Privacy Policy
Last updated July 27, 2026
Be Serious (“we”, “us”) operates the Be Serious iOS app and the beserious.app website. This policy explains what data we collect, why, and what your choices are. The short version: we collect only what the app needs to work, we don’t show ads, there are no third-party analytics or tracking SDKs in the app, and we never sell your data.
What we collect
Account. You sign in with Apple or Google. We receive a unique account identifier and, if you choose to share them, your name and email address (Apple lets you hide your real email behind a private relay address, and only shares your name the first time you authorize the app). We never receive your Apple or Google password.
Health and activity data you log. The app stores what you put into it: your selected goals and their order, fasting sessions and chosen schedule, daily streak check-ins and relapse dates, workouts (including type, duration and estimated calories), food and calorie entries with their macros, ingredients and serving counts, saved meals, weight entries, and the profile details you enter during onboarding (gender, birth year, height, weight, and your calorie and step targets), along with preferences like units and appearance.
Apple Health. If you connect Apple Health, the app reads your step count to show daily steps and, optionally, to add the calories you burn to your daily goal. This is read on your device only — we never write to Apple Health, don’t store your step data on our servers, and never use it for advertising.
Photos you add. If you attach a photo to a meal, we store that photo so it appears on the meal wherever you’re signed in: it’s cached on your device and uploaded to a private storage bucket that only your account can read. The same applies to a profile picture or a group-chat picture, with one difference — those are readable by other signed-in users, because they’re meant to be seen in chat. Photos you take for a one-off nutrition-label scan are not stored. The app never reads your photo library: you pick individual photos through Apple’s picker, or take them with the in-app camera.
AI meal and workout estimates. When you scan a meal or nutrition label, describe a meal, or describe a workout, we send that photo or text to our AI provider (OpenRouter) to estimate calories, macros and ingredients. We ask for your permission the first time, and you can decline and log everything manually instead. The result is returned to you and saved with your log. The photo or text is used only to generate the estimate — we don’t keep a server-side copy of it, and it isn’t used to train third-party models. We do keep a per-day count of how many estimates you’ve run, to enforce a fair-use ceiling that exists to stop abuse.
Barcode lookups. If you scan a product barcode, we send only the barcode number to OpenFoodFacts, an open food database, to look up its nutrition. Nothing that identifies you leaves with it.
Chat. If you use group chat, we store your chosen @username, your display name (taken from the name on your account, if you shared one) and profile picture, your current streak, the chats you create or join, the messages you send and the reactions you add. Messages are visible to the other members of that chat. If you report a message we store a snapshot of it (the message text, its sender and the chat); if you block someone we store that too. Messages and usernames pass through an automated filter that rejects slurs and profanity before they post.
Subscription and purchases. Purchases are processed entirely by Apple — we never see your payment details. Because a subscription is what gives your account access to the app, and that access has to follow you onto every device you’re signed in on, we verify the purchase with Apple and store the result against your account: whether your subscription is active, the date it’s paid through, the product you bought and Apple’s transaction identifiers. Apple also notifies us of subscription events (renewals, cancellations, refunds, expirations), which we log — including the product, price and currency Apple reports — to keep entitlements correct and to understand our own revenue.
Technical data. Our hosting providers keep standard service logs (for example IP address, timestamps and requested endpoints) for security, abuse prevention and debugging. We don’t use them to profile you.
What we don’t collect: location, contacts, your photo library, advertising identifiers, or third-party analytics inside the app. There are no ads, and we do no tracking across other apps or websites.
How we use your data
- To provide the app’s features: tracking, charts, streaks and AI estimates.
- To sync your data to your account so it’s restored when you sign in on another device or reinstall the app.
- To operate group chat, screen content, and act on reports of abusive behavior.
- To confirm your subscription is active — which is what gives your account access to the app — and to keep that record accurate across your devices.
- To keep the service secure, prevent abuse and enforce the fair-use ceiling.
