glucia privacy

Glucia — Privacy Policy
Glucia
Diabetes & Glucose Tracker
Privacy Policy
Effective Date: June 1, 2025  ·  Version 1.0

Key Facts at a Glance

✅  All your health data is stored exclusively on your device — never uploaded to any server.

✅  We do not sell, share, or monetise your personal health data.

✅  Advertising (Google AdMob) is optional and governed by your consent.

✅  You can delete all your data at any time from Settings → Danger Zone.

✅  This app is not intended for children under the age of 13.

⚖️  This policy complies with GDPR, CCPA, and applicable app store policies.

1. Who We Are

Glucia is a mobile application that provides diabetes management tools including glucose tracking, medication reminders, nutrition logging, and health reporting.

DetailInformation
App NameGlucia — Diabetes Tracker
PlatformAndroid (Google Play Store)
LanguagesEnglish, French, Arabic

2. Scope of This Policy

This Privacy Policy applies to the Glucia mobile application and all its features including glucose logging, food tracking, medication reminders, and PDF report export.

It does not apply to third-party websites linked from the app (such as Open Food Facts) or the Google Play Store itself.

3. Data We Collect

Glucia is built on a local-first architecture. The vast majority of data never leaves your device.

3.1 Data You Enter — Stored Locally Only

The following data is stored exclusively in a local database on your device. It is never transmitted to Glucia or any third party:

CategoryExamplesStored Where
Glucose ReadingsValue, timestamp, timing, mood, notesOn device only
ProfileName, date of birth, gender, weight, height, diabetes typeOn device only
MedicationsName, dose, schedule, duration, taken/skipped statusOn device only
Food & NutritionFood names, carbs, protein, fat, calories, timestampsOn device only
App PreferencesLanguage, theme, dark mode, notification settingsOn device only
Glucose TargetsPersonal min/max target range (mg/dL)On device only

3.2 Data Collected by Third-Party SDKs

Google AdMob (Advertising)

Google AdMob displays advertisements to free users. AdMob may collect:

  • Advertising ID (Android Advertising ID)
  • IP address (approximate location for ad targeting)
  • Device information (model, OS version, screen size)
  • Ad interaction data (impressions, clicks)

Legal basis (GDPR): Consent (Article 6(1)(a)). EU/UK users are presented with a consent form before any advertising data is collected. You may withdraw consent at any time in Settings → Privacy → Manage Ad Preferences.

Users who decline personalised advertising will see non-personalised ads instead.

Google's privacy policy: policies.google.com/privacy

Google Fonts

The app uses Google Fonts (Nunito and Playfair Display). These are loaded from Google's CDN on first use. Google's servers may log the request (IP address, user-agent). No personal health data is involved.

Open Food Facts (Barcode Scanner)

When you use the barcode scanner, Glucia queries the Open Food Facts public API to retrieve nutritional information. Your device's IP address is sent as part of a standard HTTP request. No personal data from your profile is transmitted.

Open Food Facts privacy policy: world.openfoodfacts.org/privacy

4. How We Use Your Data

Data stored locally is used solely to provide the features of the Glucia app:

  • Glucose Tracking: Display readings, calculate averages, estimate A1C, generate time-in-range statistics.
  • Medication Reminders: Schedule and deliver local push notifications at times you set. Track taken/skipped status.
  • Nutrition Logging: Record meals, calculate daily macro totals, show carb progress.
  • Health Reports: Generate PDF reports from your local data. Reports are only shared when you explicitly tap the share button.
  • Profile Personalisation: Show your name in reports, calculate BMI, apply your glucose target range to charts.
  • Advertising: AdMob data is used by Google to display relevant advertisements, subject to your consent.

5. Legal Bases for Processing (GDPR)

This section applies to users in the EEA, United Kingdom, and Switzerland.

Processing ActivityLegal BasisGDPR Article
Storing health data locallyPerformance of contract / your explicit requestArt. 6(1)(b), Art. 9(2)(a)
Personalised advertisementsConsentArt. 6(1)(a)
Non-personalised advertisementsLegitimate interestsArt. 6(1)(f)
Support or privacy enquiriesLegitimate interestsArt. 6(1)(f)
Barcode API callPerformance of contractArt. 6(1)(b)

Special Category Data: Glucose readings, diabetes type, and medication information constitute "special category data" under Article 9 GDPR. You provide this data voluntarily for personal health tracking, based on your explicit consent (Article 9(2)(a)).

