

Cycle dataDoes it leave your phone?
Your dates, flow, symptoms, cycle length and period history No. They are not sent to our AI provider, and are not included in any analytics or iCloud backup
Your own export of your own data (Settings → Export my data) Yes, and deliberately. The export is a complete copy of your data, made by you, for you, so it includes your cycle dates and phases alongside everything else. The file is written on your phone and goes nowhere until you choose where to send it. If you would rather it did not include cycle data, turn cycle tracking off before exporting
Cycle-aware notes on your Plan tab, including the stronger "train by RPE today" suggestion No. It is worked out and shown on your device, and it does not change your programmed sets, reps or weights
A general phase word (for example "pre-menstrual") Only if you switch on "Share my cycle phase with the AI coach" (off by default). It is a single general word: never a date, a flow level, a symptom or your history
Your calorie target for the day, and a note saying it was deliberately adjusted Only if you switch on "Ease my targets in my pre-period week" (off by default). Your coach then sees the adjusted number like any other target, plus a note that it was deliberately adjusted, but not that your cycle is the reason, unless you have also switched on the phase share above. That note is deliberate: without it, the coach would read a higher target as a mistake or as overeating and correct you

Both switches are off by default and either can be turned off at any time.

5. AI processing (Anthropic & Cloudflare)

The AI Coach features (chat answers, AI meal plans, "describe-to-log", and photo calorie/macro analysis) are powered by a large language model. When you use these features, the App sends the relevant content to a Cloudflare Worker that we operate, which forwards it to Anthropic's Claude models to generate the response. What is sent depends on the feature and may include:

  • The chat message or food description you type;
  • A photo you give it: a meal, a nutrition label (sent on its own with a fixed instruction to read the figures), or a dumbbell, plate, machine display or logbook line when you tap Snap to fill in a workout (sent on its own with a fixed instruction to read the weight and reps). A meal photo also carries today's dish list, today's logged food and the last four exchanges of the chat;
  • Your workout plan and training: your weekly schedule, today's session, the current week day by day with every set you logged, your phase and streak, and your training record;
  • Your food and targets: today's and yesterday's meals, foods you repeat, your targets for every kind of day and any meal plan you have saved;
  • What your coach remembers: your own notes from the "What your coach remembers" screen, what it has learned from your chats and what the App has noticed in your logs;
  • The date, time and time zone on your phone;
  • Your health & safety details: see the box below;
  • Your Apple Health figures, only with the switch in section 4.

Meal plans and shopping lists. Your coach sees your name, age and goals, whether your calories are set at maintenance, your diet type, restrictions, cuisines, cooking time and low-carb substitutions, and any injuries, food allergies, supplements to avoid and health & safety notes, with that day type's calorie, protein, carb and fat targets and the calories each meal should carry (your weight only with health sharing on), to write a day's meal plan and the same to fill a plan's empty slots, with which slots are empty, what the meals already on it add up to and the calories, protein and carbs left for the new meals — only when you tap Generate or Regenerate on a meal plan. When you make a shopping list, the App sends the name and calories of any meal with no ingredients listed, with your diet preferences, allergies and health & safety notes, so the list never suggests something you must not have. Each is sent only when you tap, through our server to our AI processor, in the same way as a coach message.

Health & safety details are always shared with the AI Coach. So that its advice is safe for you, the health & safety details you enter in the App are included with every AI Coach message: food allergies and supplements to avoid, whether you are pregnant or breastfeeding, any chronic conditions and medications you have entered, and any injuries. If you completed the optional relationship-with-food or fitness-readiness questions and something was flagged, the coach is told that a flag was raised (never your individual answers) so that it keeps its guidance gentle and conservative. Your dietary and religious food preferences (for example halal, kosher, vegetarian or vegan) are included for the same reason.

This is not controlled by the "Share my health data with the AI coach" switch, which governs Apple Health measurements only: the figures listed in section 4. We have deliberately chosen to share these details rather than withhold them: a coach that does not know about a nut allergy, a pregnancy or a heart medication can give advice that is unsafe. You can review the full list in the App at Settings → App settings → Privacy & your data → "What your AI coach can see", and you can change or remove any of these details at any time in your profile.

