Effective 31 July 2026 · Last updated 31 July 2026
This policy explains what the Worth It iOS app (“the app”, “Worth It”) does with data. It applies to the app itself, its home-screen widgets, and its Siri and Shortcuts actions.
The data controller is Maksims Pelna, an individual developer. For any question or request about this policy, write to maksims.pelna@gmail.com.
Worth It is a local-first app. The following is written to the app’s private storage area on your iPhone or iPad and is not transmitted to us at any point:
This storage is shared with the Worth It widgets and Shortcuts actions, because they are part of the same app. No other app can read it.
You can review and change all of it at any time inside the app, and wipe it completely with Settings → Erase all data. Deleting the app removes it as well.
Worth It includes an optional backup that only runs when you tap it. When you choose Back up now, a copy of your tracked things is written to your personal iCloud key-value storage, under your own Apple Account. Restore backup reads that copy back.
This is Apple’s infrastructure, not ours. The backup is not sent to any server we control and we cannot read it. Apple’s handling of it is covered by the Apple Privacy Policy.
To remove a backup, go to iOS Settings → your name → iCloud → Manage Account Storage, or delete the app’s iCloud data from that screen.
Worth It offers a paid upgrade. Payment is handled entirely by Apple through the App Store using StoreKit. We never see and never receive your card number, billing address, Apple Account email, or any other payment detail.
The app only asks Apple whether a valid purchase exists for this device, and stores the yes-or-no answer locally so it knows whether to unlock the paid features. Restore purchases simply asks Apple to re-check that answer.
Apple provides us with aggregated, anonymous sales and download reports in App Store Connect. These do not identify individual customers to us.
To understand which parts of the app people actually use, Worth It sends anonymous product analytics to PostHog. We use PostHog’s EU Cloud, so this data is stored on servers in the European Union.
Analytics never include your hourly rate, the names or prices of the things you track, the amounts you type into the converter, or the contents of any text field. The analytics SDK’s automatic text-capture and automatic screen-tracking features are deliberately switched off in Worth It, precisely so that this information cannot leak into a report.
The random installation identifier is not your Apple Account, not your device’s advertising identifier (IDFA), and not linked to your name or email — we hold none of those. It lets us tell one anonymous session apart from another and nothing more.
Events triggered from a widget, from Siri or from a Shortcut are queued on your device and sent the next time you open the app, with their original timestamp.
Where the GDPR applies, we rely on our legitimate interest (Article 6(1)(f)) in understanding how the app is used so that we can improve it. We have weighed this against your privacy by keeping the data anonymous, coarse and free of anything financial. Analytics events are deleted after 30 days — long enough to see whether a change to the app helped, and not a day longer.
Uninstalling the app stops all analytics collection immediately. Because the data is anonymous, we generally cannot connect it back to a specific person — but if you would like your events removed and can tell us roughly when you used the app, write to maksims.pelna@gmail.com and we will do what we can.
| Service | Why | What it receives | Policy |
|---|---|---|---|
| Apple — App Store & StoreKit | App distribution and payments | Your purchase, handled by Apple. We receive only aggregated sales reports. | apple.com |
| Apple — iCloud | Optional backup you trigger yourself | A copy of your tracked things, stored in your own iCloud account. | apple.com |
| PostHog (EU Cloud) | Anonymous usage analytics and crash reports | The events and technical information listed in section 4. | posthog.com |
There are no other third-party SDKs in the app.
Your data lives inside the app’s sandbox, protected by iOS file protection and, for the installation marker, by the Keychain with a device-only accessibility setting — it is never copied to another device or into an unencrypted backup. Analytics and crash reports travel over encrypted HTTPS connections.
No system is perfectly secure, but because the app holds no account and uploads nothing personal, there is very little about you for anyone to obtain from us.
Worth It is not directed at children and we do not knowingly collect personal data from children under 13 (or under the minimum age in your country, where that is higher). If you believe a child has provided us with personal data, contact us and we will delete it.
If you are in the European Economic Area, the United Kingdom or Switzerland, the GDPR (or its UK equivalent) gives you the right to access, correct, erase, restrict or object to the processing of your personal data, and the right to data portability.
In practice, most of these you can exercise yourself and instantly, because your data never leaves your device:
You also have the right to lodge a complaint with the data protection supervisory authority in your country of residence.
We do not sell personal information and do not share it for cross-context behavioural advertising, as those terms are defined by the CCPA/CPRA. We do not use your data to build a profile about you for advertising, and we do not discriminate against anyone who exercises their privacy rights.
If this policy changes, the updated version will be published on this page with a new “last updated” date. If a change materially affects how your data is handled, we will make it clear in the app or in the App Store release notes.
Questions, requests or concerns about privacy in Worth It:
Maksims Pelna
maksims.pelna@gmail.com
We aim to answer every privacy request within 30 days.