What this document covers. It describes the Arry app. What data arises when you visit the arry.app website - server logs, local language storage, and the absence of cookies and analytics - is described separately: data processing when visiting the site.
Introduction
Arry respects your privacy. Below is what data the app uses and why.
What data we use
Apple Health (HealthKit) data
With your permission, Arry reads from Apple Health:
- Heart & respiration: heart rate, resting heart rate, heart rate variability (HRV), VO₂max, respiratory rate, blood oxygen (SpO₂).
- Sleep: sleep duration and stages, wrist temperature during sleep.
- Activity: workouts, steps, distance, active and basal energy, workout routes.
- Body: height, weight, body temperature and basal body temperature.
- Nutrition: water, caffeine, alcohol.
- Reproductive health (with separate permission): menstrual cycle and bleeding data, ovulation test results, cervical mucus, basal body temperature.
Important: you control access to each Apple Health data type in iOS settings and can revoke it at any time.
Writing to Apple Health
If you log data manually in the app (for example water, caffeine, alcohol, or cycle entries), Arry can - with your permission - write it back to Apple Health so it appears in your overall health picture. Writing happens only when you grant the “write” permission in Apple Health.
Flow journal (data you enter yourself)
In the Flow section you can log lifestyle factors: caffeine, alcohol, water, screen before bed, meditation, mood, and notes. Arry compares these with your sleep and recovery data to find personal patterns. These entries are stored on your device; some of them (water, caffeine, alcohol) sync to Apple Health with your permission.
Cycle & pregnancy
If you turn on cycle tracking or pregnancy mode, Arry processes menstrual cycle data, symptoms, and - when enabled - pregnancy, to adapt recovery metrics and recommendations. This is sensitive health data: it is processed on your device, not shared with third parties, and not used for advertising. You can turn off these modes and delete the related data in the app at any time.
Location data
If you use workout features, Arry may use GPS for:
- detecting workouts;
- mapping your route during a workout.
Important: location data is used only for app features and is not used for advertising.
Weather data (Open‑Meteo)
If you enable weather for workouts, the app sends coordinates and workout time to Open‑Meteo to fetch conditions. The request is made from your device.
Connecting workout services (Wahoo, Polar, Intervals.icu)
You can optionally connect a Wahoo, Polar, or Intervals.icu account so that Arry shows workouts from those devices and services and counts them towards your training load. Connecting uses OAuth: you enter your login and password on the service’s own website - they never reach Arry.
From a connected service Arry receives completed workouts: start time and duration, sport type, distance, elevation gain, heart rate, power, cadence, pace, route, and other metrics the service exposes through its API.
-
Wahoo and Polar. The access token for your account is stored encrypted (AES‑256‑GCM) on Arry’s server, tied to an anonymous key for your app installation - the key itself is never stored, only an irreversible hash of it. Stored alongside the token are: an anonymous installation identifier, a technical identifier of your Wahoo or Polar account (needed to revoke access when you disconnect), and the connection and last-sync dates. No name, email, or phone number is among them - Arry never asks for those.
When the app requests workouts, the server calls the Wahoo or Polar API and passes the response straight through to your phone. Workout data is not stored on the server - it exists only for the duration of the request. Operational logs keep counts and HTTP status codes only, with no workout contents, routes, or health metrics. - Intervals.icu. Arry’s server is involved only at the moment you connect: it exchanges the authorization code for an access token once (as the protocol requires) and stores nothing. After that the token lives in the secure Keychain on your device, and the app talks to intervals.icu directly, bypassing our server. When a workout was recorded by a Garmin device, Arry states that on the workout card.
- Disconnecting. The disconnect button in Arry’s settings revokes access at the provider and deletes the connection, including the stored token, from our server. You can additionally revoke Arry’s access from your Wahoo, Polar, or Intervals.icu account settings.
Important: none of these connections are on by default. Until you connect a service yourself, Arry never contacts it and sends it nothing. Apple Health data is never sent to these services - the exchange runs one way, from the service to you.
Connecting Google Health (Fitbit, Pixel Watch)
You can optionally connect your Google Health account so Arry can see data from your Fitbit or Pixel Watch. For owners of those devices this is the only way sleep and recovery reach Arry - that data never arrives in Apple Health. The connection uses OAuth: you enter your credentials on Google's side, and Arry never sees them.
Arry requests read-only access and receives the following categories:
- Sleep: start and end times, stages (deep, REM, light, awake), duration and efficiency.
- Health metrics: heart rate variability, resting heart rate, oxygen saturation, respiratory rate, sleep temperature.
- Activity and workouts: completed workouts, sport, duration, distance, heart rate, calories, plus daily steps, distance and energy burned.
- Workout route: the GPS track recorded by the device during a session.
This data is used solely to calculate recovery, sleep analysis and training load inside the app - the features you connect the service for. We do not use it for advertising, do not share it with data brokers, advertising platforms or information resellers (including in anonymised or aggregated form), and do not use it to train artificial intelligence models.
Arry's access to Google Health, and its use of that data, comply with the Google API Services User Data Policy, including the Limited Use requirements.
