Summary: GlucoBot processes your glucose data locally on your device. We do not sell your personal data. We only collect what is necessary to deliver the app's features.
1. Introduction
GlucoBot ("the App") is developed by Gabbo Tech ("we", "us", "our"). This Privacy Policy describes how we collect, use, and protect your information when you use GlucoBot.
By using the App, you agree to the practices described in this policy. If you do not agree, please do not use the App.
2. Information We Collect
2.1 Glucose Data
GlucoBot retrieves your continuous glucose monitor (CGM) data from third-party services such as LibreLinkUp. This data includes:
- Glucose readings and timestamps
- Trend direction indicators
- Sensor connection status
This data is stored locally on your device and, if you enable it, synced to Apple Health (HealthKit). We do not store your glucose data on our servers beyond what is needed for real-time notification delivery.
2.2 Account Credentials
To connect to your CGM provider (e.g., LibreLinkUp), you provide your login credentials. These credentials are:
- Stored securely in the iOS Keychain on your device
- Encrypted with AES-256-GCM if transmitted to our background notification service
- Never shared with third parties
- Deleted from our servers when you disconnect your account or unregister from notifications
2.3 Subscription Information
If you subscribe to GlucoBot Premium, your purchase is processed by Apple through the App Store. We use RevenueCat to manage subscription status. RevenueCat receives:
- An anonymous app user ID
- Purchase receipts from the App Store
We do not have access to your payment details (credit card number, billing address, etc.).
2.4 Device and Usage Data
We may collect limited technical data for crash reporting and diagnostics:
- Device model and iOS version
- App version
- Crash logs and performance metrics (via Apple's built-in analytics)
We do not use third-party analytics SDKs. We do not track your behavior for advertising purposes.
3. How We Use Your Information
We use the collected information to:
- Display your glucose readings, trends, and statistics
- Send real-time glucose alerts and notifications
- Update widgets, Live Activities, and Apple Watch complications
- Sync glucose data to Apple Health (if enabled by you)
- Manage your subscription status
- Diagnose and fix technical issues
4. Background Notification Service
To deliver real-time glucose alerts when the app is not open, GlucoBot operates a background notification service. This service:
- Periodically retrieves your latest glucose reading from your CGM provider
- Sends push notifications to your device via Apple Push Notification service (APNs)
- Stores your encrypted CGM credentials and device push token on our server
- Automatically deletes your data when you disconnect your account, disable notifications, or uninstall the app (after an inactivity timeout)
5. Data Storage and Security
- On-device: Glucose data is stored locally using encrypted device storage. Credentials are stored in the iOS Keychain.
- On our servers: Only encrypted CGM credentials and push tokens are stored, solely for the background notification service. Data is encrypted at rest and in transit.
- Apple Health: Data synced to HealthKit is governed by Apple's privacy policies and your device's Health privacy settings.
6. Data Sharing
We do not sell, rent, or share your personal data with third parties for marketing or advertising.
We share data only with:
- Apple: App Store purchase processing, push notifications, crash reporting
- RevenueCat: Subscription management (anonymous user ID and purchase receipts only)
- Your CGM provider: Your credentials are sent to your provider's API (e.g., LibreLinkUp) to retrieve your glucose data
7. Your Rights and Choices
You can:
- Disconnect your account at any time in the app's Settings, which removes your credentials from our servers
- Disable HealthKit sync in the app or in iOS Settings > Health
- Disable notifications in iOS Settings
- Delete your data by uninstalling the app. On-device data is removed immediately. Server-side data is removed after detecting inactivity.
- Request data deletion by contacting us at the email below
8. Children's Privacy
GlucoBot is not directed at children under 17. We do not knowingly collect information from children. If you believe a child has provided us with personal data, please contact us and we will delete it.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes through the App or by updating the effective date above. Continued use of the App after changes constitutes acceptance of the updated policy.
10. Contact Us
If you have questions about this Privacy Policy or your data, contact us at:
Gabbo Tech
Email: support@gabbotech.com