The short version.
Puff does not collect, transmit, or store any personal data on external servers. Everything you log stays on your device. We have no account system, no analytics that identify you, and no way to access your data even if we wanted to. This policy exists to be transparent about that.
We built Puff with privacy as a hard constraint, not a feature. The nature of what this app tracks — personal consumption habits — means that privacy isn't optional. Your data is yours. We designed the entire architecture around that principle.
Who we are.
Puff is an independent mobile application developed and published as a sole-developer project. References to "we," "us," or "our" in this policy refer to the developer of Puff.
This application is available on the Apple App Store and Google Play Store. By downloading and using Puff, you agree to the terms described in this policy.
What we collect.
Data you enter
When you use Puff, you log sessions — the type, amount, and time of consumption events. This data is stored exclusively on your device using local storage (SQLite / AsyncStorage). It never leaves your phone unless you explicitly export it yourself.
The following is stored locally on your device only:
- Session logs (type, amount, timestamp)
- Your daily and weekly goal settings
- Your first name, used only for the in-app greeting
- Notification preferences
- Streak and historical summary data derived from your logs
Crash reports (optional)
If the app crashes, your device's operating system may automatically generate a crash report. On iOS, these are managed by Apple and subject to Apple's Privacy Policy. We may receive anonymized, aggregated crash data through the App Store Connect platform. This data contains no personal information and cannot be linked to you individually.
App Store analytics
Apple and Google collect standard app store analytics (download counts, general region data, app version usage). This data is provided to us in aggregated, anonymized form only. We cannot identify individual users from this data.
What we don't collect.
To be explicit about what Puff does not do:
- We do not create or require user accounts
- We do not collect your name, email address, phone number, or any contact information
- We do not transmit your session logs or consumption data to any server
- We do not use advertising SDKs or sell data to advertisers
- We do not use third-party analytics tools (such as Mixpanel, Amplitude, Firebase Analytics, or similar) that track individual behavior
- We do not access your location, contacts, camera, microphone, or any device sensor beyond what's needed to display the app
- We do not share any data with third parties for marketing purposes
- We do not build profiles about you or your behavior
Where your data lives.
All data you enter into Puff is stored locally on your device. Specifically:
iOS
Data is stored in the app's sandboxed local storage using SQLite. The widget reads data from a shared App Group container — a local, on-device storage mechanism that allows the home screen widget and the main app to share data without any network communication. This data is included in iCloud Backup if you have iCloud Backup enabled for your device. You can disable this in your iPhone settings if desired.
Android
Data is stored in the app's private internal storage using SQLite and SharedPreferences. The widget reads from SharedPreferences within the same app package. This data may be included in Android Auto Backup if enabled on your device.
Exporting your data
Puff includes an export feature that allows you to download your session history as a CSV file. This export is initiated entirely by you, stored to your device's local file system, and we have no visibility into or access to exported files.
Deleting your data
You can delete all your data at any time from the Profile screen using the "Reset all data" option. This permanently removes all locally stored session logs, goals, and preferences from your device. Uninstalling the app also removes all locally stored data.
Third parties.
RevenueCat (subscription management)
Puff uses RevenueCat to manage in-app subscriptions. RevenueCat processes transaction data (purchase receipts, subscription status) in order to verify and manage your premium access. RevenueCat does not receive your session logs or any consumption data. RevenueCat assigns you an anonymous identifier for subscription management purposes. For more information, see RevenueCat's Privacy Policy at revenuecat.com/privacy.
Apple App Store / Google Play
Purchases made through the App Store or Google Play are processed by Apple and Google respectively, subject to their own privacy policies. We receive confirmation that a purchase was made, but we do not receive your payment details.
No advertising networks
Puff contains no advertising. We do not integrate any advertising SDKs and do not participate in any ad targeting or tracking networks.
Children.
Puff is intended for adults only. The app is not directed at, and should not be used by, anyone under the age of 18 (or the legal age of majority in their jurisdiction). We do not knowingly collect any information from minors. If you believe a minor has used this application, please contact us using the details below.
Policy changes.
If we make material changes to this privacy policy, we will update the "Last updated" date at the top of this page and, where appropriate, notify you through the app. Your continued use of Puff after any changes constitutes acceptance of the updated policy.
Because we do not collect email addresses, we cannot notify you by email. We recommend checking this page periodically. Any changes will always be in the direction of greater privacy protection — we will never introduce data collection practices that contradict the principles stated here without explicit notice and your consent.
Your rights.
Because all your data is stored locally on your device and we have no access to it, most traditional data subject rights (access, portability, correction, deletion) are exercised directly by you through the app itself:
- Access: all your data is visible within the app at all times
- Export: use the export feature in Profile → Data to download your full history as CSV
- Deletion: use "Reset all data" in Profile, or uninstall the app
- Correction: individual sessions can be edited or deleted from the History screen
If you are located in the European Union, the United Kingdom, or California, you may have additional rights under GDPR, UK GDPR, or CCPA respectively. Given that we do not collect or process personal data on our servers, most of these rights are automatically satisfied by our architecture. For any questions, contact us below.
Contact.
If you have any questions about this privacy policy or how Puff handles your data, please reach out. We read every message.