🕊️ BlueSparrow Labs
  • Home
  • About
  • Apps
  • Blog
  • Contact
Back to Blue Sparrow
DigiWell

DigiWell Privacy Policy

How DigiWell protects local wellness records while using limited account, recovery and notification services.

Updated 2026-08-24 [email protected]
PrivacyTermsDelete account
Wellness records Encrypted on your device and excluded from DigiWell's operational API
Connected service Limited account, device, delivery and access information
Drive recovery Optional, client-side encrypted and protected by your passphrase
Privacy requests [email protected]
On this page
  1. Overview
  2. Data we handle
  3. How we use data
  4. Sharing and processors
  5. Storage and residency
  6. Cloud and backups
  7. Retention
  8. Security
  9. Your rights
  10. Children
  11. International transfers
  12. Changes
  13. Contact

This policy explains the boundary between encrypted wellness records on your device, optional Drive recovery and the limited operational information used by connected features.

Overview

Blue Sparrow is a solo developer based in India and operates DigiWell, a general-wellness app for desk routines, reminders, hydration check-ins, Focus sessions and locally calculated progress. This policy explains what information DigiWell handles, why it is needed, where it goes and the choices available to you. DigiWell is designed around data minimisation, purpose limitation, transparency, security and rights supported by the EU General Data Protection Regulation and other applicable privacy requirements.

DigiWell is local-first for wellness content, but it is not an entirely offline app. A Google sign-in establishes the account boundary used to keep local encrypted profiles separate. Connected builds also use a limited Blue Sparrow operational service for account, device, push and access state. Optional Google Drive recovery, store updates, support and any enabled purchase features use the providers described below.

The central boundary

DigiWell's operational API rejects wellness-field names. It is designed not to receive routines, schedules, check-ins, hydration quantities, Focus intentions, notes, progress or recovery passphrases.

Data we handle

DigiWell may handle these categories:

  • Wellness records stored locally, including routine titles and descriptions, routine types, schedules, recurrence, quiet hours, reminder occurrences and actions, check-ins, optional notes, hydration quantities, Focus intentions and history, progress inputs, preferences and accessibility choices.
  • Google and Firebase account information, including Firebase user identifier, email address, display name, profile image, verification state, authentication tokens and account timestamps.
  • Local account-separation information, including a hashed Firebase identifier, local account identifier and encrypted-database key material held through Android security storage.
  • Operational service information, including Firebase identifier, encrypted verified email and its hash, account status, locale, operational revision and creation, update or deletion timestamps.
  • Device and push information, including a randomly created device identifier, platform, app version, operating-system major version, locale, push permission state, encrypted Firebase Cloud Messaging token, token fingerprint, last-seen time, registration revision and bounded error status.
  • Delivery and security information, including closed-list notification template, channel, delivery state, attempts, provider reference stored in protected form, expiry or cancellation state, hashed idempotency values and service security logs.
  • Optional access information, such as product, entitlement, expiry, store, purchase-event and VIP access state. Google Play and, when enabled, RevenueCat handle purchase and subscription information. Blue Sparrow does not receive full payment-card or bank details.
  • Information included in encrypted Drive checkpoints and readable exports that you deliberately create.
  • Support or feedback information you choose to send through your email application, such as your email address, name, subject, message and any details you add.
  • Ordinary website request and security information that the hosting provider may process, such as IP address, user agent, requested path, timestamp and security status.

DigiWell does not request location, contacts, SMS, call history, camera, photo-library or microphone permission for its current features. It requests notifications and Android scheduling or restart permissions so local reminders can operate. Android system backup is disabled for the app.

Wellness records can reveal sensitive habits or health-related context. Do not include information you do not want stored, backed up or exported. DigiWell has no advertising SDK and does not sell personal information or use it for targeted advertising.

How we use data

Information is used only as reasonably necessary to:

  • Authenticate you and maintain a separate local encrypted profile for the signed-in account.
  • Provide routines, local reminders, check-ins, hydration tracking, Focus sessions, preferences and progress calculated on the device.
  • Register and revoke a device for closed-list operational push messages when connected messaging is enabled.
  • Maintain limited account, device, capability and access state through the operational service without uploading wellness content.
  • Create, verify, retain and restore an encrypted Google Drive checkpoint when you request it.
  • Create a readable JSON export at a destination you select.
  • Process or restore an optional purchase when paid access is offered in the installed build.
  • Open your email application with a support or feedback draft that you decide whether to send.
  • Protect, troubleshoot and maintain DigiWell and meet applicable privacy, consumer, accounting and security requirements.

