Privacy Policy
Last updated: 2026-08-23
Airene is built for people who get anxious flying. Because that's a sensitive moment, the app collects as little as possible and keeps as much as it can on your own device. This page is the whole policy — there isn't a longer version somewhere else.
1. The short version
- Everything you write or rate — fear ratings, reflections, predictions, flight history — stays on your device unless you sign in, and then only syncs to your own devices.
- The app does send usage analytics — which tools you opened and for how long, plus device model, iOS version and country. It is never joined to your identity, and never includes what you typed or what you rated. You can switch it off in Settings.
- No advertising identifiers, no ad SDK, no tracking across apps or websites, and nothing sold or shared.
2. What we collect, and why
When you use the app without an account
Your SUDS logs, breathing sessions, reflections and flight history live only in the app's local storage. None of it is uploaded. The one thing that does leave the device is the usage analytics described in §3, which you can turn off.
When you sign in (Apple or Google)
- Email address — from your Apple ID or Google account. Used as your account identifier and for support replies.
- Display name — only if your sign-in returned one. Shown on the app's profile screen.
- An internal user ID — generated for your account.
- SUDS values, predictions, reflections, flight-phase logs, and upcoming flight details — synced between your own devices so a fresh install doesn't lose your data.
When you subscribe (in v1.x — not yet live)
Our subscription provider records your purchase and tier. We see only what subscription tier you're on, never your card or payment details.
When the app crashes
iOS gives the app a diagnostic report — exception type and code, the signal, the termination reason, and the top frames of the stack. We forward that as an analytics event so a crash can be fixed. It contains no personal data and is covered by the same off-switch in §3. Separately, if you have "Share With App Developers" enabled in iOS Settings, Apple sends its own anonymised crash report; disable that under Settings → Privacy & Security → Analytics & Improvements.
3. Usage analytics in the app
The app sends a small, fixed list of product events so we can tell which tools people actually reach for and where the app is failing them. It is on by default and there is a single switch to turn it off: the app's profile screen → Share usage analytics.
What an event can contain:
- The fact that something happened — the app opened, a screen was viewed, an exercise started, completed or was abandoned, a flight was started or ended, the paywall appeared, the panic button was pressed.
- Timings and enumerated facts — how many milliseconds an exercise ran, which flight stage was selected, which exercise or game it was, whether a session completed.
- Device facts — platform, iOS version, hardware model, app version, language.
- Country — a two-letter code resolved from the IP address of the request. The IP itself is never stored, logged or forwarded.
What an event can never contain:
- Your SUDS / fear ratings.
- Anything you typed — reflections, values, route labels, search queries.
- Your name, email, account ID, or any advertising identifier.
- Your location. The country code above is derived from the network request, not from your device's location services.
Events are keyed to a random identifier generated on first launch and stored on the device. It is never joined to your account, so signing in does not link your analytics to your identity. Because that identifier persists, we describe these events as not linked to your identity rather than as anonymous — the distinction matters, and it is why they are covered by the safeguards in §6.
Events are queued locally and sent to our own server, hosted in the United States, which forwards them to Amplitude (also in the United States) for aggregate product analytics. There is no third-party analytics SDK inside the app.
4. What we never do
- No advertising identifiers, and no advertising SDK of any kind.
- No tracking of you across other apps or websites. The app's privacy manifest declares no tracking and no tracking domains.
- No selling, renting, or sharing your data with any other party.
- No storing or transmitting your location. Airene reads location during a flight to help detect the phase; that data stays on the device, and the permission is optional.
- No microphone or camera access at v1.
- No access to your contacts, photos, calendars, or health data. There are no opt-ins for these at v1.
5. Where your data lives
- Your device. Local storage.
- Supabase, in the United States. The database and sign-in. Holds your synced records keyed by your internal user ID — only if you sign in.
- Our own server, in the United States. Handles sign-in checks, syncing and the analytics relay. It stores no analytics events — it scrubs each one against a fixed allowlist and passes it straight on.
- Amplitude, in the United States. Holds product events keyed by the random per-install identifier.
- Our subscription provider — only once subscriptions go live. Records your entitlement state.
6. Sending your data outside the UK and the EU
Airene is run from the UK, and the servers that hold your data are in the United States. So if you sign in, or if analytics are switched on, your data leaves the UK and the EEA.
That is covered by contract, not by hope. We have a data-processing agreement with each of the companies below, and each one includes the European Commission's Standard Contractual Clauses and the UK Addendum to them — the standard safeguards for sending personal data to the US.
- Supabase — the database and sign-in. Your synced records, if you sign in.
- Amplitude — usage analytics.
Email support@getairene.app if you would like a copy of the safeguards for either of them.
7. How long we keep it
As long as your account is active. If you sign out of the iOS app, your device-local data stays; nothing changes on the server.
To delete everything, open the app's profile screen and tap Delete account. That removes your account and all of its synced records from our servers, deletes your sign-in record, and clears the app's data on that device. It is immediate and cannot be undone. If you would rather we did it for you, or you no longer have the app installed, email us at the address below and we will remove it within 30 days.
8. Children
Airene is not directed at children under 13. We do not knowingly collect data from anyone under 13.
9. The website (getairene.app)
This website uses Amplitude for analytics. It is cookieless — a session-scoped identifier is held only until you close the tab, and it does not collect personally identifying information. We honour your browser's Do Not Track setting: with it enabled, the site sends nothing. We see aggregate page views, session counts, marketing attribution (the utm_ tags in an inbound link), and three specific event clicks (App Store badge taps, support email taps, privacy link taps). No individual visitor is identifiable, and the data is never used for advertising. Amplitude processes this data on servers in the United States.
10. Your rights
Under GDPR (and analogous laws elsewhere) you have the right to:
- know what data we hold about you,
- get a copy of it,
- correct it,
- delete it,
- object to or restrict its processing,
- lodge a complaint with a data-protection authority.
Email support@getairene.app and we will respond within 30 days.
11. Changes to this policy
Material changes are announced on this page and in the app at least 30 days before they take effect.
12. Contact
support@getairene.app — for any privacy question, data request, or account deletion.