Privacy Policy
Last updated: March 11, 2026
Allura Privacy FAQ
Your body, your data. Period.
At Allura, we believe that your health data is a part of you—not a product to be sold. Here are the answers to the most common questions about how we protect your privacy.
1. Do you sell my data?
No. Never. We do not sell, rent, or trade your personal or health information to data brokers, insurance companies, or advertisers. Our business model is built on providing value to you, not selling your secrets.
2. Do I need to create an account?
No. Allura is built entirely without accounts or logins. Your data stays 100% on your phone and is never linked to an email or name. We believe the most secure way to protect your identity is to never ask for it.
3. How does the AI work? Is it reading my private logs?
No. We use a "Privacy-First" AI model powered by the Gemini API for our chat feature, which is strictly for general wellness and nutrition advice.
We send absolutely NO cycle data, symptoms, or personal logs to the AI. Because you don't have an account, there is no name or email to attach to this data. Furthermore, we use the professional enterprise APIs which are legally prohibited from using any chat data to train their global models.
4. What data does Allura collect?
Only what you choose to log in the app. This may include:
- Your cycle dates and symptoms.
- Basal Body Temperature (BBT) and moods.
We do not collect device information, nor do we use third-party marketing trackers (like Facebook or AppsFlyer) to follow you around the internet.
5. How do you keep my data secure?
Your privacy is built-in by design.
On-Device Storage: By keeping your data primarily on your device rather than a central server, we eliminate the risk of massive data breaches.
Encryption: Any data that needs to leave your phone (such as an AI query) is encrypted in transit using industry-standard protocols.
6. Does Allura share data with Apple Health?
No, we never write or share your data with Apple Health. We do, however, allow you to give us permission to read data (like steps or sleep) from Apple HealthKit to help improve your cycle predictions privately within our app. This is a one-way street: data comes in, but nothing goes out. You can turn this off at any time in your iPhone settings.
7. Where is Allura based?
We are a Canadian company based in Ontario. We comply with PIPEDA (Canada's federal privacy law), which is one of the strictest privacy standards in the world.
8. How do I delete my data?
You are in total control.
Because your data lives directly on your phone and there are no accounts, simply deleting the app from your device erases all your local health data instantly and permanently.
Have more questions?
We're happy to help. You can reach our team at admin@alluratechnologies.com.
Privacy Policy for Allura
Welcome to Allura, operated by Allura Technologies Inc. ("Allura", "we", "us", or "our"). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application (the "App") and our website (the "Services").
By using Allura, you agree to the practices described in this policy. If you do not agree, please do not use the Services.
1. Our Privacy Philosophy
Unlike many apps in the fem-tech space, Allura was built with the assumption that your health data belongs to you.
- Data Minimization: We only ask for what we need to provide your predictions.
- On-Device First: We prioritize processing your data on your physical hardware rather than our servers.
- No Monetization of Data: We do not, and will never, sell or rent your health data to insurance companies, data brokers, or advertisers.
2. Detailed Categories of Data We Collect
A. Information You Provide to Us
No Registration Data: Allura does not use accounts or logins. We do not collect your name, email address, or phone number.
Health and Menstrual Data: This includes period start and end dates, cycle length, symptoms (e.g., cramps, headaches), moods, basal body temperature (BBT), sexual activity, and weight. The data you log is stored locally on your device.
Communication Data: If you contact our support team via email, we collect the content of your message and any attachments to resolve your inquiry.
B. Information Collected Automatically & Third Parties
Firebase: We use Firebase to remotely host content, like educational stories, and serve them to your app. We do not use Firebase Analytics, meaning we do not use Firebase to track how you use the app or collect device identifiers.
In-App Purchases: We use Apple's built-in In-App Purchases (IAP) to manage subscriptions. Allura does not collect or process your credit card information directly; this is handled securely by Apple.
C. Apple HealthKit Data
With your explicit consent, we may securely read data from the Apple Health App to enhance your insights within Allura. This is a read-only integration; we do not write any of your cycle data back to Apple Health. We do not use HealthKit data for marketing or advertising purposes, nor do we share it with third parties.
3. The Allura AI Architecture
We use Artificial Intelligence to provide general wellness and nutrition advice, powered by the Gemini API. We do NOT use AI to process your cycle data.
Secure Cloud Processing
- No Cycle Data Shared: The AI chat feature is completely siloed from your health logs. We do not send your cycle dates, symptoms, or any logged data to the Gemini API.
- De-identification: Because there are no accounts, we don't have your name or email to begin with. The AI only receives the general wellness questions you type into the chat.
- Enterprise API Protection: We use professional API access, meaning your prompts are never used to train the provider's global AI models.
- Temporary Retention: Your prompt is sent via encrypted channels and is subject to strict data deletion policies by our AI provider after the query is processed.
4. Legal Basis for Processing
We process your information under the following legal frameworks:
- Consent: For the collection of sensitive health data (Special Category Data) locally on your device. You may withdraw this consent at any time by deleting the app.
- Contractual Necessity: To provide the cycle tracking and wellness services you signed up for.
- Legitimate Interests: To improve our app's performance and ensure security.
5. Data Storage, Retention, and Transfers
Storage
Allura is a Canadian company. All your personal health logs are stored strictly on your local device. We do not maintain a central database of our users' health records.
International Transfers
If you are located in the European Economic Area (EEA) or the UK, please note that when using AI features, anonymous queries may be processed in the United States (e.g., Gemini API). We ensure that our partners provide adequate protection and do not use this data for their own cross-context tracking.
Retention and Deletion
Because there are no accounts, we do not retain your data on a server. Your data is retained on your device for as long as you keep the app installed. If you wish to delete your data, you simply need to uninstall the app.
6. Your Rights and Choices
Regardless of your location, Allura's architecture empowers your rights natively:
- The Right to Access: You can view all your logged health data directly within the app.
- The Right to Erasure ("Right to be Forgotten"): You can delete all your data instantly at any time by simply deleting the app from your phone.
Because we do not collect your personal information or store your data on our servers, we cannot fulfill typical DSR (Data Subject Requests) dynamically as there is no account or identifier we can use to locate "your" data.
7. Security Measures
We implement security by design to protect your most sensitive logs:
- No Centralized Database: We don't maintain a server with users' health records, eliminating the target for mass data breaches.
- Encryption in Transit: All communication between your app and external services (like AI insights) is encrypted using industry-standard protocols.
8. Children's Privacy
Allura is not intended for use by individuals under the age of 13. If you are under 16 and live in the EEA, UK, or Canada, you must have parental consent to use the Services. If we learn we have collected data from a child without proper consent, we will delete it immediately.
9. Changes to This Policy
We may update this policy from time to time. If we make "material changes" (such as changing how we share health data), we will notify you via a prominent notice in the App or via email before the change takes effect.
10. Contact Information
For questions regarding this policy or to reach our Data Protection Officer (DPO), please contact:
Allura Technologies Inc.
Attn: Privacy Department
Email: admin@alluratechnologies.com
Address: 3355 Hurontario St
Unit 05 PMB 323
Mississauga, ON
L5A 3E7, Canada