1. Introduction and Legal Basis
This policy explains how we collect, use, store, share, protect, and delete information arising from your use of VEMOVO (the “App”).
This policy is based primarily on:
- Mainland China laws and regulatory requirements: the Personal Information Protection Law of the PRC, the Cybersecurity Law of the PRC, the Data Security Law of the PRC, the Law on the Protection of Consumer Rights and Interests of the PRC, the Provisions on the Administration of Mobile Internet Application Information Services, and related App personal-information processing rules;
- Apple platform requirements: the App Store Review Guidelines (including privacy-policy and permission-purpose-string requirements) and the HealthKit usage requirements;
- General principles: legality, legitimacy, necessity, good faith, purpose limitation, minimization, openness and transparency, accuracy, and security safeguards.
Where this policy conflicts with laws, regulations, or platform policies, the mandatory provisions prevail.
2. Key Points (Please Read First)
- No account: the App has no registration or login; you can use all core features without providing a phone number, email, or other identity information;
- No backend: the App has no business servers of ours — your training plans, workout records, body data, and posture photos are stored only on your device by default; the App itself does not send them to any server;
- No ads, no tracking: the App contains no advertising SDK and no third-party analytics SDK, does not read the advertising identifier (IDFA), and does not track you across apps;
- On-demand authorization: camera, photo library, Health (HealthKit), notifications, and Face ID permissions are requested only when you use the corresponding feature; denying them does not affect core workout-logging functionality;
- Deletable and exportable: you can delete all local data with one action in the App and export your data file at any time.
3. Terminology and Scope
- “Local data”: data stored only in your device's storage and managed by the App;
- “System data”: data stored and managed by Apple systems or other third parties under their own rules (e.g., health data in Apple Health, iCloud Backup).
This policy applies to all features of the App. It does not apply to third-party services you use yourself (such as Apple Fitness records or full-device iCloud Backup), which are governed by Apple's privacy policy.
4. Operator Information
- Operator name: VEMOVO Team
- Contact email: support@cuebuddy.cn
5. Personal Information We Collect and Process
The App follows a data-minimization principle. The table below lists all data-processing activities:
| Category | Details | Source | Storage | Leaves the device? |
|---|---|---|---|---|
| Training plans & workout records | Plans, workout days, exercises, sets, load, unilateral records, cardio, rest duration, PRs, check-in status | Entered by you or auto-generated in the App | On-device database (Application Support) | No |
| Body measurements | Weight, 6 circumference types (incl. left/right sides) | Entered by you at check-in | On-device database | No |
| Posture photos & media | Four-view posture photos, thumbnails | Captured via camera or imported from photo library | On device (iOS file protection) | No (only with your own full-device iCloud Backup) |
| Settings & preferences | Theme, units (kg/lb, cm/in), reminder settings, App Lock toggle, Health sync toggle | Configured by you in the App | On device | No |
| Health data (optional) | Write: workout records, active energy, body weight; read: heart rate, energy burned | Via Apple Health after you authorize HealthKit | Stored by Apple Health (system) | Managed by Apple systems; never uploaded by the App |
| Purchase information (optional) | Subscription status, restore-purchase validation results | Apple App Store / StoreKit | Handled by Apple; the App keeps only a minimal entitlement flag | Processed via Apple's StoreKit system |
| Exported files (optional) | JSON data file you actively export | Triggered by you in “Settings → Privacy & Data” | System temp directory or a location you choose | Only if you choose to share/transfer it |
5.1 Information We Do NOT Collect (Negative List)
- Identity information such as phone number, email, or name (unless you contact us by email yourself);
- Precise or coarse location data;
- Contacts, full photo-library scans, call history, or messages;
- Advertising identifier (IDFA) or cross-app tracking data;
- Device fingerprints or clipboard contents;
- Facial biometrics (see Section 6);
- Any data processed by third-party analytics, statistics, or cloud AI services (the App integrates no such SDKs).
5.2 Special Notice on Health Data
- The App requests HealthKit permissions (read: workouts, active energy, heart rate, body weight) only when you turn on “Apple Health & Fitness” in “Settings → Training Preferences”;
- Health data is stored in Apple Health and managed by the system; you can revoke authorization at any time in iOS “Settings → Health → Data Access & Devices”;
- If you deny or revoke authorization, core features such as workout records, plans, and body check-ins are unaffected; the heart-rate and calorie metrics on the workout share card fall back safely to workout-only data;
- Running “Clear Local Data” in the App does not delete history stored in Apple Health; delete it in the Apple Health app if needed.
