Privacy Policy
Last updated: 10 September 2026
This policy covers the No Cheat Day iOS and Android apps and nocheatday.com. It explains what is stored on your phone, what is sent for optional AI features, and what happens to that information. Read it with our Terms & Conditions.
1. Who is responsible
No Cheat Day is operated by Anand Vyas, India. For support, privacy questions or a request concerning your information, contact anand@nocheatday.com.
2. The essentials
No app account is required. Plans, daily logs, notes, water and weight entries, attached activity photos, imported documents, drafts and saved analyses are stored in the app on your device. Everyday tracking and manual plan creation work without uploading your logs to us.
Optional AI features use cloud processing. When you confirm a document import or a paid analysis, the information described below is sent to our Google-hosted backend and Anthropic's Claude API. Generated results are also stored on our backend to help recover interrupted delivery. The app does not provide an account-based cloud library or cross-device sync.
Phone backups are separate from our backend. iOS backups may include app data, depending on your device settings. The Android app requests exclusion from cloud backup. See section 7 for the differences and limitations.
3. Information processed by each feature
Document import. We send the selected PDF, or text extracted from a supported document, together with its filename and purchase information, to process it into a plan. A PDF may contain names, measurements, medical information or images. Anything contained in the submitted document can therefore be processed by the AI provider. Remove information you do not want to share before importing.
Paid AI analysis. We send the selected period's activity dates, completion states, chosen meal-option names, notes, off-plan extras and water entries, together with plan context such as its title, rules, measurement notes, step titles, timing descriptions and water goal. The requested period may be shortened to the supported limit or reduced if there is too much data.
Weight and activity photos. The dedicated weight-log fields and photos attached to activities are not included in the paid analysis payload. Activity photos are not uploaded by the app and are not included in its PDF or CSV reports. Weight can appear in local charts and exports. If you put a weight, photograph or other sensitive detail inside an imported document, a plan description or a free-text note sent for analysis, that information is part of the submitted content; it is not automatically redacted.
Purchases. We process the platform, product and transaction identifier or purchase token to verify a purchase and prevent its reuse for multiple completed runs. Apple and Google Play handle payment; we do not receive your payment-card number. These identifiers do not create a No Cheat Day user account.
Local recovery files. The iOS app retains pending request information, including the submitted payload and purchase reference, locally while it tries to complete delivery and save a paid result. These recovery files are removed after the delivery and purchase-finishing steps succeed. Drafts and saved reports remain as app data.
Exports and sharing. A report or CSV may include plan details, names, notes, daily logs and weight information. You choose where to save it or whom to share it with using the system share sheet. Copies saved to Files, a cloud drive, email or another app are governed by that destination and are not removed when you delete data inside No Cheat Day.
4. Purposes, choices and legal bases
We process submitted documents and analysis data to provide the feature you request. Where the GDPR applies, the basis for providing that service is performance of a contract or steps you request under Article 6(1)(b). Where submitted information is health-related special-category data, we rely on your explicit consent under Article 9(2)(a), requested before cloud AI processing.
You can use manual plan creation and everyday tracking without choosing the paid AI features. You can stop future AI submissions by not using those features. Withdrawing consent does not reverse processing already performed or automatically delete retained results, provider records, exports or backups. Contact us for a deletion request concerning data we or our processors hold.
We use purchase verification and limited operational information to secure the service and prevent abuse, and contact details to answer requests. Where applicable, these activities rely on our legitimate interests under Article 6(1)(f), or on legal obligations under Article 6(1)(c). We do not sell your information or use the apps for advertising or cross-app tracking.
5. Service providers and recipients
Google Firebase / Google Cloud hosts the AI request backend and its purchase/result records. Requests and generated results pass through that infrastructure. The backend is hosted in the United States.
Anthropic processes AI inputs and outputs using its commercial API. Its published policy says commercial API content is not used for model training by default. We do not intentionally submit app content as model-training feedback. Its standard API retention period is within 30 days, with exceptions such as legal requirements, abuse investigations and separately agreed terms. See Anthropic's data-use policy and retention policy.
Apple and Google Play process purchases and their own store/account information under their policies. Vercel hosts the website and its contact endpoint. Our email service providers process messages sent through the contact form or to our support address. Plausible Analytics provides website statistics, and Google Fonts serves website fonts. Website details appear in section 9.
6. Backend retention and interrupted purchases
Generated plans and analyses have a 24-hour redelivery window after completion. During that window, the backend can return the stored result for the same verified purchase. This is a delivery-recovery feature, not a permanent online backup.
