Privacy Policy
Last updated 1 August 2026
Pause is built to be quiet with your data. This policy explains what we collect, why we collect it, who can see it, and how you stay in control. Health data is sensitive, so we treat it that way.
1. Who we are
This policy applies to the Pause iPhone app and this website (together, “Pause”). The operator of Pause is the data controller for the personal information described here. You can reach us at privacy@app-pause.com.
2. Information we process
- Account information: the identifier provided when you sign in (for example Sign in with Apple, which may relay a private email address), and your display name if you set one.
- Health and activity data you choose to share: for example steps, workouts, energy, distance, heart-rate-derived measures and sleep, read from your device’s health data with your explicit permission.
- Profile and preference information you enter: such as goals, activities and settings.
- Technical information: device model, operating-system version, app version, language, crash reports and basic diagnostics used to keep the app working.
- Support correspondence: what you send us when you contact us.
We do not ask for and do not want government identifiers, payment card numbers (Apple handles purchases), or clinical records.
3. Your health data
Pause reads your health data only after you grant permission, and only the categories you approve. You can review or revoke access at any time in your device’s health settings. Revoking access stops new data from reaching Pause.
Health data obtained through HealthKit is never used for advertising, marketing or data-broker purposes, is never sold, and is never shared with third parties except as needed to provide the service to you or where you direct us to.
4. Why we process it (and our legal bases)
- To provide the service — generating your daily read and insights. Legal basis: performance of our contract with you, and your explicit consent for health data.
- To keep the app secure and working — diagnostics, crash handling, abuse prevention. Legal basis: our legitimate interests.
- To support you — answering your messages. Legal basis: contract and legitimate interests.
- To meet legal obligations — where the law requires it. Legal basis: legal obligation.
Where we rely on consent, you can withdraw it at any time; that does not affect processing already carried out.
5. Automated content
Your daily read is generated automatically from the data you share. It is descriptive, general-wellness text only — it is not a diagnosis, a clinical score, or a decision that produces legal or similarly significant effects for you. No profiling is used to make such decisions about you.
6. What we never do
- We do not sell or rent your personal information.
- We do not share your health data with advertisers, insurers, employers or data brokers.
- We do not use your health data to target ads.
- We do not publish your data or make it visible to other users.
7. Who processes data for us
We use a small number of service providers strictly to run Pause — for example cloud hosting and database infrastructure, authentication, crash and error reporting, and automated text generation. They act on our instructions under contract, may not use your data for their own purposes, and are bound by confidentiality and security obligations.
We may also disclose information where legally required, to protect our rights or someone else’s safety, or as part of a corporate transaction (in which case this policy continues to apply to the transferred data).
8. International transfers
Our providers may process data outside your country, including in the United States and the European Union. Where data leaves the EEA, UK or Switzerland, we rely on appropriate safeguards such as the European Commission’s Standard Contractual Clauses together with additional technical measures.
9. Retention
We keep your account and derived content for as long as your account exists. Diagnostic logs are kept for a short period and then deleted or aggregated. When you delete your account, we delete or irreversibly anonymise your personal data within 30 days, except where a limited retention period is required by law.
10. Security
We use encryption in transit, access controls, and row-level authorisation so that your records are only reachable by your account. No system is perfectly secure, so we cannot guarantee absolute security, but we take the protection of health data seriously and act promptly on any incident.
11. Your rights
Depending on where you live, you may have the right to access, correct, delete, restrict or object to processing, to receive a portable copy of your data, and to withdraw consent.
- EEA/UK (GDPR): the rights above, plus the right to complain to your local supervisory authority.
- California (CCPA/CPRA): the right to know, delete, correct, and to opt out of sale or sharing — we do not sell or share personal information as those terms are defined.
- Other regions: equivalent rights under applicable local law.
You can delete your account from within the app, or email us and we will action your request free of charge within the timeframe required by law.
12. Children
Pause is not intended for children under 16 and we do not knowingly collect their data. If you believe a child has provided us information, contact us and we will delete it.
13. Cookies and this website
This marketing site uses only what is necessary to serve the page. We do not set advertising cookies or sell website visitor data.
14. Changes to this policy
We will update this page when our practices change and revise the date at the top. Material changes will also be signalled in the app before they take effect.
15. Contact
Privacy questions or requests: privacy@app-pause.com
