Hupay reads Apple Health, computes on your device and stores the result locally. There is no account, no Hupay server, and no third party receiving your health data.
Last updated 15 August 2026. This policy covers the Hupay iPhone, iPad and Apple Watch apps.
With your permission, Hupay reads a defined set of categories from Apple Health: heart rate and resting heart rate, heart-rate variability, sleep sessions and stages, respiratory rate, blood oxygen, wrist temperature, steps, active energy, exercise minutes and workouts.
Access is read-only and granted per category — you can decline any of them. On first run Hupay imports up to 60 days of scoring signals and up to six months of available sleep history so your baseline is useful immediately. Nothing is read speculatively; each category maps to something visible in the app.
Hupay stores the daily values it derives — your four scores, their confidence and readiness, the baselines they were measured against, sleep summaries, and any emotion check-ins you record. Check-ins contain only what you enter: a mood, an optional intensity, optional context tags and an optional note.
On your device, in a local database protected by iOS file encryption. All scoring runs on device. Hupay operates no server that receives, processes or holds your health data, and there is no account to create.
Hupay contains no analytics or attribution SDK, collects no advertising identifier, and builds no profile of you. Your health data is never sold, rented, shared with data brokers, or used to train any model.
Hupay ships with CloudKit sync switched off. If you turn it on, your Hupay data syncs through your own private iCloud database, under your Apple ID — Apple's terms govern that storage, and the developer has no access to it. Turning sync off stops further syncing.
Settings offers a full export of everything Hupay holds, and a delete-all that erases the local database. Deleting the app removes its local data with it. Because there is no server copy, deletion is final and needs no request to anyone.
The watch app holds a small cached snapshot so it can open instantly, and any check-in you record on the wrist is queued locally and transferred to your iPhone. Complications read that same cached snapshot; when it is past its expiry the complication marks itself as old rather than showing a stale number as current.
Hupay is not directed at children under 13 and is not intended for their use.
If this policy changes materially, the updated date above changes and the app notes it on next launch. Continued use after a change means you accept the updated policy.
Questions about this policy, or about what the app does with anything it reads, go to support.