Privacy Policy
Summary
Posture is built to collect as little as possible. There is no account, no sign-up, and no server of ours that receives your posture data. Every posture screening is processed and stored on your device. The app's only automatic data sharing is a small set of usage counts, and only if you turn that on, either on the last setup screen or later in Settings. It is off by default.
What we collect
Posture does not require an account and does not automatically collect your name, email address or contacts. Optional usage analytics includes the technical identifiers and network information described below. Feedback and support information is sent only when you choose to send it.
Optional usage analytics. If you switch on "Share usage analytics" (offered once at the end of setup, and always available in Settings), the app sends five kinds of event to PostHog, an analytics service, on servers in the European Union:
- onboarding finished
- a posture scan completed
- a guided routine or your personalised plan completed
- the Premium screen was shown
- a subscription was bought, with whether it was the annual or the monthly plan
The event-specific content is limited to those five counts and the annual or monthly period on a purchase event. It does not include a scan image, measurement, angle or score, goal, tension, pain or safety answer, routine or exercise name, name, email address, location, price, receipt or transaction identifier.
These counts are pseudonymous, not anonymous. Each event also carries a random identifier created on your phone, an event identifier and a timestamp; each upload includes the public project token and send time. The random identifier lets counts from one install be grouped together. Like any internet request, the connection exposes your IP address to the receiving server; we ask PostHog not to derive a location from it.
Turning analytics off blocks new app events immediately. The app then asks the analytics software to opt out and close and makes a best-effort attempt to remove its local identifier, unsent queue and cached configuration. A request already under way may still finish, and a late configuration response may recreate cache data. Counts already received by PostHog are not deleted. If the previous local identifier was removed, turning analytics on again starts a new analytics identity.
Camera and photos
If you use a posture screening, the camera image is analyzed entirely on your device to produce posture estimates. Your images are never uploaded and never leave your phone. Posture does not save your photos to your photo library unless you explicitly choose to, and does not transmit them anywhere. The usage analytics described above cannot carry an image or a measurement.
Data stored on your device
Your routine completions, streak, selected goals, generated plan, posture scans and preferences (including the analytics switch) are stored locally on your device (in the app's storage and standard iOS settings). This data stays on the device, is included in your own encrypted device backups if you use them, and is removed when you delete the app.
Subscriptions
Posture Premium is sold as an in-app subscription handled by Apple. Apple processes the purchase and manages billing and renewals; we never receive or store your payment details. Apple's handling of purchase data is governed by Apple's privacy policy. We receive only the subscription status needed to unlock premium features on your device. If usage analytics is on, a completed purchase is counted once, with the plan period (annual or monthly) and nothing else; that count is purchase history in the sense of Apple's privacy labels.
Third parties
For the app's automatic operation, Apple handles app delivery and optional subscriptions, and PostHog (PostHog Inc., data hosted in the European Union) receives the usage events described above while the setting is on. The analytics is used to understand app usage, not for advertising, and the app does not sell this data.
Feedback and support
If you choose to send feedback, Posture prepares your category and message in Apple's Mail composer. You can review and edit it before sending. If Mail is unavailable, you can choose another app from the system share sheet or copy the draft and support address. Posture does not automatically send the draft. When you choose to send it, the content and any contact details supplied by your mail or sharing service are handled by the service you choose and received by the developer's email provider.
Children
Posture requires no account and has no age gate. Optional usage analytics is off by default and follows the same limited event and technical-data rules for every user. A child should send feedback or make a purchase only with a parent or guardian's involvement.
Your choices
- You can use the full free tier without any purchase.
- You can turn usage analytics on or off at any time in Settings. It is off until you turn it on.
- You can manage or cancel a subscription anytime in iOS Settings > Apple ID > Subscriptions.
- You can remove progress, goals and posture scans from within the app, or remove the app's local data by deleting the app. Deleting data in the app also turns usage analytics off and makes the best-effort local cleanup described above; counts already sent are not deleted.
Changes
If this policy changes, we will update the "Last updated" date and post the new version at the policy URL. Material changes will be reflected in an app update.
Contact
Questions about privacy: posture.app@proton.me.
Not medical advice. Posture is a general-wellness app and is not a medical service.