6. Data Sharing and Disclosure

We do not sell, rent, or trade your personal data. We do not have access to your health data. Your health information never leaves your device except in the following cases:

When You Choose to Share

The PDF export feature generates a report from your local data. This report is only shared when you actively tap the share button and select a recipient. We have no visibility into this sharing.

Google AdMob

AdMob may collect advertising-related data under its own privacy policy, subject to your consent choice.

Legal Requirements

We may disclose information if required by law. Given that all health data is on your device, we typically would not have access to provide such information even if required.

7. Data Storage, Retention, and Security

Storage Location

All health data is stored in a local SQLite database on your Android device, in the app's private data directory — not accessible to other apps.

Retention

Your data is retained for as long as you use the app. It is automatically deleted when you uninstall the app or use the Delete All My Data feature in Settings. We retain no copies on any server.

Security

  • All data is stored in the app's sandboxed private storage
  • No health data is transmitted over the internet
  • The app has no login system — no credentials to steal
  • PDF reports are generated entirely on-device

You are responsible for the physical security of your device, including lock screen protection.

8. Your Rights

Because all data is stored locally, most rights are exercised directly within the app:

RightHow to Exercise It
AccessAll your data is visible within the app at all times.
RectificationEdit or correct any entry directly within the app.
ErasureSettings → Danger Zone → Delete All My Data.
Data PortabilityUse the PDF Export feature (Report screen).
Withdraw Ad ConsentSettings → Privacy → Manage Ad Preferences.
Lodge a ComplaintContact your local Data Protection Authority.

How to Delete Your Data

You can permanently delete all your data at any time:

  1. Open the Glucia app
  2. Go to Settings (bottom navigation bar)
  3. Scroll to the bottom and tap Danger Zone
  4. Tap "Delete all my data"
  5. Confirm the deletion

This permanently and immediately deletes all glucose readings, food logs, medications, profile data, and app preferences from your device. This action cannot be undone.

Alternatively, uninstalling the app removes all data automatically.

For any data-related requests, use the feedback button inside the app: Settings → Send Feedback

9. Advertising and Consent

Google UMP Consent Flow

Users in the EEA, UK, or Switzerland will see a consent form powered by Google's User Messaging Platform (UMP) before any advertising data is collected. This form appears on first launch and can be accessed again at any time via Settings → Privacy → Manage Ad Preferences.

Glucia is free to use. Banner advertisements are shown throughout the app. A rewarded video ad plays before exporting PDF reports, viewing 90-day history, and enabling dark mode. All ads are optional — if an ad fails to load, the feature unlocks automatically.

10. Children's Privacy

Glucia is not directed at children under the age of 13. We do not knowingly collect personal data from children under 13. The app is rated for ages 18 and above on the Google Play Store.

If you believe a child has entered data into Glucia, you may delete it using Settings → Danger Zone → Delete All My Data, or by uninstalling the app.

11. Medical Disclaimer

⚠️ Important Medical Disclaimer

Glucia is a personal health tracking tool and is NOT a medical device.

The information displayed — including glucose trends, A1C estimates, nutritional data, and health reports — is for informational and organisational purposes only.

Glucia does NOT provide medical advice, diagnosis, or treatment.

Always consult a qualified healthcare professional before making any changes to your diabetes management, diet, or medication.

The A1C estimator uses a mathematical formula and is not a substitute for a laboratory HbA1c test ordered by your doctor.

12. Third-Party Services and Attributions

Service / LibraryPurposeLicense
Open Food FactsNutritional data for barcode-scanned foodsODbL 1.0
Google Fonts (Nunito, Playfair Display)TypographySIL OFL 1.1
Flutter & Dart SDKApp frameworkBSD 3-Clause
fl_chartGlucose and nutrition chartsMIT
pdf / printingPDF report generationApache 2.0

13. International Data Transfers

Because Glucia stores health data locally on your device, no international transfers of your health data occur. The only international data flows are:

  • AdMob advertising data processed by Google (US company), subject to EU Standard Contractual Clauses
  • Open Food Facts API requests sent to Open Food Facts servers (French non-profit) when using the barcode scanner
  • Google Fonts requests sent to Google's CDN on first font load

14. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes:

  • We will update the "Effective Date" at the top of this document
  • For significant changes, we may notify you via an in-app notice on next launch

Continued use of Glucia after changes take effect constitutes acceptance of the updated policy.