These details are sent to generate that answer only. They are never sold, never used for advertising and are not used to train AI models. To keep follow-up questions fast, our AI provider briefly caches the background context we send (a few minutes); beyond that, our processors apply only their own limited operational retention as described in section 9. We keep no long-term store of your messages. Your cycle dates, flow, symptoms and history are never included. The only cycle-derived things that can ever be included are the two named in section 4A, and only under their own off-by-default switches.

We use the following processors for this feature:

  • Cloudflare, Inc.: hosts the proxy ("Worker") that authenticates your subscription, applies fair-use limits, and routes the request. It does not store the content of your messages or photos.
  • Anthropic PBC: operates the Claude AI models that generate the response from the content sent.

These providers process your content to deliver the feature you requested. Your AI requests are not used to train models under our API arrangement, and we do not attach your name or contact details to them.

Spoken coaching (optional, your own OpenAI key)

Strathlon can speak a set of short coaching cues out loud during a workout: "Paused.", "Resuming.", "Ten seconds. Get ready.", and so on. Generating that audio is off unless you supply your own OpenAI API key and start the one-time download; there is no Strathlon-provided key for it, so if you never enter one, nothing is ever sent to OpenAI.

  • OpenAI, L.P.: turns the phrases into audio, if and only if you have set this up.

What is sent is our own fixed list of coaching phrases (the same list for every user, compiled into the app) together with your API key as the credential. Nothing about you goes with it: no name, no weight, no training, no food, no health data, and nothing you have typed. The audio is then stored on your device, so playing it during a workout makes no further request.

5A. Other things the App sends

Product-update notifications (on unless you switch them off). So we can send you notices about new versions, the App registers with our Cloudflare Worker. It sends five things: the notification code Apple issues to Strathlon on your phone (this identifies that installation of Strathlon; it changes when you reinstall or restore), the word "ios", whether the App is a test or App Store build, your build number, and the kinds of notice you've asked for (currently only product updates). It is not joined to your name, account or subscription. The registration is repeated at most once a day when you open the App. Our server keeps the date it last heard from your phone (the day only) and deletes a registration it hasn't heard from for 90 days, or straight away when Apple says the code is no longer valid. Switch it off in Settings → App settings → Privacy & your data → Product updates.

Failure reports (on unless you switch them off). When a step of the App fails (reading Apple Health, the watch link, the subscription check, iCloud, notifications, downloaded content or spoken coaching), the App sends our Worker five things: which step, a short label for the operation, one word for the kind of failure, the time, and your build number. About once a day it also sends a record that reporting is working. Reports are batched on your phone and sent on a later launch. They contain no name, account, device identifier, logged figure, message or photo. Our server also records the country the connection came from (a two-letter code) and deletes reports after 90 days. Switch it off in Settings → App settings → Privacy & your data → Help improve Strathlon by sharing failures.

Barcode lookup (Open Food Facts). When a food photo you take has a barcode in it, your phone reads the barcode number on the device and asks Open Food Facts, a free public food database run by a French non-profit, for that product's declared nutrition figures. Your phone contacts Open Food Facts directly, so it sees your device's internet address, as any website you visit does. The request carries the barcode number and the App's name, and nothing else: not the photo, and no profile, meal, health or account detail. Open Food Facts is not our processor and handles requests under its own policy.

Feedback and requests. What you send through Feedback & Requests goes to our Worker; section 14.2 describes it.

6. Subscriptions (Apple)

Strathlon's AI features require an auto-renewing subscription, purchased through Apple's App Store using Apple's StoreKit. Apple processes the payment. We never see or store your card or payment details.

To confirm you're entitled to the AI features, the App sends the Apple-signed subscription transaction (a cryptographic token) to our Cloudflare Worker, which verifies it directly with Apple's App Store Server API. The Worker keeps a record keyed to the anonymous Apple original transaction identifier in order to apply daily fair-use limits and to log anonymised AI usage and cost: which AI feature each request was for (for a coach message, including whether it carried part of the app’s built-in guide or was a question about the app that matched none of it), the AI model used, token counts and estimated cost. It does not include what you wrote. This identifier is not your name, email or Apple ID, and is not combined with any directly identifying information by us.

7. Where your data is stored

The large majority of your data (profile, food and training logs, progress, and in-app analytics) is stored on your device and is included in your normal device and iCloud device backups (which Apple controls, rather than us). What our servers hold is: the subscription and usage record described in section 6; the transient AI request content described in section 5; the notification registration and failure reports described in section 5A; the feedback and requests you send us (section 14.2); and, from this website, roadmap votes and visit counts (section 15).

