Privacy Policy
Last updated: 2026-05-11
PhenoTrack is a grow journal designed for a single grower. We minimise the data we collect and never sell it. This page describes what we store, why, and what control you have.
What we collect
- Account email (and Google profile name + photo if you sign in with Google).
- Grow data you enter: growspaces, plants, logs, tasks, environment readings.
- Photos you capture in-app — EXIF metadata (GPS coordinates, device serials, software versions) is stripped before any photo is stored.
- Anonymous crash reports — only if you have explicitly opted in via Settings → Privacy & consent. Off by default.
- Anonymous usage analytics — only if you have explicitly opted in via Settings → Privacy & consent. Off by default.
Where it lives
Your data is stored on your device first, in an encrypted local database, and synchronised to our cloud servers in the EU only when you are signed in.
- An encrypted cloud database for your account, structured grow data, and photos.
Who we share it with
We do not sell or rent your data. The only third parties that can see it are the cloud providers we use to host and deliver the app. Optional features that send data to others (such as your own Claude or OpenAI API key) are described inline in the relevant Settings screen and are off until you configure them.
Your rights
- Access: Settings → Export data produces a JSON snapshot of everything we hold for you.
- Erasure: Settings → Delete account permanently removes your data from our servers and your local device. The deletion is hard, not soft — there is no recovery window.
- Withdraw consent: Settings → Privacy & consent toggles crash reports and analytics on or off any time.
AI features
When you use the AI diagnosis feature, the photo and a short summary of the plant's stage and recent environment readings are sent to our cloud AI provider for analysis. The result is stored in your account along with the photo. We do not use this data to train models. You can avoid sending data to AI by simply not using the feature — every other part of the app works without it.
PhenoTrack also generates a home-screen insight by sending a summary of your growspace's plants, environment readings, and recent activity to our cloud AI provider. The result is shown only on your device — we don't store it on our servers. As with diagnosis, you can avoid sending data by not using the feature.
IoT sensor integrations
When you enable an IoT sensor integration (currently AC Infinity), your account email and password for that service are stored in your device's secure keystore (Keychain on iOS, Keystore on Android) and used to sign in and read live temperature, humidity, and VPD from your controllers. Telemetry is stored in your PhenoTrack account along with your other environment data. Removing the binding deletes your stored credentials. We do not see or relay your sensor-service credentials.
Contact
Privacy questions: privacy@phenotrack.com. Security disclosures: security@phenotrack.com.