The current backend removes expired result content when that record is accessed or when cleanup runs during later processing activity. Expiry of the 24-hour redelivery window does not guarantee that the stored result is deleted at that exact time. Physical deletion may occur later, particularly when the service has little traffic or cleanup fails. Contact us if you need deletion of retained content.
The backend does not intentionally maintain a separate archive of uploaded source documents or raw analysis requests. Submitted content is nevertheless processed by our infrastructure and AI provider, and generated results can repeat personal information from that content. Infrastructure request/error logs and provider safety or security records may be retained under the providers' settings and policies.
Purchase-redemption records are retained indefinitely in the current system to prevent the same purchase being used again after its result has expired. These include transaction references, processing status and timestamps. They are separate from the generated content. Anthropic's own retention rules apply independently to the inputs and outputs it receives.
7. On-device storage, backups and changing phones
iOS. Plans, logs, documents, drafts, saved analyses and pending recovery files may be included in iCloud or computer backups according to your Apple settings and platform behavior. The app marks its activity-photo directory as excluded from backup; this is an operating-system instruction, not an absolute guarantee about every existing or third-party copy. See Apple's explanation of app data in backups. No Cheat Day does not offer its own iCloud sync or guarantee that a backup will restore every file.
Android. The app's backup rules exclude its app data from Android cloud backup. On Android 12 and later, the rules permit device-to-device transfer during phone setup. Older Android versions use rules that also exclude that transfer path. Actual transfer support depends on the device and operating system; restoration is not guaranteed.
Deleting the app removes its local app container, but does not necessarily erase existing device backups, exported files, source documents in Files or a drive, support emails, backend purchase records, or provider-retained data. On iOS, Offload App is different from Delete App: offloading retains documents and data. Manage backups and external copies through their respective settings and providers.
8. Deleting app data
Deleting a plan removes that plan and its associated daily logs and activity-photo directory. Storage settings provide additional controls for deleting logs, photos and imported document copies. Use care: these actions may be permanent, and a PDF or CSV export is not an app-restoration backup.
In the current apps, deleting a plan or its logs does not automatically remove every saved AI analysis or all original imported-document copies. Saved analyses may still contain information derived from deleted logs. Some supporting records can remain in local app storage until the app's data is removed. Deleting local data also does not send a deletion request to our backend or AI provider.
For information held by us or our processors, contact anand@nocheatday.com. Include the platform, approximate date, feature and purchase/order reference if available so we can locate the relevant record. Do not send passwords or card details. We may need proportionate verification before disclosing or deleting a record.
9. Website, analytics and support
The iOS and Android apps contain no advertising or analytics SDKs. The website uses Plausible Analytics to understand aggregate visits, pages, referrals, device categories and approximate location. Plausible uses request information, including IP address and user agent, to derive statistics and a daily identifier; its published policy says it does not retain raw IP addresses or use persistent identifiers or analytics cookies. See Plausible's data policy.
The website loads fonts from Google Fonts, which receives normal network request information such as your IP address. Website hosting and security providers may also process request information. The site stores a small local preference when you dismiss its name-change notice; this is not an advertising identifier.
If you use the contact form, we process your name, email address and message to respond. The contact endpoint temporarily uses IP-based counters for spam prevention. Messages are delivered to our support mailbox and may remain there for handling the request, follow-up and necessary records; there is no automatic fixed deletion timer in the app or website code. Please avoid sending a complete nutrition document or health history unless it is needed and requested. You may request deletion of correspondence, subject to applicable retention obligations.
10. Permissions and security
Camera and photo-library access are optional and used when you attach a photo. Notification permission is used for local plan reminders. The system photo picker can let you share only selected photos instead of giving access to the whole library. You can manage permissions in your phone's settings.
Connections to our backend and AI provider use HTTPS/TLS. Local data benefits from the device's operating-system protections. These protections do not make the data immune to loss, unauthorized access on an unlocked or compromised phone, or copies you choose to share. Keep your device and backups secure.
11. International processing and your rights
Your information may be processed outside your country, including in the United States. Where applicable law requires safeguards for international transfers, relevant provider terms and transfer mechanisms apply. Contact us for information about the providers and safeguards relevant to your request.
Depending on your location and applicable law, you may have rights to access, correct, delete or restrict processing of your information; object to certain processing; request portability; withdraw consent; and complain to your local supervisory authority. Exports provide access to some app information, but do not constitute a complete restorable backup. Contact us to exercise rights concerning retained backend or support records. We will respond within applicable legal timeframes.
12. Children and policy changes
The app is intended for adults aged 18 and over. We do not knowingly collect children's information. Contact us if you believe a child has submitted personal information.
We may update this policy when features, providers or data handling change. The date above identifies this version. Material changes will be communicated through the app or website where required.