Strathlon's own iCloud backup (your private iCloud, never our servers).

Separately from Apple's device backup, the App can copy some of your data to your own private iCloud account so it is restored if you reinstall or change phone. The backup itself never goes to a Strathlon server and the AI Coach is never given access to it (some of the same information may separately be sent to the coach from your device; see sections 4 and 5). It is split across several switches in Settings → App settings → Privacy & your data:

SwitchDefaultWhat it covers
iCloud backup On Basic details (name, age, sex, height), weight, daily totals, goals, training setup, plan progress, your saved foods, auto-add rules, saved meal plans, schedule changes and holiday breaks, and your food preferences (including any dietary or religious food preference you have set, such as halal, kosher, vegetarian or vegan)
Back up health & safety details Off Allergies and supplements to avoid, injuries, body composition and fitness figures (resting heart rate, VO2 max), pregnancy/breastfeeding, chronic conditions and medications, and your answers to the optional relationship-with-food and readiness questions. While this is off, none of these (including your allergies) are copied to iCloud, and you will be asked to re-enter them after a reinstall
Sync progress photos to iCloud Off Your progress photos
Back up training data to iCloud On Weigh-ins and lifting history

Your cycle dates, flow, symptoms and history are never included in any of these. One cycle-derived detail is included in "Back up health & safety details" when that switch is on: whether you've told us you still menstruate. You can turn any switch off at any time; turning one off also removes that data from your iCloud backup.

8. No advertising, no third-party trackers

Strathlon contains no advertising and no third-party advertising or analytics SDKs (for example, no Facebook SDK, Google Analytics, or similar). We do not track you across apps or websites, and we do not sell or share your personal data for advertising.

9. Retention

On-device data remains until you delete it, reset the App, or delete the App. The AI request content sent to our processors is used to generate your response and is subject to those providers' own limited operational retention (for example, short-term abuse-prevention retention); we do not maintain our own long-term store of your messages or photos. The anonymised subscription/usage records are retained for fair-use enforcement, accounting and fraud prevention. A notification registration is deleted once we haven't heard from your phone for 90 days, and failure reports are deleted after 90 days.

10. Legal basis (UK GDPR)

For users in the UK and EEA, we rely on the following legal bases under the UK GDPR / GDPR:

  • Performance of a contract: to provide the App's features you request, including AI responses and subscription verification.
  • Consent: for access to Apple Health data and your camera/photos, which you grant through the iOS permission prompts and can withdraw at any time.
  • Legitimate interests: to keep the service secure, prevent abuse, and understand anonymised, aggregate AI usage and cost.
  • Explicit consent (Article 9): some of what you may choose to enter is special-category data: health information (allergies, pregnancy or breastfeeding, chronic conditions, medications, injuries, cycle data, hormone-therapy status) and, where a dietary preference such as halal or kosher reflects a religious belief, that preference. Every one of these fields is optional and is entered by you; you provide explicit consent by entering it, and you can remove it at any time in the App. We use it only to make the App's plans and coaching safe and appropriate for you, never for advertising, profiling or sale.

11. Your rights

Because Strathlon doesn't require an account, most of your data is in your own hands: you can view, edit, or delete it directly in the App, and deleting the App removes the on-device data. Where we hold data (the subscription and usage record, the notification registration and failure reports in section 5A, and anything you send us in section 14), you have the right to request access, correction, or deletion, and to object to or restrict processing. Note that we may be unable to link a request to a specific record without the relevant Apple transaction identifier. To exercise your rights, contact support@strathlon.com. You also have the right to lodge a complaint with the UK Information Commissioner's Office (ICO) or your local supervisory authority.

12. Children

Strathlon has a minimum age of 16, and we recommend it for ages 18 and over. Onboarding blocks anyone who indicates they are under 16, and for users aged 16 or 17 the App never sets a weight-loss target or calorie deficit. It keeps their calories at a healthy maintenance level. We do not knowingly collect data from anyone under 16. If you believe someone under 16 has used the App, please contact us so we can help.