- Storage. The access token for your Google account is stored encrypted (AES‑256‑GCM) on Arry's server, tied to an anonymous key generated by your app installation - the key itself is never stored, only its irreversible hash. No name, email or phone number is among the stored details: Arry does not request them.
- The data itself is not stored. When the app requests sleep, metrics or workouts, the server calls the Google Health API and passes the answer straight to your phone. Health values never remain on the server - they exist only for the duration of the request. Service logs record counters and response codes only, never content.
- One-way exchange. Arry never requests write permission and sends nothing to Google Health. Apple Health data is never forwarded there.
- Disconnecting and deletion. The disconnect button in Arry's settings revokes access at Google, deletes the connection along with the stored token from our server, and removes the imported data from your device. You can additionally revoke Arry's access from your Google account permissions page.
Importing workout files (.fit, .tcx, .gpx)
You can open a workout file in Arry from Files, email, or another app. Parsing happens entirely on your device: the file is not uploaded to our servers and not shared with third parties.
Export to an AI assistant (optional)
On the workout screen you can tap “Export to AI”. Arry prepares a text summary of the workout and opens the iOS Share sheet - you choose where to send the data (for example ChatGPT, Claude, Notes). Data leaves your device only when you send it yourself, and goes to the third-party service you choose, which operates under its own terms. Arry does not send this data automatically.
What we do not collect
- We do not ask for your name, email, or phone to use the app.
- We do not sell your data.
- We do not use advertising trackers to follow you across other apps.
Health data (Apple Health, the Flow journal, cycle) is used in Arry only to calculate recovery metrics, analytics, and in-app recommendations. We do not use it for personalised advertising, marketing, or selling to third parties.
Anonymous usage analytics
To understand which features you use and improve the app, Arry collects anonymous interaction analytics via TelemetryDeck (for example: which screens are opened, which insights are viewed).
- These events contain no health data (HRV, heart rate, sleep, recovery scores are never sent).
- Analytics are anonymous: no name, email, advertising identifiers (IDFA), or cross-app tracking.
- TelemetryDeck derives an anonymized install identifier on the device itself; we cannot tie events to your identity.
- Data is processed in the EU (TelemetryDeck GmbH), GDPR-compliant.
How we use the data
Data is used only for app features:
- Recovery analysis: readiness metrics.
- Recommendations: load and recovery guidance.
- Analytics: sleep, heart rate, HRV, and load charts.
Where data is stored
- Data is stored locally on your device.
- Health, sleep, recovery metrics and the Flow journal are never synced to our cloud - they do not leave the device.
- The one exception is when you connect Wahoo, Polar, or Google Health yourself: an encrypted access token for that account is stored on our server so syncing can work. The workouts themselves are not stored there, and Apple Health data never reaches it under any circumstances. Disconnecting the service deletes that record.
- When you delete the app, data is removed from the device. If you connected Wahoo, Polar, or Google Health, disconnect them in the app before deleting it - or email us and we will remove the connection manually.
Sharing with third parties
- Open‑Meteo: only when you use the weather feature. Terms: https://open-meteo.com/en/terms
- TelemetryDeck: anonymous usage analytics (no health data, no personal data). Policy: https://telemetrydeck.com/privacy/
- An AI assistant of your choice: only when you use the “Export to AI” feature yourself and send a workout summary via the Share sheet. The data goes to the service you pick (e.g. ChatGPT, Claude) and is processed under its terms.
- Wahoo: only when you connect a Wahoo account yourself. The exchange runs one way - your workouts from Wahoo into Arry. Policy: https://www.wahoofitness.com/privacy-policy
- Polar: only when you connect a Polar account yourself. The exchange runs one way - your workouts from Polar into Arry. Policy: https://www.polar.com/en/legal/privacy-notice
- Intervals.icu: only when you connect an Intervals.icu account yourself. The app talks to the service directly from your device. Policy: https://intervals.icu/privacy
- Google Health: only if you connect your Google account yourself. The exchange runs one way - your data from Google Health into Arry, read-only. Policy: https://policies.google.com/privacy
- No one else: we do not sell or rent your data.
Your control
- Manage HealthKit access in iOS settings.
- Revoke access in iOS settings at any time.
- Disconnect Wahoo, Polar, Intervals.icu, or Google Health in Arry’s settings - access is revoked and the stored token is deleted.
- Request data deletion by emailing hello@arry.app. We will process requests within 48 hours.
- Delete the app and data at any time.
Medical limitations
Arry is not a medical device and does not provide diagnoses, replace a doctor’s advice, or serve as emergency medical care. All recommendations in the app are for information and support only.
Security
- All data is transmitted over HTTPS.
- Data is protected by iOS security.
- Access is governed by iOS permissions.
- We use only the data needed for Arry’s features.
Policy changes
We may update this policy. The date at the top will change when we make material updates.
Contact
- Email: hello@arry.app
Note: this policy applies to Arry. Apple/HealthKit, Open‑Meteo, Wahoo, Polar, Intervals.icu, and Google Health have their own terms.
Also relevant: how Arry interprets recovery signals is described on the methodology page. Who builds Arry and how site materials are prepared is described on the about page.