Core progress and streak calculations happen locally. They support personal reflection and are not used to make decisions with legal or similarly significant effects about you.

The current dependency set does not include Firebase Analytics or Firebase Crashlytics. DigiWell does not intentionally send usage events or crash reports to those products. This would change only after an updated disclosure and any choice required for the new processing.

Sharing and processors

Blue Sparrow does not share personal information for independent advertising. Limited information may be processed by:

  • Google and Firebase for Google Sign-In, Firebase Authentication, Firebase Cloud Messaging, Google Drive app-data storage and Google Play distribution, updates or billing.
  • Blue Sparrow's DigiWell operational API, worker, PostgreSQL service and infrastructure providers for the limited account, device, push, delivery, capability, deletion and access information described in this policy.
  • RevenueCat, only when its purchase service is enabled, for product configuration, customer identification, purchase and entitlement status. The current bundled configuration keeps RevenueCat purchasing disabled, but a release build can enable it only with configured public credentials and a deliverable paid feature.
  • Email providers involved when you send a support or feedback message, or when an enabled operational email feature sends a closed-list account notice.
  • The operating system, storage provider or application you select when you save or handle a readable export.

These third-party providers handle their limited information under their own terms, privacy notices and infrastructure arrangements. Information may also be disclosed where required by applicable rules or where reasonably necessary to address fraud, abuse or a serious security threat, with the disclosure limited to what is needed.

Storage and residency

Readable wellness content is stored in an account-scoped SQLCipher database on your device. Local database keys and recovery profile material use Android security storage. Signing out closes the current local profile but does not itself erase it. Clearing app storage, uninstalling or completing the selected local deletion scope can remove local access, subject to copies you created elsewhere.

Blue Sparrow-controlled operational account, device, delivery and access information is intended to remain in European Union infrastructure, subject to verification of the production datacentre, database-backup location and operating procedures. This qualified intention is not a promise about provider-controlled data.

Third-party Google, Firebase, Google Drive, Google Play, RevenueCat, email and website-hosting providers may process their limited information in other countries according to their own disclosed locations and transfer safeguards. A Drive checkpoint lives in your Google account, and Google controls its physical storage location.

Cloud and backups

Google Drive recovery is optional and requires the separate Drive app-data permission. DigiWell takes an allowlisted snapshot of routines, schedules, reminder occurrences, check-ins, hydration entries, Focus sessions, preferences, scheduler state and limited onboarding state. It does not add authentication tokens, Drive credentials, push tokens, operational service state or purchase credentials to the checkpoint.

For the first portable checkpoint, DigiWell creates a random backup master key and requires you to create a recovery passphrase. A separate random key protects each checkpoint object with authenticated encryption. Argon2id is used to protect the portable master-key wrapper with your passphrase. A device-only wrapper supports later backups on the same device. Google or Firebase identity confirms the account boundary; it is not used as encryption key material. Blue Sparrow's backend does not receive checkpoint bytes, Drive file identifiers, Drive access tokens, your recovery passphrase or decryption keys.

Encrypted payload and manifest objects are stored in DigiWell's hidden app-data area in your Drive. A small recovery index containing checkpoint identifiers and times is not wellness content and is not encrypted by the checkpoint scheme. DigiWell normally keeps the newest three checkpoints, one checkpoint for up to eight recent weekly buckets and one for up to twelve monthly buckets. Cleanup and provider deletion are best-effort, so older provider copies or backups may remain for a period outside DigiWell's direct control.

Restore requires access to the matching Google account and the recovery passphrase. DigiWell cannot reveal a forgotten passphrase. Restore verifies the checkpoint and replaces confirmed local wellness state; it does not merge simultaneous changes between devices. Disconnecting Drive or signing out does not delete checkpoints already stored there.

A readable export is JSON written to a location you select. It is not encrypted by DigiWell after handoff. The chosen storage provider or receiving application controls that copy, and deleting DigiWell cannot retrieve a copy you shared elsewhere.

Retention

Local wellness records remain until you remove relevant records, clear app storage, uninstall or complete account deletion with local data selected. Soft-deleted records and reminder history can remain in the local database and checkpoint until replaced by later data or the selected data scope is removed. User-created exports have the lifecycle of their chosen destination.

