Privacy Policy
Last updated: July 2026
Data Controller
Chan Flow is provided by Arcmill AB, Sweden (the data controller under GDPR). For privacy questions, or to exercise any of the rights described below, contact us at support@chanflow.app.
Information We Collect
Chan Flow collects the following information:
- Session Data: Your session history, including duration, timestamps, and XP earned.
- Progress Data: Your level, rank, achievements, weekly streaks, and monthly chapter statistics.
- Community Data: Dharma Buddy relationships, Sangha Circle memberships, bell ringer assignments, and community intention contributions.
- Health Data: With your permission, meditation and breathing session data is shared with Apple Health via HealthKit.
- Preferences: Your app settings, notification preferences, and retreat mode configuration.
How We Use Your Information
We use your information to:
- Track your session progress and achievements
- Enable collaborative features: Dharma Buddies can see when you are meditating, and Sangha Circles share weekly streak progress
- Compute community statistics such as community intention progress
- Send notifications including session reminders, buddy activity alerts, circle updates, and chapter milestones
- Sync your data across your devices via iCloud
Lawful Basis for Processing
For users in the EEA, UK, and Switzerland, we rely on these legal bases under GDPR:
- Contract: account creation, session tracking, subscriptions, and other core features necessary to provide the service you signed up for.
- Consent: optional processing you can grant or withdraw at any time, including HealthKit read/write access, push notifications, iCloud sync, and sharing your live meditating status with Dharma Buddies and Sangha Circles.
- Legitimate interest: abuse and fraud prevention, and error monitoring (via Sentry) to keep the app reliable, balanced against your right to privacy.
Data Storage and Processing
Your data is stored and processed in the following ways:
- Local Storage: Session and progress data is stored on your device via SwiftData.
- iCloud Sync: If enabled, data is synced across your devices via Apple CloudKit.
- API Backend: Community features are powered by an API backend at api.chanflow.app, hosted on Cloudflare Workers with a Cloudflare D1 database.
- Server-Stored Data: The API backend stores your anonymized user ID (derived from Apple Sign-In), session reports, Dharma Buddy relationships, Sangha Circle memberships, bell ringer assignments, and community intention contributions.
- Edge Processing: Data is processed on Cloudflare's global edge network.
Third-Party Services and Processors
We share data with the following processors so they can provide services on our behalf:
- Apple (Sign in with Apple, StoreKit, APNs, CloudKit, HealthKit): authentication, in-app purchases, push notifications, device sync, and on-device health data storage.
- Cloudflare (Workers, D1, R2): hosts our API backend, database, backups, and media CDN; processes the server-stored data described above.
- Sentry (error monitoring): receives error diagnostics -- including your user ID -- when the app or backend encounters an error, so we can find and fix bugs. Sentry does not receive session content, health data, or community text.
- ElevenLabs (voice synthesis, content production only): our admin team uses ElevenLabs to generate the guided-session audio you hear in the app. Audio is produced when our team authors session scripts, before any session is published -- your personal data is never sent to ElevenLabs.
Data Retention
- Account data: kept while your account is active. If you delete your account, it is deactivated immediately and all personal data is irreversibly anonymized within 30 days.
- Backups: daily database backups age out after 7 days, weekly database backups after 30 days, monthly database backups after 365 days, and weekly media backups after 90 days. Deleted-account data may persist in a backup until that backup ages out.
International Data Transfers
Some of our processors operate outside your country. Cloudflare runs a global edge network, and Sentry processes error data in the United States. If you are in the EEA, UK, or Switzerland, this means your data may be transferred to and processed in the United States and other countries with different data-protection laws than your own. We only use processors that maintain appropriate safeguards for these transfers.
Data Sharing Between Users
- Dharma Buddies can see the following about each other once a buddy invite is accepted: display name, rank, level, total XP, achievements unlocked count, sessions completed in the past 7 days, and current meditating status. Achievement names and individual session details are not shared.
- Sangha Circle members can see each other's display name, rank, level, total XP, sessions and minutes practiced in the current week, and current meditating status.
- Community intention contributions are aggregated anonymously -- individual contributions are not attributed.
- No data is shared with third parties for advertising or marketing purposes.
Your Rights
You have the right to:
- Export your data at any time from Settings, which returns everything described in this policy (backed by the GET /account/data endpoint).
- Delete your data from Settings: your account is deactivated immediately and all personal data is irreversibly anonymized within 30 days; backups age out on the fixed schedule described above.
- Revoke HealthKit permissions in System Settings at any time.
- Leave Sangha Circles and remove Dharma Buddy connections at any time.
- Contact us at support@chanflow.app for rectification, restriction of processing, or any other data-protection request.
Contact
For questions about this privacy policy, contact us at support@chanflow.app