The Husband App

Privacy Policy

Last updated: 2026-06-11

The Husband App (“the App”) is a local-first reminder app that helps you remember important dates with your partner and family. This policy explains what the App collects, where it goes, and how to get rid of it.

We collect as little as possible. By default, no information leaves your phone.

1. What stays on your phone (always)

The following data is stored locally on your device using Apple’s standard storage (SwiftData, UserDefaults, Keychain) and never leaves it unless you opt into one of the optional services described below:

  • Cycle dates and notes — period log, ovulation predictions, anything in the Cycle tab. This data is never uploaded to our servers, even if you sign in. It is excluded from cloud sync by design.
  • Suggested-message history — which suggestions you’ve marked as said today.
  • App preferences — chosen language, reminder times, notification settings.
  • Local notifications — reminders are scheduled by iOS directly on your device. We do not send push notifications and do not run any notification service on your behalf.

2. Optional: Apple iCloud sync

If you are signed in to iCloud on your device and the App is allowed to use iCloud, the App stores your occasions, wishlist, partner profile, and cycle data in your own private iCloud database. Cycle data syncs only between your Apple devices via iCloud; it never reaches our servers.

This is data Apple holds for you. We have no access to it. You can wipe it at any time via Settings → Apple ID → iCloud → Manage Storage → The Husband App.

3. Optional: Sign In and cross-device backup

Signing in is opt-in. The App functions fully without an account. If you do sign in (with Apple, Google, Microsoft, or Facebook), the following data is stored on a server we operate (located in the European Union):

  • Identity: your provider (e.g. “apple”), the provider’s stable subject ID for your account, your display name and email address if your provider shares them, and your chosen locale.
  • Session tokens: opaque random strings, used only to keep you signed in. Hashed before storage; raw tokens never leave your device.
  • Account event log: a 90-day record of sign-ins, sign-outs, refreshes, and deletion requests, tagged with the country (never the IP address) the request came from. Used for security forensics. Purged after 90 days.
  • Synced content (so your data follows you to a second device): your partner-profile fields (name, birthday, interests, optional birth time and location for astrological calculations), occasions, wishlist items, and the app preferences listed above. Cycle data is excluded.

We do not store:

  • Your raw IP address
  • Photos, voice notes, or message drafts
  • Payment information (the App is currently free)
  • Anything we don’t directly need to make a feature work

4. What we never do

  • We do not run analytics or tracking SDKs in the App.
  • We do not have a crash-reporting SDK in the App.
  • We do not sell, rent, or share your data with advertisers or data brokers.
  • We do not use your data to train AI models.
  • We do not show ads.

5. Third parties we do use

We use these companies as data processors. Each holds a narrow slice of data for a specific purpose:

  • Apple — App Store distribution, iOS Sign in with Apple, optional iCloud storage of your private database.
  • Google / Microsoft / Meta — if you choose their sign-in option, we forward the authentication token they issue and verify it on our server. We never receive your password.
  • Amazon Web Services (Frankfurt, Germany) — hosts our backend server and database. They cannot see your data in transit thanks to TLS encryption, and the disks are encrypted at rest.

6. Deleting your account

Open the App → Settings → Account → Delete account. Type DELETE to confirm.

When you do this:

  1. Your local session is signed out immediately.
  2. Your server record is flagged for deletion.
  3. Within 7 days an automated job hard-deletes every row tied to your account from our database (user record, identity links, sessions, synced content, audit events).
  4. iCloud data, if any, must be wiped separately from iOS Settings — we have no access to it. The deletion screen reminds you of this.

You can also reach us at ras@advena.io to request deletion if you have lost access to your device.

7. Data retention

  • Account record: until you delete it.
  • Account event log: 90 days, then purged.
  • Idempotency keys (short-term request deduplication): 24 hours.
  • Soft-deleted account: hard-deleted after 7 days.

8. Children

The App is not directed at children under 13. We do not knowingly collect data from anyone under 13. If you believe a child has signed in, contact us and we will delete the account.

9. Changes

We will update this page when we change anything material. The “Last updated” date at the top reflects the most recent change.

10. Contact

Privacy questions or deletion requests:

If you are a resident of the European Economic Area, you have rights under the GDPR to access, correct, port, or delete your data. The deletion flow above is the fastest route. For other requests, email us at the address above and we will respond within 30 days.