Privacy policy
Last updated 18 September 2026 · TestFlight beta
Optrive is a planning app for shift workers. It reads your roster from your phone's calendar and, if you allow it, your sleep data from Apple Health, and turns them into a daily plan. This page says what Optrive collects, why, where it is kept, who else ever sees any of it, and how to remove it. It describes the app as it is built today. It is written for you, not for a lawyer.
Who is responsible for your data
Jeanette Arthur, an individual developer — security@optrive.app. This is the data controller under the GDPR. There is no company behind Optrive. A postal address is available on request.
What Optrive collects and why
| Data | Where it comes from | Why Optrive needs it |
|---|---|---|
| Email address and password | You, at sign-up | Your account, and syncing between your devices |
| Name, sleep need, caffeine habits, display preferences | You, during setup and in Settings | To calculate sleep debt and decide what the card shows you |
| Home and work locations: a name, an address you type, prep time; map coordinates where available | You, during setup | Departure times, and the traffic check on your commute |
| Which of your calendars is work and which are personal | You, in Settings | So Optrive reads the right calendars |
| Shifts: dates, times and the shift names from your work calendar | Your device calendar | To build each day's plan. Shifts are read from the phone each time and are not copied to the server; only the shift names you have labelled are kept |
| Personal calendar events | Your device calendar, only the calendars you selected | To flag clashes with shifts. Read on the phone only; never stored on the server |
| Sleep: time asleep and time in bed, per night | Apple Health, only after you grant access; or typed by you | Sleep debt and recovery. Optrive does not store your sleep stages |
| Heart rate variability and resting heart rate, one reading per day | Apple Health, only after you grant access | Recovery, to adjust training suggestions |
| Naps | Apple Health or one tap | They count against sleep debt |
| A fatigue tap: how you feel today, and when you tapped | You, one tap, only if you choose | To soften the day's plan when you say you are struggling |
| Notes you attach to a shift; confirmed start times for flexible shifts | You | To keep the plan accurate on the day |
| Gym sessions kept, and when | Your taps, or Hevy if you connect it | To schedule training around your shifts |
| Hevy API key and your recent Hevy workouts (last 14 days) | You, only if you connect Hevy | To mark sessions done automatically. Workouts stay on your phone; the key is kept in your profile |
| Food preferences: targets, eating style, foods you love and hate, canteen, equipment, cupboard, supermarket, free-text preferences | You, in Settings | Meal plans and shopping lists |
| Meal-plan records: the request Optrive sent, the plan that came back, and the corrections it applied — the last 50 | The app, each time you generate a plan | To diagnose bad plans and improve the planner |
| Departure checks: the departure time and route Optrive checked traffic for, and the result | The app, from your plan | The traffic warning before you leave |
| A notification token, and whether you opted in | Your phone, only if you turn notifications on | To send the traffic warning |
| An action log: what you changed in the app and when (the last 500 actions) | The app | To undo mistakes and understand what happened when something goes wrong |
| Error reports: what failed, where in the code, your app version and iOS version | The app, when something fails | To fix bugs. They contain no health values |
Optrive does not read your location, your contacts or your photos, and does not use any analytics, advertising or crash-reporting service. There is no tracking of which screens you open.
If you signed up on optrive.app, your name, email and the time you consented are kept in a separate list so we can invite you to the beta. That list is not connected to your app account and is removed on request.
Health data
Sleep, heart rate variability and resting heart rate from Apple Health are health data. Optrive asks for exactly those three types, read-only; it never writes to Apple Health. You choose in the Health app whether to allow each one, and you can change or revoke that at any time in Settings → Health → Data Access & Devices → Optrive. Without them, the app still works from your calendar; the sleep and recovery parts stay blank.
Health data is used only to calculate your sleep debt and recovery. It is never used for advertising or profiling, never sold, never shared with your employer, and never sent to any of the services listed below. Optrive does not upload health data to iCloud.
Services Optrive uses, and what each one receives
| Service | What it receives | Why |
|---|---|---|
| Supabase (database and sign-in), hosted in Frankfurt, EU | Everything in the table above except the on-phone items | Storage and sync. Supabase processes data on our behalf under its data processing agreement; data is encrypted in transit and at rest |
| Anthropic (Claude API) | When you generate a meal plan: your food preferences as you typed them, your meal targets, your shifts in the plan window (dates, times, shift codes, confirmed flexible starts), your supermarket, dishes you have marked loved or hated, and your free-text plan preferences. Nothing else: no name, email, account id, health or sleep data | The meal planner. Anthropic does not use API data to train its models |
| TomTom (traffic) | The coordinates of your home and work locations and your planned departure time, shortly before you leave | The traffic warning |
| Apple (push notifications) | Your notification token and the text of the warning, which includes your departure time | Delivering the notification |
| Hevy | Your own Hevy API key, to read your workouts. Only if you connect it | Automatic gym-session tracking |
The app also loads one software library from a public content network (jsDelivr) when it starts, and this web page loads its typeface from Google Fonts. Neither receives any of your data beyond the ordinary request to fetch the file.
Who can see your data
You, and the developer when needed to fix a problem you report. Nobody else. Optrive never shares individual data with employers.
If Optrive is ever used in a workplace pilot, only aggregated, anonymised figures — such as average sleep debt across all participants — would be shared with the employer, and you would be told before any such figure is produced. No pilot of that kind is running.
Legal basis
Optrive processes your data with your consent, given at sign-up and, for health data, again in the Health app. You can withdraw consent at any time. Keeping your account and syncing it between your devices is necessary to provide the service you asked for.
How long we keep it
As long as you have an account. Meal-plan records are capped at the 50 most recent; the action log at the last 500 actions. When you delete your account, everything in the database is removed immediately; backups held by the database provider expire on their normal schedule and deleted accounts are never restored from them. Data on your phone is removed when you delete the app.
Your rights
You can see, correct, export or delete your data, and withdraw consent, at any time:
- In the app: Settings → Delete account removes your account and everything stored with it.
- Health access: Settings → Health → Data Access & Devices → Optrive on your phone.
- Everything else, including the optrive.app signup list: email security@optrive.app. We reply within one month.
You can also complain to the Dutch data protection authority, the Autoriteit Persoonsgegevens.
Children
Optrive is for working adults and is not intended for anyone under 18.
Changes
If this policy changes in a way that matters, the app will tell you before the change applies. The date at the top is the version you are reading.
Contact
Jeanette Arthur
security@optrive.app