13. Camera & photos

Strathlon asks for camera access so you can photograph your food, its packaging and nutrition label, gym equipment when you use Snap to fill, your progress photos, a meal in your meal plan, and your profile picture. When you choose an existing photo instead, Strathlon uses Apple's photo picker, which gives the App only the photo you pick, so it doesn't ask for access to your photo library. Food, label and equipment photos are sent to our AI processors (section 5) to read them; for a barcode, only the number goes to Open Food Facts (section 5A). Progress photos stay on your iPhone unless you switch on Sync progress photos to iCloud (section 7), and a meal or profile photo stays in the App.

14. Email addresses you give us

There are two, and only two, places where we hold an email address you chose to give us. They are stored separately, in different records, and are used for different things.

14.1 Launch notification list (closed)

Until 25 September 2026, you could register your interest on our website ("register your interest" / "Notify me"). For anyone who did, we store: your email address, the time you signed up, which page you signed up on, and the exact consent text you agreed to. We use this for a single purpose: to send you one email announcing Strathlon's launch on the App Store. It is never shared with anyone else and never used for any other marketing.

The lawful basis is your consent, which you can withdraw at any time. The list is deleted no later than 60 days after the App Store launch. To be removed sooner, use the unsubscribe link in any email we send, or contact support@strathlon.com.

14.2 Feature requests and bug reports (in the App, or on our website form)

When you send us a feature request or bug report, the email field is optional. You can submit without it. If you do give one, it is stored with that submission, alongside the request itself: what you wrote (its type, title and description), the time you sent it, and whether it came from the App or the website form. Submissions from the App also carry a short technical note (the App version and build, your iOS version and your device model) and a random per-install identifier generated on your device, used only to rate-limit and de-duplicate submissions. That identifier is not your name, your email or your Apple ID, and there is no account for it to be attached to.

We use the email address for one thing: to reply to you about that request. It is not added to the launch list in 14.1, used for marketing, or shown publicly. Our public roadmap lists only items we choose to publish, and shows only a title and a short summary for each; it does not show your email address or any other contact detail.

The lawful basis is our legitimate interest in receiving, triaging and responding to product feedback. Unlike the launch list, feature requests have no automatic deletion schedule: we keep them while the request is still relevant to the product, so we can see what was asked for and why. To have your submission or your email address removed from it, contact support@strathlon.com.

15. Website cookies and visit measurement

Our website sets one cookie, and only if you vote on the public roadmap. It is described immediately below. Nothing else on the site sets a cookie, and the App sets none at all. We use no advertising cookies, no third-party analytics cookies, and no cross-site tracking of any kind.

The roadmap voting cookie (st_voter). The first time you vote on a feature request, we set a first-party cookie so that the next vote you cast is recognised as coming from the same browser. It contains a randomly generated identifier and a signature proving we issued it, and nothing else. It is not derived from your name, your email, your IP address or anything you have told us, and it is not linked to any Strathlon account. Its only purpose is to keep voting fair: one browser, one vote per item, without making you create an account.

It lasts one year, is marked HttpOnly so scripts on the page cannot read it, Secure so it is only ever sent over HTTPS, and SameSite=Lax so it is not sent from other websites. It is set only on strathlon.com. Because it identifies a browser rather than a person, we cannot use it to work out who you are. If you never vote, it is never set; clearing your browser's cookies removes it, and your existing votes stay counted but your browser will be treated as new if you vote again. Our lawful basis is our legitimate interest in preventing repeat voting from distorting the roadmap.

Visit measurement, which uses no cookies. On our website only (not in the App), we count arrivals so we can tell whether people are finding our guides. This uses no cookies, no third-party analytics service, and nothing that can identify you. When a page loads, we record the page you arrived on, the time, the hostname of the site that linked you (for example "google.com" or "chatgpt.com"), and the country your request reached us from.

We deliberately do not store your IP address, any identifier, your browser's user-agent string, or the address of the referring page; we keep only its bare hostname, because a full referring address can contain search terms and other personal details. We only record the page you arrive on. Where you go next is not recorded, so there is no browsing trail to reconstruct. The data is processed by Cloudflare on our behalf and never leaves it. Our lawful basis is our legitimate interest in understanding how our website is found; because nothing identifies you, there is nothing for us to link back to a person.

16. Changes to this policy

We may update this Privacy Policy from time to time. Material changes will be reflected by the "Last updated" date above and, where appropriate, highlighted in the App.

17. Contact

Questions about this policy or your data? Email support@strathlon.com.

Terms of Use · Support · Home