Privacy Policy
Last updated: September 14, 2026
1. Introduction
Welcome to loggd.life ("we," "our," or "us"). We are committed to protecting your personal data and respecting your privacy. This Privacy Policy explains how we collect, use, store, and protect your information when you use our personal growth platform at loggd.life and the Loggd mobile application (together, the "Service").
loggd.life is a personal growth platform that helps you track habits, set goals, complete daily check-ins, and plan your life vision. We use gamification (points, levels, badges, leaderboards) to motivate consistent engagement. The Service is available via our website at loggd.life and our mobile app for iOS and Android.
2. Data Controller
loggd.life is operated by BALAN EUSEBIU-MARIAN PFA, based in Iasi, Romania (CUI: 42534241). For questions about this policy or your data, contact us at eusebiu@loggd.life.
3. Data We Collect
3.1 Account Information
When you create an account, we collect:
- Email address
- Username (you can change it; it is shown with your forum posts)
- Password (stored securely hashed, never in plain text)
- Timezone (auto-detected for scheduling features)
3.2 Profile Information
Optional information you may choose to add:
- Bio/description
- Profile visibility preferences (public or private)
3.3 Content You Create
The core of our service involves storing content you create:
- Habits: Names, descriptions, frequencies, check-ins, notes, streaks, and skip reasons
- Goals: Titles, descriptions, milestones, tasks, progress updates, and completion status
- Daily Check-ins: Morning priorities, evening reflections, mood ratings (1-10), and tasks
- Vision Board: Eulogy method entries, bucket list items, mission statement, definition of success, odyssey plans, and future calendar
- Tasks and Notes: Tasks, subtasks, lists, tags, notes pages, and reminders
- Focus Sessions: Session times, durations, and notes
- Forum: Posts, replies, and votes you make, and hearts you give
3.4 Gamification Data
We automatically calculate and store:
- Points earned from activities
- Current level and tier
- Current and longest streaks
- Badges earned
- Leaderboard rankings (monthly and all-time)
- Activity history and timestamps
3.5 Survey Responses and Support Requests
When you complete our onboarding survey, we collect your responses about how you found us, what challenges you face, your experience with similar apps, and any feedback you provide. This helps us improve the service. When you contact support from the app or the website, we store your messages and our replies, the topic you pick, and your platform, app version and timezone so we can help.
3.6 Payment Information
If you subscribe to Pro, payments are processed securely by the following providers depending on your platform:
- Website: Lemon Squeezy processes payments. We store your Lemon Squeezy customer ID and subscription ID.
- iOS App: Apple processes payments through the App Store. We receive subscription status and transaction identifiers via RevenueCat (our subscription management service), but we never receive your Apple ID password or payment card details.
- Android App: Google processes payments through Google Play. We receive subscription status and transaction identifiers via RevenueCat.
We never store your full credit card number, CVV, or other sensitive payment details. All payment security is handled by the respective payment processors.
3.7 Automatically Collected Data
- Usage Data: Activity timestamps, features used, pages visited
- Device Information: Browser type, operating system, screen size, app version (mobile), platform (iOS/Android)
- Log Data: IP address, access times, referring URLs
- Approximate Location: We derive your approximate location (country, region, city) from your IP address at login using ip-api.com. This is used solely for login session security (detecting unusual access). We do not collect precise GPS location.
- Cookies (web): Session cookies for authentication, plus the analytics and marketing cookies described in Section 8, only if you allow them
- Local Storage (mobile): The mobile app stores encrypted data on your device (authentication tokens, cached content, user preferences) using secure storage. This data never leaves your device except as described in this policy.
3.8 Login Session Data
When you log in, sign up, or start a guest account, we record session information for security and fraud prevention:
- Device & Browser: Device type (mobile/desktop), browser name or app version, operating system, language, timezone, and how you signed in
- Network: IP address and approximate location (country, region, city, and rough coordinates) derived from IP
- Session timing: Login time, last activity, session duration
Purpose: This data helps us detect unauthorized access to your account and is processed under our legitimate interest in security. This data is deleted when you delete your account.