6. Permission Requests
All permissions below are requested via the iOS system prompt only when you use the corresponding feature, and can be changed or revoked at any time in system settings:
| Permission | Purpose | Impact if denied |
|---|---|---|
| Camera | Capture four-view posture photos | Cannot capture; import from library or skip instead |
| Photo library | Import posture photos | Cannot import; capture with camera or skip instead |
| Face ID (local authentication) | Unlock the App after you enable App Lock | Device passcode unlock remains available; App Lock can be turned off |
| Health (read/write) | Write workouts and calories, sync body weight; read heart rate and energy for intensity display and share cards | Core features unaffected; share card falls back to workout-only data |
| Notifications | Posture re-shoot reminders (default 14-day cycle), local workout reminders | No reminders delivered; can be enabled later in Settings |
About Face ID: facial biometrics are processed locally by the iOS Secure Enclave; the App only receives a “success / failure” result and never has access to your facial data. App Lock is an access-control feature, not a substitute for database encryption.
7. Data Storage and Security
- Local storage: the database and media files are stored in the device's Application Support directory with iOS file protection; photos and other media never appear in the App Switcher snapshot (sensitive screens are shielded by default when the App goes to the background);
- App Lock: you can enable Face ID / device passcode locking in Settings for an additional barrier when others use your device;
- System backups: your local data may be included in your own full-device iCloud / computer backup, processed by Apple under its privacy policy; you can manage or disable iCloud Backup in system settings;
- Security measures: minimal permission requests, no network egress path for data (except the scenarios listed in Section 8), dependency review, and test coverage. Note that no device or system can guarantee absolute security.
8. Data Sharing and Disclosure
We do not sell any of your personal information. Except for the scenarios below, data does not leave your device:
| Egress path | Description |
|---|---|
| Apple App Store / StoreKit | Purchase, subscription, and restore purchases are handled by Apple under Apple's privacy policy |
| Your own full-device iCloud Backup | Device backups may include the App's local data, processed by Apple; this is not an App sync feature |
| Data files you actively export | Shared via the iOS share sheet at your discretion; the App never uploads on your behalf |
| Apple Health (HealthKit) | Writes and reads after your authorization; data flows within the system and is never uploaded by the App |
The App integrates no third-party analytics, advertising, crash-reporting, or cloud AI SDKs. If any are added in the future, we will update this policy and describe their name, purpose, and data-processing scope before implementation.
9. Data Retention and Deletion
| Data | Retention | How to delete |
|---|---|---|
| Local workout & body data, photos, exported reports, thumbnails, analysis caches | Until you delete it, uninstall the App, or clear system data | “Settings → Privacy & Data → Clear Local Data” (double confirmation; covers all local data; irreversible), or uninstall the App |
| Apple Health data | Retained by the system | Delete in the Apple Health app; in-App clearing does not touch it |
| Subscription entitlement flag | During the subscription period and as needed for accounting | Deleted with local data; Apple-side receipt records are handled under Apple's policies |
| Records of your emails to us | Until the issue is resolved plus a necessary follow-up support period | Request deletion at any time |
10. Your Rights
Under applicable law, you may:
- Access and copy: view all data directly in the App and use “Export My Data” to obtain a JSON file (by default the export excludes sensitive items such as posture photos, precise weight, and heart rate; they are included only if you explicitly opt in);
- Correct: edit any workout or body record in the App;
- Delete: remove individual records or clear all local data with one action;
- Withdraw consent: revoke camera, photo, Health, and notification permissions at any time in system settings; the corresponding features are disabled while core functionality is unaffected;
- Request information: contact us via the email in Section 4 for further explanation of data-processing rules.
We will respond to your requests within a reasonable period; because the App has no accounts, these rights are exercised primarily through in-App features and system settings.
11. Minors
- The App is designed for adult fitness users and does not target minors;
- Personal information of minors under 14 constitutes sensitive personal information. If you are a minor, please use the App under a guardian's supervision, with the guardian helping you read this policy;
- If you believe a child has provided personal information to us without guardian consent, contact us immediately and we will take necessary measures such as deletion as required by law.
12. Cross-Border Transfers
The App has no servers and initiates no cross-border data transfers. For third-party platform scenarios (App Store purchases, iCloud Backup, Apple Health), data processing and storage locations are determined by Apple under its global service architecture and are governed by Apple's privacy policy and commitments.
13. Personal Information Security Incidents
If an incident occurs, we will notify you and regulators as required by law and take reasonable measures to mitigate harm. Because the App's data stays on-device by default, the main risk surface is your own device and account security; we recommend enabling a device lock-screen passcode and keeping your system up to date.
14. Policy Updates
When we update this policy, we will publish the new version in the App or on the release page and update the version number and effective date. For material changes affecting your rights and obligations, we will provide prominent notice; before adding permissions or third-party SDKs, we will update this policy first.
15. Contact Us
- Email: support@cuebuddy.cn (please include “Privacy” in the subject)
- We will respond to your privacy-related requests and complaints within a reasonable period.