Arctic Studios

Health Record Audit

Privacy

Health Record Audit inspects Apple Health data on your devices. Arctic Studios LLC does not collect personal data from the app.

Apple Health access

The iPhone app asks for read access only to the Health categories you choose. It uses the records visible under those permissions to look for separate stored objects whose supported type, start time, end time, duration status, and value match.

Apple protects Health privacy by preventing apps from learning whether read access was denied, and you may grant only limited-history access. Results therefore apply only to accessible data.

The app does not request permission to write Health data. It cannot delete records created by iPhone, Apple Watch, or another app. Cleanup instructions direct you to Apple Health, where you remain in control of deletion.

Version 1 may request read access to these 23 types when you select their group:

  • Activity: Steps, Walking + Running Distance, Cycling Distance, Flights Climbed, Active Energy, Basal Energy, Exercise Time, and Stand Time.
  • Heart: Heart Rate, Resting Heart Rate, Walking Heart Rate Average, and Heart Rate Variability.
  • Body: Height, Body Mass, Body Mass Index, Body Fat Percentage, and Lean Body Mass.
  • Vitals: Oxygen Saturation, Respiratory Rate, and Body Temperature.
  • Sleep & Mindfulness: Sleep Analysis, Mindful Sessions, and Stand Hour.

Workouts, routes, correlations, clinical records, ECGs, medications, and specialized series are excluded.

Processing and storage

Analysis happens on the iPhone. During a scan, bounded pages are processed in memory and the fields needed for matching—including record identifiers, dates, values, sources, device context, and limited metadata—are indexed in a temporary SQLite file inside the app’s Caches directory.

The temporary file has complete file protection, is excluded from backups, and is normally deleted as soon as the scan finishes or is cancelled. If the app is terminated before cleanup, it validates those scratch directories and attempts to remove any older than 24 hours when a later scan starts. Uninstalling the app also removes them.

The latest size-limited report may be saved in the app’s local Application Support directory with complete file protection so you can return to it. It is marked to stay out of device backups. If the app stops during report preparation, later app activity attempts to remove the old protected staging file. You can delete the report and paired-Watch summary from inside the app.

To keep Watch updates ordered across iPhone restarts, the iPhone separately stores the exact current Watch aggregate envelope in its Application Support directory with complete file protection and excludes it from backups. That envelope contains only the limited aggregate described below plus an app-generated random stream identifier and revision. A later report, clear, or unavailable envelope replaces it only after the new checkpoint has been saved and verified. If that persistence fails, the prior checkpoint remains authoritative while the desired state remains in memory for bounded automatic retry. The app gives that pending state a fresh retry opportunity when protected data becomes available again. If you explicitly delete the iPhone report but the paired-Watch clear cannot immediately cross this durability barrier, the app tells you that Watch removal is pending and will retry. The checkpoint is removed when the app is uninstalled.

The Watch companion does not request Health access or receive individual Health records. Health-derived content sent to it is limited to the latest audit time, candidate-group count, coverage flag, and demo flag. Watch Connectivity also carries an app-generated random stream identifier and revision solely for local ordering; neither is a Health record identifier.

The Watch stores the aggregate summary and app transport metadata in its Application Support directory with complete file protection and excludes them from device backups. If an interrupted write leaves an app-owned staging file, later Watch app activity attempts to remove it. The current Health-derived aggregate may remain on your devices between launches. It is replaced or removed when the Watch accepts a later summary, clear, or unavailable state, when protected storage can no longer safely keep the replica, or when the Watch app is removed.

Current setup selections remain in memory while the app runs and are not stored as Health records. The app has no CloudKit or iCloud data container.

Collection, tracking, and third parties

Health Record Audit:

  • has no user account or developer-operated cloud service;
  • contains no advertising, analytics, or third-party SDK;
  • does not track you across apps or websites;
  • does not sell or share Health data with Arctic Studios; and
  • does not include a developer-operated crash-reporting or diagnostics upload.

Apple may process information through iOS, watchOS, HealthKit, Watch Connectivity, App Store, and optional system diagnostics under Apple’s own terms and privacy policy.

Website visits

When you visit the public marketing, privacy, or support pages, the hosting and security providers necessarily process limited request information such as your IP address, browser or user-agent details, requested path, time, and security or diagnostic logs to deliver and protect the site.

Arctic Studios does not add analytics, advertising, profiling, or its own cookies to those pages. Hosting records are retained only for provider and operational security needs.

Your choices

You can change Health permissions in Apple Health or system Settings. You can clear the local report and paired-Watch summary from the app. Removing the iPhone app deletes its local app- container data; removing the Watch app deletes the Watch replica. Records already stored in Apple Health remain controlled by Apple Health and the apps that created them.

Medical disclaimer

Health Record Audit is a data-review utility, not a medical device. It does not diagnose, treat, monitor, or prevent any medical condition. Do not use it for emergency or clinical decisions.

Contact

Contact Arctic Studios through the support page. Do not include Health records, screenshots, medical details, or payment information in a support message.

If you contact support, your email provider and the providers used by Arctic Studios process the address, subject, message, and delivery information you submit. Arctic Studios uses the correspondence to reply and handle follow-up, not for marketing, and keeps it only as long as needed for the request and related legal obligations. You may email the same support address to request deletion of your support correspondence. Arctic Studios will delete it unless retention is still necessary for security, fraud prevention, or a legal or regulatory obligation.

Arctic Studios LLC
2261 Market Street, STE 96811
San Francisco, CA 94114
United States