3.9 Third-Party Integrations (Threads by Meta)
You may optionally connect your Threads account to automatically track your posting activity as a habit. When you connect, we access and store:
- Your Threads username, display name, and profile picture URL
- The dates and number of posts you published (we do not store post content or media)
- An OAuth access token to communicate with the Threads API (encrypted at rest)
Purpose: This data is used solely to create automatic habit check-ins based on your posting activity and to display your posting streak and consistency stats.
Disconnecting: You can disconnect your Threads account at any time from the Habits page. When you disconnect, or when you remove our app from your Threads settings, all Threads-related data (tokens, username, synced check-ins, and sync logs) is immediately and permanently deleted from our systems.
3.10 Social Login (Mobile App)
When you sign in using Apple or Google, we receive:
- Sign in with Apple: Your email address (which may be a private relay address), a unique Apple subscriber ID, and your name if you choose to share it. We verify your identity token directly with Apple.
- Sign in with Google: Your email address, a unique Google subscriber ID, and your name. We verify your identity token with Google's servers.
- We use your name only while signing you in and do not store it.
We do not receive or store your Apple ID password or Google password. You can disconnect a social login provider from your account settings at any time.
3.11 Push Notifications (Mobile App)
If you enable push notifications, we collect:
- A device push token (a unique identifier for delivering notifications to your device)
- Your device platform (iOS or Android) and device name
Push notifications are delivered via the Expo Push Service, which acts as an intermediary to Apple Push Notification service (APNs) and Firebase Cloud Messaging (FCM). The text of a notification, such as a habit name or task title, passes through the Expo Push Service to reach your device. You can disable push notifications at any time from your device settings. Your push token is deleted from our servers when you log out.
3.12 Biometric Authentication (Mobile App)
You may optionally enable Face ID or fingerprint authentication for faster login. Your biometric data (face geometry, fingerprints) is never accessed, collected, or transmitted by Loggd. Biometric verification is handled entirely by your device's operating system. We only store an encrypted authentication token on your device, protected by the OS biometric check.
3.13 Crash Reports and Diagnostics (Mobile App)
We use Sentry to collect crash reports and performance data to improve app stability. When an error occurs, we may collect:
- Error details and stack traces
- Device type, operating system version, and app version
- What the app was doing just before the error, such as the screens opened and the requests made (this can include text you searched for)
- Performance measurements for a sample of app sessions
- Your user ID, username, and email (to help us identify and resolve issues affecting your account)
Crash data is processed by Sentry (sentry.io) under their Privacy Policy. We do not use crash data for advertising or tracking purposes.
3.14 Voice Setup and AI Suggestions (Mobile App)
When you set up the mobile app you can tell the assistant about your days and goals by voice or by typing. This step is optional and you can skip it.
- Voice recordings: if you use your voice, the recording is sent to our servers over an encrypted connection and transcribed by OpenAI (OpenAI, L.L.C.). The audio file is deleted from our servers immediately after transcription, and the app deletes its copy from your device. We do not keep voice recordings.
- Transcript: the words you said or typed are shown to you to review and edit before they are sent. They are then processed by OpenAI to suggest starter habits, goals, tasks and bucket-list items, which you can keep or discard. We store the transcript for up to 30 days to check and improve the quality of the suggestions, after which it is deleted. The suggestions you keep are stored as part of your account like any other habit or goal.
- OpenAI: processes this data under its API data-usage terms; API data is not used to train OpenAI's models. See OpenAI's policies.
We do not use this data for advertising or tracking. You can request a copy or deletion of it at any time (see Your Rights below).
3.15 Guest Accounts (Mobile App)
You can use the mobile app without creating an account. A guest account is a full account tied to your app installation, identified by a random identifier rather than an email address; your habits, tasks, goals and settings are stored under it. If you later add an email address or sign in with Apple or Google, the guest account becomes your account and everything you made is kept. Guest accounts are not deleted automatically; you can delete a guest account and all of its data at any time from Settings, or by contacting us.
3.16 Where the App Install Came From (Android App)
When you install the Android app from Google Play, Google tells the app which link you used, for example our website. The app sends this to us when your account is created, and we save it with your account. The iPhone app does not get this information.
