← back to assa

Privacy Policy

Last updated 2026-05-01

assa is a journal for what you eat, lift, and weigh. Privacy is part of the product, not a footnote. This page tells you what we collect, why, and how to make it disappear.

What we store

What we don't store

Apple Health

assa writes the food, water, weight, and workouts you log into Apple Health so the Fitness app and your other health apps see them. The sync is one-way: assa never reads from HealthKit.

Resolving foods

When you log a food, the text is sent to our resolver, which checks our cache, the USDA FoodData Central database, Open Food Facts, and finally an AI fallback. The text is processed in transit; we don't keep your individual food strings beyond the cache row that lets the next person who types "strawberries" get an instant answer.

Where the data lives

On your device (encrypted at rest by iOS) and in our Supabase project (Postgres in the EU, row-level security scoped to your account). No one but you can read your rows, including us — service-role access is only used for account deletion.

Deleting your account

In the app, open Profile → Account → Delete account. That cascades through every per-user table and removes the Apple Sign-in record. There is no soft-delete. If you can't reach the in-app flow, email support@getassa.com and we'll do it for you.

Children

assa isn't directed at children under 13 and we don't knowingly collect data from them.

Changes

If we update this policy, we'll move the date at the top of this page and put a note in the next App Store release notes.

Contact

support@getassa.com