Sign in

Privacy

What we do and don't with your data.

Vayl exists to organize the transcript your body has been writing for years. To do that, you trust us with categories of data that are sensitive by every legal definition that matters: biometric, health-adjacent, and behavioral.

This page is intentionally short. It's the truth about how your data flows, and it will get longer (subprocessor list, retention windows, DPA) as Vayl grows. Every addition is dated on this page.

Data we collect

  • Account: email, hashed password (Supabase Auth), display name if provided.
  • Logs you create: training sessions, meals, what you take, supplement logs, sleep, biomarkers, weight, HRV/RHR.
  • Wearable imports: only if you explicitly connect a source (HealthKit, Apple Watch). Vayl reads what you authorize, nothing else.
  • Location, only while you record an outdoor activity: precise GPS points, so the app can draw the route and compute distance, pace and elevation. It is requested the first time you start an outdoor recording, never in the background outside one, and iOS shows its own indicator the whole time the app is reading it. Indoor sessions never request it, and a recorded route is a log like any other: yours, exportable, deleted with your account.
  • Purchases: your subscription is sold by Apple, so Apple handles the payment and we never see a card number. What reaches us is whether the subscription is active and when the period ends, which is what opens the web terminal for the same account.
  • Website usage telemetry (PostHog, active): page views and interaction events on vayl.pro, stored under a first-party identifier in a cookie and in local storage. No log content and no health data are ever sent. Session recording is off. We honour Do Not Track: with it enabled, nothing is collected. The iPhone app ships no advertising SDK and no product-analytics SDK. It does carry a crash reporter (Sentry), which is how a crash becomes a fix, and which is declared in the app's privacy manifest.

Where it lives

Supabase Postgres in Frankfurt (eu-central-1), encrypted at rest. Sync via PowerSync (read-only mirror). Logs you create on iOS are stored locally in SQLite and synced when online, so your phone is offline-first.

What we never do

  • Sell or rent your data. Not to advertisers, not to insurers, not to anyone.
  • Train AI models on individual user data without explicit, granular consent per dataset.
  • Share with third parties beyond the subprocessors required to run the product (hosting, auth, sync).
  • Retain data after you delete your account (30-day grace for accidental deletion, then hard-deleted).

Your rights

You can export everything you've logged from the iPhone app, in CSV or JSON. The file is generated on your device. You can delete your account from inside the iPhone app (avatar, then Profile, then Delete Account), scheduling it with a 30-day grace period or erasing immediately. Deleting the account does not cancel an Apple subscription: only you can do that, in your Apple Account settings. You can also request deletion by emailing privacy@vayl.pro. Under GDPR (EU) and LGPD (BR) you have the right to access, rectification, erasure, portability, and objection to processing.

Contact

João Batisti, founder. Lisbon, Portugal. privacy@vayl.pro.

Last updated · 2026-08-13