The short version
The Landmark app has no account, no server and no analytics. Every health metric it reads is read on your iPhone, stored on your iPhone, and analyzed on your iPhone. None of it is transmitted to us, because there is nowhere for it to be transmitted to.
The rest of this page is the detail behind that paragraph.
Who this policy is from
This policy describes how the Landmark iOS app and this website handle your information. It is published by Smashing Labs LLC, referred to below as "we" or "us."
If you have a question about this policy, get in touch via our support page.
What Landmark reads from Apple Health
With your permission, Landmark reads health data from Apple Health so it can show progress toward the targets you set and look for relationships between your behaviors and your results. Depending on which permissions you grant, that can include:
- Activity: steps, distance, flights climbed, active energy, exercise minutes
- Workouts: type, duration, and energy for recorded sessions
- Sleep: time asleep, and the time you fell asleep
- Nutrition: energy, protein, water, and other logged nutrients
- Alcohol: the number of alcoholic drinks you log
- Body measurements: weight, body fat percentage, lean body mass
- Vitals: heart rate, resting heart rate, heart rate variability, VO₂ max, systolic blood pressure
- Daylight: time spent in daylight, which iPhone and Apple Watch record
- Mindfulness: mindful minutes, recorded by a meditation app or Apple Watch's Mindfulness app
Landmark asks for one permission sheet, once, and every type on it is one a goal, a target or a correlation reads. It does not ask for data it has no feature for: blood glucose, blood oxygen, respiratory rate, body temperature, heart rhythm, hearing, and walking and running mechanics are all absent from the request.
Landmark requests read access only. It does not write anything into Apple Health.
Permission is granted per data type, in Apple Health, and you can change or revoke it at any time in Settings → Health → Data Access & Devices → Landmark. Landmark cannot tell the difference between a data type you have denied and one that has no data in it. That is a deliberate privacy feature of Apple Health, and it applies to us like every other app.
What Landmark stores, and where
Everything Landmark records is stored in the app's own database on your device: the inputs you configure, the goals you set, and the results it computes. That database is covered by your iPhone's own encryption.
We do not operate a server that receives your health data. There is no Landmark account to create and no credential to give us.
Landmark does not use iCloud. It has no CloudKit container and syncs nothing to your iCloud account, so no health data is stored there by the app.
The one exception is your own device backup: if you back up your iPhone to iCloud or to a computer, the app's database is included in that backup like every other app's, and is then governed by the terms of whichever backup you chose. That backup is between you and Apple; we have no access to it.
What we do not do
- We do not sell your data.
- We do not share your health data with advertisers, data brokers, or any third party.
- We do not use your health data for advertising or profiling.
- We do not embed third-party analytics or tracking SDKs in the app.
- We do not use your data to train machine-learning models.
Insights are computed on your phone
Landmark's insights come from correlating your own history. That is the analysis that produces lines like "when you sleep at least eight hours, your active calories the following day are higher." It runs on your device against your local database. Your data is not uploaded for processing.
Information Apple gives us
If you choose, in your own iOS settings, to share analytics and crash reports with app developers, Apple may give us aggregated crash logs and App Store usage statistics. This is Apple's mechanism, not ours: it is controlled in Settings → Privacy & Security → Analytics & Improvements, it contains no health data, and it does not identify you.
Apple also gives us aggregated App Store download figures. They contain no health data and do not identify anyone.
This website
This site is a set of static files. It asks you for nothing, and it never sees your health data. Our hosting provider, Netlify, keeps standard server logs of requests, which can include IP addresses, for a limited period for security and operational purposes. See Netlify's own privacy policy for how it handles that data.
The site uses Google Analytics to count visits and see which pages people read. It sets cookies in your browser, and it sends Google your IP address, the pages you open, and basic details about your device and where you came from. See Google's own privacy policy for how it handles that data. You can block it with a content blocker or your browser's own settings, and the site works the same either way.
The app shows these policies inside itself, by loading them from this site. That is what keeps the wording you read current. Those pages are served without the analytics tag, so reading a policy in the app is not measured. The request carries no health data, and it reaches Netlify's logs the same way a visit from a browser does.
If you email support, we will have your email address and whatever you put in the message, and we will keep it only as long as needed to answer you.
Deleting your data
Deleting the Landmark app from your iPhone deletes its database and everything in it. Because that data was never sent anywhere, there is nothing left on our side to delete.
Revoking Landmark's Apple Health permissions stops any further reading immediately. Data Landmark has already read remains in its local database until you delete the app.
Children
Landmark is not directed at children under 13, and we do not knowingly collect information from them. Given that we collect nothing, this is a statement of intent rather than a data-handling practice.
Your rights
Depending on where you live, you may have rights to access, correct, export, or delete personal information a company holds about you, under the GDPR, the CCPA, or a comparable law.
We hold no health data about you. Your access, export, and deletion rights over that data are exercised directly on your device, through Apple Health and through the app itself. For anything else, such as an email you sent support, get in touch via our support page and we will act on it.
Changes to this policy
If this policy changes, we will update the version and effective date at the top of this page. Substantive changes will be surfaced in the app.