Privacy Policy
Last updated: 2 June 2026
The short version
- Your health data (glucose, blood pressure, weight, medications, food, photos, reminders) stays on your phone. We do not run servers that store it.
- You can use the app without creating any account.
- If you tap Analyze with AI on a food photo, or send a message to the AI companion, that photo / message is sent to a third-party AI proxy to generate the response. Nothing else is sent.
- Subscriptions are handled by Apple and Google. We use a third-party subscription-management service to verify your entitlement — no personal information.
- Google Drive backup is optional. If you connect it, Glens receives only your account email (to show which account is connected) and a narrow
drive.appdatapermission that lets us read and write a single backup file in a hidden, app-only folder in your own Drive. Glens cannot see any of your other Drive files. We do not transfer Google user data to any third party and do not use it for advertising or to train AI models. - We do not track you. No analytics. No advertising IDs. No location.
What we store on your device
Glens stores the following on your phone, in the app’s local encrypted storage:
- Glucose readings (value, context, time, optional note)
- Blood-pressure entries (systolic, diastolic, pulse, time, optional note)
- Weight entries (value, unit, time, optional note)
- Medication doses (name, dosage, type, time of day, time, optional note)
- Food log entries (description, detected items, carbs, sugar, optional photo, time, optional note)
- Reminders, your in-app settings, and AI chat history
This data is on your device only. Glens has no servers that store it.
What gets sent to a third-party AI service
Two features in Glens send data to a third-party AI provider so the model can generate a response:
- Snap Food → Analyze with AI: when you tap Analyze, the photo (resized to ~1024 px) is sent to our AI provider along with a nutrition-estimation prompt. The provider returns identified items and estimated carbs and sugar.
- AI companion (chat & voice): when you send a message, your message text and a short summary of your recent readings is sent to our AI provider to produce a contextual response.
Glens does not retain copies of these requests on its own infrastructure. The AI provider’s own privacy policy governs how they handle the request while it is being processed.
Use of Google APIs and Google user data
Glens uses Google APIs only for the optional Google Drive backup feature in Settings → Sync. Connecting your Google account is entirely opt-in; every other feature of the app works without it.
Glens’s use of information received from Google APIs adheres to the Google API Services User Data Policy, including the Limited Use requirements.
Google user data we access
When you tap “Connect Google Drive” in the app, Glens requests the following from your Google account, and nothing else:
- Your Google account email address and basic profile info (returned by Google as part of the OAuth sign-in itself). Glens uses this only to display which Google account is connected on the Sync settings screen, so you can confirm you signed in with the right account. The email is stored locally on your device and is never uploaded to a Glens server (Glens does not run user-facing servers).
- The
https://www.googleapis.com/auth/drive.appdatascope — this narrowly grants Glens permission to read and write files in your Google Drive’s hidden, application-specific App Data folder. The App Data folder is invisible in the normal Drive interface, is invisible to every other application, and cannot be used to access your regular Drive files (documents, photos, sheets, etc.). Glens does not request and does not receive access to any of your other Drive content.
How Glens uses that access
- Glens writes a single backup file containing your in-app tracking data (glucose, blood pressure, weight, medications, food entries, reminders, and app settings) into your own Drive App Data folder. The file lives only in your Google account.
- When you tap “Restore,” Glens reads that same file back from your Drive App Data folder and merges it into the app’s local storage on your device.
- That is the entire purpose of Glens’s Google API access. Glens never reads, writes, modifies, or deletes any other Drive content; never lists other files; never accesses shared drives; and never contacts Google for any purpose other than the App Data sync described above.
What Glens does NOT do with your Google user data
- We do not transfer, sell, share, license, or otherwise disclose your Google user data to any third party, for any purpose, beyond what is necessary for the App Data sync to function (i.e. transmission between your device and Google servers).
- We do not use Google user data to serve advertisements, including retargeted, personalised, or interest-based ads.
- We do not use Google user data to develop, improve, train, or evaluate any generalised or non-personalised artificial-intelligence or machine-learning models, whether ours or any third party’s.
- We do not allow any human (including Glens employees or contractors) to read your Google user data, except (a) you, in your own Drive; (b) at your explicit request, for support purposes; or (c) where required by law.
Data retention, deletion, and how to revoke access
- The backup file in your Drive App Data folder remains in your Google account until you delete it. You may revoke Glens’s access to your Drive at any time at myaccount.google.com/permissions. After you revoke access, Glens can no longer read from or write to your Drive. Backup files already stored in your App Data folder remain under your control in your own Drive; you can remove them from Drive’s settings page under “Manage apps.”
- The OAuth access token Glens holds locally on your device expires after one hour. You may be asked to re-sign-in periodically as a result; this is normal and intentional — we do not request long-lived refresh tokens.
- Uninstalling Glens removes the locally-stored OAuth token, the cached email displayed in Settings, and all your in-app health data from your device.
Subscriptions
Pro features are billed by Apple App Store and Google Play. To verify whether you have an active subscription, Glens uses a third-party subscription-management service, which receives an anonymous identifier — no email, no name, no health data.
Device permissions we ask for
- Camera — to snap a meal photo.
- Photo library — to choose an existing meal photo.
- Notifications — for reminders.
- Exact alarms / Full-screen intent / Foreground service (Android) — only for alarm-tier reminders that need to wake the screen.
What we do NOT do
- We do not require an account, email, or password.
- We do not collect analytics events.
- We do not use advertising identifiers.
- We do not access your location, contacts, or calendar.
- We do not sell or share your data with any third party for marketing.
Health data (Google Play Data Safety)
Glucose, blood pressure, weight, medication, and food entries are Health and fitness data under Google Play’s Data Safety classification. Glens treats them with extra care; they are not sold and not shared except as described above.
Children
Glens is not intended for users under 13 years old (under 16 in the European Economic Area).
Your rights
You can view, export, or delete any data at any time from Settings → Export or Settings → Reset. Uninstalling the app removes all local data.
Changes to this policy
If we materially change this policy, we will update the Last updated date and surface an in-app notice on first launch after the change.
Contact
Questions? Email support@glens.app.