← CandidAge

Privacy Policy

Effective September 2, 2026

CandidAge is built around one rule: your health data is yours, and it never leaves your device. This policy explains exactly what that means.

What CandidAge reads

With your permission, CandidAge reads the following from Apple HealthKit:

CandidAge never writes data back to HealthKit, and never requests any other HealthKit data type.

Where your data goes: nowhere

CandidAge has no backend server for health data. There is no account, no sign-in, and no sync. Every computation — your biological age, its confidence score, and your trend history — happens entirely on your iPhone, using Apple's on-device frameworks. Nothing about your HRV, VO₂max, demographics, or computed results is ever transmitted anywhere, by us or anyone else.

If you delete the app, that data is gone. We have no copy, because we never had one.

Notifications

CandidAge can send local notifications (e.g. when a new score is ready, or a weekly summary). These are generated entirely on your device by iOS's local notification system — no notification content is ever generated by or sent through a remote server.

Subscriptions and payment

CandidAge Premium is sold via Apple's In-App Purchase system (StoreKit). Your payment details are handled entirely by Apple — CandidAge never sees or stores your card information. We only receive confirmation from Apple's systems that an entitlement is active, which is used locally to unlock the app.

The waitlist (candidage.app)

If you sign up for the pre-launch waitlist on this website, we store the email address you provide in a database, solely to notify you when CandidAge is available. That email is never sold, shared, or used for any other purpose. You can ask to be removed at any time — see Contact below.

Analytics and third parties

CandidAge contains no analytics SDKs, no advertising SDKs, and no third-party trackers of any kind. No data about your usage of the app is collected by us or shared with anyone else.

Children's privacy

CandidAge is not directed at children and is not intended for use by anyone under 13. We do not knowingly collect data from children.

Changes to this policy

If this policy changes, we'll update the effective date above and post the revised version here. Material changes will also be reflected in the app's release notes.

Contact

Questions about this policy or your data — including waitlist removal requests — can be sent to javidkoh@gmail.com.