Active operational account, device, access, delivery and security records remain while needed to provide and protect connected features. The checked-in service does not establish a verified production purge schedule for every table, log or database backup, so this policy does not promise a fixed period.

The in-app account-deletion flow first asks for fresh Google confirmation. If selected and available, it marks the Blue Sparrow operational account deleted, clears its verified email and push token, removes current service entitlement detail, disables devices and cancels pending delivery. It retains limited account and deletion state, including the Firebase identifier and a deletion tombstone, to prevent unintended recreation or subscription reactivation. Some delivery, security, provider, accounting and backup records may remain where needed or controlled by a provider.

The flow can also attempt to delete accessible Drive checkpoint files when you select that scope, cancel local reminders, remove the encrypted local database and keys, and delete the Firebase Authentication account. Required steps stop on failure so you can retry without silently claiming an incomplete deletion. Google Play subscriptions are not cancelled, RevenueCat or Google Play records are not directly erased by this flow, and provider backups may take additional time. Manage any store subscription separately and contact [email protected] if the in-app flow is unavailable or you need help with remaining service information.

Security

DigiWell uses proportionate safeguards including SQLCipher local storage, account-scoped keys in Android security storage, disabled Android backup, authenticated Google and Firebase identity, HTTPS, client-side Drive encryption, Argon2id passphrase protection, protected operational emails and push tokens, field and logging allowlists, closed-list notification templates, rate limits and resumable deletion or restore journals.

No device, transmission or storage method can be guaranteed completely secure. DigiWell cannot protect information on a compromised or unlocked device, a weakly protected Google account, or inside an export or message after you deliberately send it elsewhere. Keep the app updated, protect your device and Google account, and store your recovery passphrase separately and safely.

Your rights

Depending on where you live and subject to applicable exceptions, you may have rights to know or access personal information, correct it, obtain a portable copy, delete it, restrict or object to processing, and withdraw consent where consent is the basis. You may also contact your local data-protection authority. These protections include, where applicable, the EU GDPR and EEA rules, UK GDPR, India's Digital Personal Data Protection framework, California and other US state privacy laws, Brazil's LGPD, Canada's privacy laws, Australia's Privacy Act, Japan's APPI, South Korea's PIPA and comparable laws elsewhere.

Inside DigiWell you can edit or delete supported local records, control reminders, disconnect Drive, create an export and start the multi-scope deletion flow. Provider-held copies and purchases may need to be managed through Google Drive, Google Play or the relevant provider account.

To make a privacy request, email [email protected] with DigiWell in the subject and enough detail to identify the relevant account or request. Blue Sparrow may ask for proportionate verification and will respond within the period required where you live. Ordinary requests are handled without charge, subject to allowances for clearly excessive or repeated requests under applicable requirements.

Children

DigiWell is intended for a general audience able to make their own account, privacy and wellness choices. It is not directed to children who cannot validly provide those choices under the rules where they live. A parent or guardian should supervise use where required and should not enable an account, backup or purchase without an appropriate basis and any required permission.

Contact [email protected] if you believe a child's information has been provided inappropriately. DigiWell is a general-wellness tool and should not be used to monitor a child for medical, school, employment, emergency or safety-critical purposes.

International transfers

Blue Sparrow is based in India, while Blue Sparrow-controlled operational information is intended for European Union infrastructure subject to the production evidence described above. Support handling and business administration may involve access from India. Google, Firebase, Drive, Play, RevenueCat, email and hosting providers may process limited information in other regions.

Where transfer rules apply, Blue Sparrow relies on measures appropriate to the provider and processing, such as recognised contractual protections, adequacy arrangements, provider transfer frameworks, encryption, access controls and data minimisation. Mandatory local privacy protections remain available.

Changes

This policy may change when DigiWell, its providers or applicable requirements change. The updated date will be revised, and reasonable notice will be provided for material changes where appropriate. A newly introduced collection or connected feature will be described before it is treated as part of the existing data boundary.

Contact

For privacy questions, data-rights requests or deletion assistance, email [email protected]. For general product questions, email [email protected]. Current product and policy information is available at https://bluesparrow.dev.

Questions about this document? Email [email protected].

Blue Sparrow website
Facebook Email Terms Privacy
© 2026 BlueSparrow Labs. All rights reserved.