Privacy Policy
Last updated: July 16, 2026This policy explains what data Fagia ("the app") processes, why, and with whom it is shared. Fagia is an intermittent-fasting app for iPhone; it does not require an account or your name or email.
1. Data stored on your device
Your fasts, weight, meals, the progress photos you choose to keep, and journal notes are stored locally on your iPhone: we do not keep them on our servers or tie them to an account. When you use the AI analysis features, the data described in section 2 is sent for processing. Deleting the app removes its local data; the pseudonymous identifier stored in the iOS Keychain may survive a reinstall, as explained in section 3.
2. Photos and AI analysis
Photo analysis (meals and body progress). When you photograph a meal to estimate calories and macros, or take a body-progress photo to estimate your composition, the image is sent encrypted (HTTPS) to our proxy server (api.fagia.app) together with the anchor data needed for the calculation: for a meal, an optional note; for the body analysis, your weight, height, sex, and age. Our server forwards it to an artificial-intelligence provider (currently OpenAI) solely to analyze it and return the estimate. Fagia's proxy does not persist the photos or request content after responding.
Goal projection. Separately, when you check your goal projection, the app sends —with no photo— the already-computed figures of that projection to the same AI provider, solely to generate the explanatory text that accompanies it. Fagia's proxy also does not persist that content after responding. OpenAI may retain inputs, outputs, and metadata under its API data controls; by default, abuse-monitoring logs may be retained for up to 30 days unless different retention controls have been approved.
3. Pseudonymous identifier and subscription
To manage your subscription we use a pseudonymous UUID generated on your device and stored in the iOS Keychain. It is not your name or email, but it is stable, can link requests, and may survive a reinstall. Apple handles the purchase, charge, and renewal through your App Store account and its own data. RevenueCat receives the pseudonymous UUID and the subscription status or data needed to validate your access. Fagia never sees or stores your payment details.
4. Abuse prevention (App Attest)
To prevent fraudulent use of the analysis service, the app uses Apple's App Attest. The token sent to the proxy includes the pseudonymous identifier described in section 3 and the App Attest key identifier. The backend keeps the binding between them in memory for up to 7 days and refreshes that period with each new attestation.
5. This website
The fagia.app website is static, and Fagia uses no cookies, analytics, or trackers. The hosting provider processes technical request data, such as IP addresses, and may keep operational and security logs under its own policy.
6. Third parties involved
- Apple — App Store, In-App Purchase, and App Attest.
- RevenueCat — subscription management.
- AI provider (OpenAI) — analysis of selected meal and body-composition photos, the accompanying data, and the projection figures used to generate text (section 2).
- Website hosting provider — processing of technical request data and possible operational and security logs.
Each processes data under its own privacy policy.
7. Retention
Local data remains on your device until you delete it or uninstall the app. The Keychain UUID may survive a reinstall. Fagia's proxy does not persist content sent to the AI after responding; the AI provider may retain it under the controls linked in section 2. The App Attest binding is kept in memory for up to 7 days and refreshed on re-attestation. Apple and RevenueCat retain the data they process under their own policies.
8. Your rights
Removing the app deletes its local data, but does not guarantee deletion of the Keychain UUID or records processed by Apple, RevenueCat, the AI provider, or the hosting provider. For subscription matters or to exercise access, rectification, or erasure rights (Uruguay's Law No. 18.331 and, if you reside in the EU, GDPR), email us at hola@fagia.app. Data managed directly by Apple must also be requested from Apple.
9. Children
Fagia is not directed to children and does not knowingly collect data from minors.
10. Changes
We may update this policy; the new version will be posted here with its date. If a change materially affects how your data is processed, we will provide appropriate notice in the app or on this website, as applicable.
11. Contact
Controller: fagia.app, Uruguay. Contact: hola@fagia.app.