- To understand how the product is doing, using aggregate counts (like total signups or active subscriptions) — never individual profiles sold or shared for advertising.
- Reminders (like fast-complete or streak check-in notifications) are scheduled locally on your device — they never leave it.
What other people can see
Your tracked health data is private to your account. Chat is the exception, by design: members of a chat see your @username, display name, profile picture, current streak (on the chat leaderboard), and the messages and reactions you post there. Your @username and profile picture are readable by other signed-in Be Serious users. Anyone with a chat’s invite code can join it, so share codes — and personal information — thoughtfully.
Where your data lives
Your data is stored on your device and mirrored to our backend, hosted by Supabase (Postgres) on servers in the United States. Data travels over encrypted connections (TLS) and is encrypted at rest, and server-side access rules scope every record to your account. If you use the app from outside the United States, your data is transferred there; where the law requires a transfer mechanism (for example the EU/UK), we rely on our providers’ standard contractual clauses.
Sharing
We share data only with the service providers needed to run Be Serious: Apple (sign-in, purchases and subscription status), Google (sign-in), Supabase (data and photo hosting), OpenRouter (AI meal and workout estimates), OpenFoodFacts (barcode lookups), and Vercel (website hosting and analytics) plus Resend (waitlist email). Chat messages and your public chat profile are shared with members of your chats by design. We may disclose data if legally required, or to investigate abuse and protect people’s safety. We never sell personal data, and we never share it for cross-context behavioral advertising.
Retention and deletion
We keep your data for as long as your account exists. You can delete your account at any time in the app under Profile → Delete Account — and if you don’t have an active subscription, the same option (with a one-tap export of your data) is on the subscription screen, so neither deletion nor access ever depends on being subscribed. That deletes your account and, with it, your profile, every log (fasts, workouts, meals, saved meals, weight, check-ins, relapses), your chats and messages, your @username, and your stored meal and profile photos. It can’t be undone.
Two things deliberately survive deletion. Purchase records from Apple (transaction identifiers and subscription events) are kept for tax, accounting and refund purposes. If someone reported a message you sent, the snapshot taken at the time of that report is kept as a moderation record. Neither contains your health data.
Deleting your account does not cancel an Apple subscription — cancel that in your device’s subscription settings. Signing out removes your data, including cached photos, from the device.
Why we’re allowed to process it (EU/UK)
Where the GDPR applies, we rely on: performance of our contract with you — which, because Be Serious is a subscription app, covers most of what we do (running your account, giving your subscription access to the app, syncing your data, operating chat); your consent for the health data you choose to log, for Apple Health access, and for sending a photo or description to our AI provider — which you can withdraw at any time by stopping use of those features or deleting your account; and our legitimate interests in keeping the service secure, preventing abuse and understanding aggregate usage. Purchase records are kept to meet legal obligations.
Your rights
Depending on where you live (for example the EU/EEA and UK under the GDPR, or California under the CCPA/CPRA), you may have the right to access, correct, export or delete your personal data, to withdraw consent, and not to be discriminated against for exercising those rights. Export and deletion are built into the app and reachable whether or not you’re subscribed; for anything else, email us and we’ll help — we won’t make you jump through hoops. EU/EEA and UK users may also complain to their local data protection authority.
Security
Accounts are protected by Sign in with Apple or Google, so there is no password for us to lose. Data is encrypted in transit and at rest, and row-level security rules on the database restrict every record to the account that owns it. No system is perfectly secure, but we keep the amount of data we hold deliberately small.
Children
Be Serious is not directed at children under 13 and we don’t knowingly collect data from them. If you believe a child has given us data, email us and we’ll delete it.
The website
If you join the waitlist on beserious.app we store your email address with Resend and send you a confirmation email. The site uses Vercel’s anonymous, cookieless analytics, and briefly processes your IP address to rate-limit signups. Email us to be removed from the waitlist.
Changes
If we change this policy we’ll post the new version here and update the date above.
Contact
Questions? Email support@beserious.app. See also our Terms of Use.