Pre-release privacy overview

Built to begin locally.

This overview explains the intended privacy model for the Gutelle iOS app before public beta. It is not the final legal privacy policy; that document will be reviewed and published before distribution.

Product in development · Details may be refined before beta
01

Local-first journaling

You can begin journaling and use deterministic Insights without creating a Gutelle account. Local journal data stays on your device unless you explicitly activate an optional feature that needs a different data path.

02

Optional cloud protection

A Gutelle account is optional. Before activation, the app explains what cloud protection changes. Protection, synchronization and restore are presented as account features, not as a requirement for journaling.

03

AI only after a separate choice

AI reports require separate consent and an explicit request. The intended report flow uses reviewed deterministic findings and displays supporting evidence and limitations. Meal images used for assisted capture are intended to be transient rather than permanent journal records.

04

Apple Health stays on device

Optional Apple Health context is designed to remain on device. It is not included in Gutelle cloud synchronization or AI report payloads.

05

Control and deletion

The release build is designed to provide journal export and distinct controls for local journal deletion, reports, consent and an optional Gutelle cloud account. Destructive actions require clear confirmation.

06

Wellness, not medical care

Gutelle is a wellness journal. It does not diagnose conditions, prove causes, identify medical food triggers or recommend treatment.