NoTestudo Privacy Policy
Effective date: September 12, 2026
NoTestudo (“the app,” “we”) is a habit-tracking app that uses your device’s location to help you understand and improve where you spend your time. This policy explains what we collect, why, and the choices you have. We aim to be plain about it: location is the core of the app, and we treat that data accordingly.
Information we collect
Account information. When you create an account we collect your name, email address, and authentication identifiers. Sign-in is handled by our authentication provider (Clerk).
Location and visit data. With your permission, the app records visits — places where your device stops, with arrival/departure times — including in the background if you enable it. Visit data is used to compute your personal stats (time and money saved or spent), power the in-app map and journey views, and score progress toward the goals you choose.
Places information. Place names and categories near your visits are retrieved from Google Places to label your activity (for example “gym” or “coffee shop”).
Goals and preferences. The goals, avoid-categories, and settings you configure during onboarding and afterward. This can include health, sobriety and fitness goals, progress, and a weight baseline you choose to enter. We also store savings baselines and savings amounts and notes you record. These records are associated with your account.
Social features. If you join groups or leaderboards, your display name and time-based standings are visible to members of those groups. We store your friend connections, group memberships, community presence and which group activity you have read.
Device identifiers. We associate app-generated device identifiers with your account to manage tracking authority, synchronize visits and manage notification registrations.
Schedules and attendance. Classes and events you save include their dates, times, time zones and optional private map locations. We compare scheduled sessions with available visit records to estimate attendance and time spent there. We store recorded arrival and departure times, duration, and any attendance corrections you enter. Missing location data does not prove that you missed a class.
Optional Google Calendar connection. With your authorization, we read names, identifiers and time zones for calendars available to your Google account so you can choose which calendars to connect. For calendars you select, we read event titles, dates, times, recurrence details, cancellations and location text. You review which classes or events to save. We do not modify your Google Calendar events. Connection credentials are stored encrypted.
Optional schedule images. If you import a timetable picture, we send that image to Anthropic to extract schedule details for your review. Upload only the information needed for your schedule. You can also attach a class or event image, which is stored privately for your own use.
Purchases. Subscription status is processed by Apple and RevenueCat. We never see or store your payment card details.
How we use information
To provide the app’s core features: visit tracking, stats, maps, journeys, goals, class and event attendance, and group leaderboards.
To suggest people and groups based on shared goal categories and your existing connections.
To interpret goals and summarize activity. OpenRouter processes the goal text you enter to identify relevant categories. When AI summaries are enabled, Anthropic processes measured activity facts, which can include place names and categories, goal labels, habit progress, visit counts and durations, reporting periods, and money or time saved. These summary prompts do not include precise coordinates or account contact fields. Text you enter can contain personal information, so avoid including sensitive details in goal descriptions.
To operate, debug, and improve the app. Sentry processes crash and performance diagnostics with its default personal-information collection disabled. Diagnostic reports can still include a generated installation identifier. The app’s separate local error records redact emails, tokens, URLs, and coordinates before storage.
What we do not do
We do not sell your personal data.
We do not share precise map coordinates or raw visit history through leaderboards or attendance sharing. Group leaderboards show time-based standings. Attendance sharing is a separate, optional feature described below.
We do not use your data for third-party advertising.
Optional attendance sharing
Schedules are private by default. You can choose friends who may see a particular class or event’s title, scheduled times, attendance status, recorded arrival and departure times, duration, and separately labeled corrections you enter. Sharing applies to sessions within the sharing period. Private map coordinates and attached images are not included. A class title or time can still reveal information about your routine.
You can stop sharing in the app. Revoking access prevents further access through this feature; it cannot erase information a recipient already saw or copied.
Service providers
We rely on: Clerk (authentication), Convex (application backend and data storage and private images), Google Places (place names and categories), Google Calendar (optional schedule import and synchronization), OpenRouter (goal-text interpretation), Anthropic (activity summaries and optional timetable image extraction), Sentry (crash and performance diagnostics), and RevenueCat and Apple (subscriptions).
Your controls
Location permission is always under your control in iOS Settings; the app functions in a reduced mode without it.
Calendar and schedule controls. Disconnect Google Calendar to stop future synchronization and remove stored connection credentials. Classes and events already saved remain until you delete them. You can edit their map locations, remove attached photos, and change who can see attendance.
Account deletion is available in the app under Settings → Account. Deleting your account removes your visits, places, goals, groups, friends, schedules, attendance, uploaded images and profile from our servers first, then clears the data held on your device. Apple and RevenueCat retain subscription records under their own policies.
Data questions — contact us at the address below and we will help, including with access or deletion requests.
Data retention
Visit and goal data is retained while your account is active so your stats and history work. Deleting your account removes it. Redacted crash diagnostics are kept only as long as needed to fix the issue.
Saved schedules and attached class or event images remain until removed or your account is deleted. Timetable images are temporary: we attempt to delete them after extraction, and expired or abandoned uploads enter cleanup. Failed deletions are retried rather than treated as complete. Removing a schedule also removes its sharing and attendance records and queues its attached image for cleanup. Deletion can require several processing steps.
Children
NoTestudo is not directed at children under 13, and we do not knowingly collect data from them.
Changes
If this policy changes materially, we will update this page and note the new effective date above.
Contact
Questions about privacy: jaiden@narb.cc