3.17 Your Age Range (Mobile App)
Our Terms require you to be at least 16, so the mobile app asks your phone for your age range. On iPhone, Apple asks you whether to share it. On Android, Google Play provides it in the places where it is available. We only receive a range, such as 13 to 15, 16 to 17 or 18 and over, never your date of birth. We save the range, how it was provided (for example by you or by a parent) and when we received it, with your account, and we count the results in our app statistics. If the range is under 16, the app cannot be used and you can delete your account from that screen. We do not use your age range for advertising and do not share it with anyone.
4. How We Use Your Data
We use your data for the following purposes:
4.1 Providing the Service
- Store and display your habits, goals, check-ins, reviews, and vision entries
- Calculate points, levels, streaks, and badges
- Generate your activity graph and progress visualizations
- Power the leaderboard rankings
- Unlock features as you progress through levels
4.2 Communications
- In-app notifications (level ups, badge unlocks, streak milestones, goal progress)
- Emails such as streak protection, weekly summaries, activation reminders, comeback messages, product updates, and occasional offers. You can turn these off in Settings or with the unsubscribe link in any email
- Important service announcements and security alerts
4.3 Service Improvement
- Analyze usage patterns to improve features
- Debug issues and fix bugs
- Develop new features based on user behavior
- Use survey feedback to prioritize improvements
4.4 Safety and Security
- Prevent fraud, abuse, and gaming of the points system
- Enforce our Terms of Service
- Protect other users and maintain platform integrity
5. Legal Basis for Processing (GDPR)
Under GDPR, we process your data based on:
- Contract Performance: Processing necessary to provide the service you signed up for (account data, content, gamification)
- Legitimate Interests: Service improvement, fraud prevention, analytics that don't override your rights, and emails about updates and offers (you can opt out anytime)
- Consent: Analytics and marketing cookies you allow (see Section 8)
- Legal Obligation: Compliance with applicable laws
6. Data Sharing
We do not sell your personal data. We share data only in these limited circumstances:
6.1 Service Providers
- Lemon Squeezy: Payment processing for Pro subscriptions (website)
- Apple / Google: Payment processing for in-app purchases (mobile app)
- RevenueCat: Subscription management and receipt validation for mobile app purchases
- Email Service (Resend): Delivery of transactional and notification emails
- Hosting Provider (Laravel Cloud): Server infrastructure to run the service
- Sentry: Crash reporting and error tracking (mobile app)
- Expo Push Service: Push notification delivery to mobile devices
- ip-api.com: IP-based approximate geolocation for login session security
- OpenAI: Transcribes voice setup recordings and suggests a starter plan from what you said or typed (mobile app, see Section 3.14)
- Laravel Nightwatch: Server monitoring. Request and error logs, which can include your user ID, email address, and IP address
- GitHub contributions API (github-contributions-api.jogruber.de): Only if you add a GitHub habit, we send your GitHub username to read your public contribution counts
- Meta Platforms (Threads API): Only when you connect your Threads account — we exchange data with Meta's API to sync your posting activity (see Section 3.9)
These providers only access data necessary to perform their functions and are bound by confidentiality obligations.
6.2 Public Features
Profiles are private by default, and guest accounts are always private. If you make your profile public in Settings, the following is visible to other users:
- Username and bio
- Activity graph (showing consistency, not specific content)
- Badges earned
- Level, points, and streak information
- Your place on the leaderboards
- Habits and goals you choose to feature publicly
You control what habits and goals to share, and you can make your profile private again at any time. In the forum, your username, avatar, and level are shown with your posts and replies, even when your profile is private.
6.3 Legal Requirements
We may disclose data if required by law, court order, or government request, or to protect our rights, safety, or property.
7. Data Retention
- Active Accounts: We retain your data for as long as your account is active
- Account Deletion: When you delete your account in the app or on the website, your account and personal data are deleted right away. Forum posts you wrote stay visible without your name or a link to you, payment records are kept without a link to your account for accounting and tax purposes, and past leaderboard winners lists keep the username shown at the time
- Backups: Encrypted backups may retain data for up to 90 days before being overwritten
- Anonymized Data: We may retain anonymized, aggregated statistics that cannot identify you
- Legal Holds: We may retain data longer if required for legal proceedings or disputes
Deleting Your Account
You can delete your loggd.life account and its data at any time:
- In the app: Settings, then Data & Legal, then Delete Account
- On the website: Settings, then Delete account
- By email: write to eusebiu@loggd.life from the email address on your account, and we will delete it within 30 days
If you bought lifetime access, the purchase needs to be refunded before the account can be deleted, so contact us and we will take care of both. You can also delete single items, such as a habit, task, note, or forum post, at any time without deleting your account, or email us to delete specific data. What is deleted and what is kept is described above.
