PRIVACY POLICY

Privacy
Policy

Last updated: September 5, 2026

Our approach and operator

PomoGem treats your study and work focus records as your own. We do not require account registration, track you for advertising, or collect behavioral data through analytics SDKs. The operator and developer is hinoshiba.

Choosing where to store your data

Before creating the first data store, we present “Sync with iCloud” and “This iPhone Only” equally. Neither is marked as recommended; you review the explanation and choose one. In Version 1.0, you cannot change the chosen storage location later.

“This iPhone Only” lets you use all basic features without an Apple Account or internet connection and stores data only on this device. It does not automatically switch to iCloud or upload data.

If you choose and confirm “Sync with iCloud,” theme names, achievement notes, records including completed focus sessions and self-reported time, settings, and running timers are stored and synced on your device and in the private iCloud storage associated with your Apple Account. We verify online that the same Apple Account is in use when you make this choice and each time you open or resume the app. If a connection is unavailable, the account cannot be verified, or a different account is in use, the app will not open the data store, but it will not delete saved data. Display aggregates such as jars and grouped gems are rebuilt from records on each device and are not uploaded to iCloud.

Widgets and Live Activity

In Version 1.0, Home Screen and Lock Screen widgets show only an account-neutral prompt to open the app; they do not read records, mass, theme names, or jar images. The Live Activity shown when you explicitly start a focus session is also account-neutral and displays only the app name, selected duration, remaining time, and running state. The attributes passed to ActivityKit contain only a random session UUID and durations in seconds, with no theme names, notes, mass, Apple Account identifiers, or iCloud data. The Live Activity is updated on the device and is not sent to a server operated by us or to ActivityKit push. You can disable it for each device in the app’s settings, and the app also respects permissions set on your iPhone.

Data transmission and third-party services

Focus records are not sent to a server managed by the operator, and the operator does not retain a copy. Purchase entitlements are verified with Apple through StoreKit. Apple processes information needed for iCloud sync when you choose and confirm it, purchase verification through StoreKit, notifications, and App Store services. Apple’s terms, security policies, and privacy policies apply.

Product website

Each page of this product website is served through GitHub Pages. The website’s own source code does not implement cookies, advertising, analytics, or behavioral tracking. As part of normal web delivery, GitHub may process IP addresses, User-Agent strings, access times, requested URLs, and security and network diagnostic information to provide its service and maintain security and availability. This information is not linked to the app’s focus records. See GitHub’s Privacy Statement for details.

External links

External links to the App Store, GitHub, Apple’s purchase history or terms, and other destinations open in the system browser only when you choose them. As part of normal web communication, the destination may receive your IP address, User-Agent, referrer, and other information. Each provider’s terms and privacy policy apply.

Permissions and device sensors

When you use the relevant features, we optionally request notification permission for completion alerts and add-only photo permission for saving share cards to Photos. Because the OS may deliver completion alerts even while accounts are switching, alerts always use generic text without theme names. The app uses device motion from the iPhone’s accelerometer and gyroscope locally to move the jar in response to tilting or gentle shaking. If iOS asks for motion permission, we explain its purpose; tapping and other focus features remain available if you decline. Device motion values, taps on the jar, and detected results are used only at that moment to determine gem movement, mathematically generated sounds, and haptics. They are not stored or transmitted. Motion updates stop when the app is inactive, in the background, or when another screen hides the jar. Sound and haptics can be disabled independently in the app’s settings. You can change notification, photo, and motion permissions at any time in your device’s Settings.

Photos and sharing

Only when you explicitly request it, the app generates a still image or short GIF featuring your jar and mass on the device and opens the system share sheet. A still image is saved to your photo library only if you choose to save it. Copying the sharing text writes a standard message containing the mass and the hashtags you selected or entered to the clipboard. Saved focus theme names, achievement record notes, and client names are not included automatically, but any text you enter as an optional tag will be shared. Do not enter sensitive information such as client or project names. The app does not post automatically.

Data export

From Settings, you can manually export themes, records, achievement notes, settings, and random device identifiers used for syncing as versioned JSON, using data available to your device from the selected storage location. This includes older generations from previous resets, tombstones for deleted achievements, and older formats. You choose the export destination in the system share sheet; the app does not automatically send the file to the operator or third parties. The file may contain sensitive information, so check the destination and do not attach it to support emails. Temporary files inside the app use data protection that prevents access while the device is locked, and are deleted after you close the share sheet. If an OS interruption leaves a file behind, it is also deleted after 24 hours. UI and runtime state that is not synced, such as on-screen hints and temporary state for ongoing operations, is excluded from exports.

The JSON export covers all 11 types of SwiftData data shipped with the app. Version 1.0 does not include JSON re-import, so the export cannot be used to move “This iPhone Only” data to iCloud or continue records on another device. The app’s data in iCloud is managed through Apple’s iCloud storage management.

Contacting support

If you contact us by email, we use your sender email address, email headers, message body, optional attachments, and any device model, OS or app version, or issue details you choose to provide to reply, investigate causes, guide purchase restoration, and address security issues. Emails are processed by the sender’s and operator’s email service providers. They are not used for advertising, tracking, or matching against focus records. You do not need to send sensitive focus themes, client names, project names, data export files, credentials, private keys, or signing materials. We retain inquiry information only for as long as needed to address the inquiry and check for recurrence, and generally delete it within 12 months of the last response. If required for legal compliance or an ongoing security investigation, we may retain it for the period necessary for that purpose. You can request earlier deletion through the same contact address.

Retention, resets, and physical deletion

The source data used for syncing, including focus records, achievement records, settings, and running timers, is retained only on this iPhone when you choose “This iPhone Only,” or on the device and in private iCloud storage when you choose iCloud. Display aggregates such as jars and grouped gems are retained on the device and rebuilt from source records. “Reset Displayed Records” excludes earlier generations from the display and totals, but physical rows from those generations may remain on the device and in iCloud to prevent sync conflicts, and may also be included in exports.

Version 1.0 does not create a separate user account or provide a feature to delete the entire iCloud data store directly from the app. Deleting the app erases physical data on the device. With “This iPhone Only,” you can choose a storage location again after reinstalling, but previous records are lost and cannot be restored or migrated from exported JSON. You can delete the app’s data in iCloud using Apple’s iCloud storage management. Copies on another device that is offline cannot be erased remotely, so remove unneeded installations on each device. Purchase history managed by Apple is excluded. The operator has no copy that can be viewed or deleted on your behalf.

Images added to your photo library, exports saved to Files or other destinations, content sent to sharing destinations, text copied to the clipboard, and sent support emails are outside the app’s and iCloud’s data stores. A normal reset, app deletion, or Apple’s iCloud storage management does not remove them. Delete them at each storage or sharing destination as needed.

Changes to this policy

If features, third-party services, laws, or operations change, we will publish the revisions on this page and update the last updated date. Changes important to your decisions will be clearly announced in the app or on this website before or when they take effect.

Contact

For questions about this policy or the app, contact support@hinoshiba.com. Developer information is also available on our GitHub profile.

← Back to PomoGem