8. Cookies & Analytics
When you first visit, we ask which cookies you allow. Necessary cookies are always on. Analytics and marketing cookies are only used if you allow them, and you can change your choice at any time from Cookie settings at the bottom of our pages or in the web app's Settings.
Necessary (always on)
- Session Cookie: Keeps you logged in during your visit
- CSRF Token: Protects against cross-site request forgery attacks
- Dark Mode Preference: Remembers your display preference (stored in localStorage)
- Your cookie choice: Remembers what you allowed, for up to 12 months
Analytics (only if you allow them)
- Google Analytics: We use Google Analytics to understand how visitors use our site (pages visited, time on site, general location). This helps us improve the service. Google sets cookies to collect this data.
- Where you came from: We save a cookie with where you came from (for example Google, a site that linked to us, or one of our own links) and the first page you opened. It lasts 30 days and is not shared with anyone. If you create an account, we save this on your account so we can see which pages and sources bring people to loggd.life.
Marketing (only if you allow them)
- Meta Pixel: We use the Meta Pixel to measure our ads on Facebook and Instagram. It tells Meta when you visit a page, open the sign-up page or create an account, and Meta may set a cookie for this and use it to show you ads. If you buy Pro through our web checkout, we may also send Meta the purchase, with your email address in hashed form. You can control how Meta uses this in your Facebook ad settings.
App Store and Google Play buttons
When you tap one of our App Store or Google Play buttons, or scan our QR code, we count it and add a source to the store link (for example the site that sent you), so Apple's and Google's reports show how many installs came from each source. No cookie is set for this.
9. Your Rights
Under GDPR and similar privacy laws, you have the following rights:
- Access: Request a copy of the personal data we hold about you
- Rectification: Correct inaccurate or incomplete data (most editable directly in the app)
- Erasure ("Right to be Forgotten"): Request deletion of your personal data
- Data Portability: Export your data in a machine-readable format (Pro feature: CSV/JSON export)
- Restriction: Request we limit how we process your data
- Objection: Object to processing based on legitimate interests
- Withdraw Consent: Opt out of email notifications anytime in Settings
- Lodge a Complaint: File a complaint with your local data protection authority, or with Romania's ANSPDCP (Autoritatea Națională de Supraveghere a Prelucrării Datelor cu Caracter Personal) at www.dataprotection.ro
To exercise these rights, contact us using the details in Section 14. We will respond within 30 days.
10. Security
We implement appropriate security measures to protect your data:
- HTTPS encryption for all data in transit
- Passwords stored using secure one-way hashing (bcrypt)
- Database encryption at rest
- Regular security updates and patches
- Access controls and authentication
- Rate limiting to prevent abuse
No system is 100% secure. If you discover a security vulnerability, please report it using the contact details below.
11. Children's Privacy
loggd.life is not intended for children under 16 years of age. We do not knowingly collect personal data from children under 16. The mobile app also checks the age range your phone shares (see Section 3.17) and cannot be used when that range is under 16. If you believe a child under 16 has provided us with personal data, please contact us immediately and we will delete it.
12. International Data Transfers
Our servers are hosted in the United States (US East - Virginia). Your data is transferred to and processed in the US.
When we transfer data from the EU to the US, we ensure appropriate safeguards are in place, including standard contractual clauses approved by the European Commission. Our payment processor (Lemon Squeezy) complies with EU data protection requirements.
13. Changes to This Policy
We may update this Privacy Policy from time to time. For significant changes, we will notify you by email and/or display a prominent notice in the app. The "Last updated" date at the top will always reflect the most recent version. Your continued use of the Service after changes constitutes acceptance of the updated policy.
14. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us:
Email: eusebiu@loggd.life