Updated 29 September 2026
LightPulse Privacy Policy
How LightPulse stores, encrypts, and processes your heart-rate data.
LightPulse was called HeartSnap until 29 September 2026. Only the name changed.
What LightPulse uses
- Camera and flash to capture the signal needed for a heart-rate measurement. The camera feed is processed entirely on your device and is never recorded, transmitted, or stored.
- Apple Health (optional, write-only) when you save a measurement, so it appears alongside your other health data.
- Your mail app when you tap Send feedback or Request a feature. The contents of that email are subject to your email provider's policies, not LightPulse's.
- Apple's payment system if you subscribe to LightPulse Plus. Payment is handled entirely by Apple — LightPulse never sees your card or billing details.
Storage and access
All LightPulse-owned data — your heart-rate measurements, the optional context tag and how you felt, and the details you choose to add about yourself (date of birth, biological sex) — is stored in your iCloud account's private database. LightPulse does not have access to this data.
A copy of each heart-rate measurement is also written to Apple Health on your device so that it appears alongside your other health data. LightPulse never reads from Apple Health; the write is one-way.
Encryption
Your data is encrypted in transit and at rest. The context tag and feeling attached to each measurement, and everything in your profile (date of birth, biological sex), are end-to-end encrypted using CloudKit's encrypted-values feature, which means they remain encrypted under your iCloud key even when Advanced Data Protection is off. Other fields (heart-rate value, timestamp, internal record IDs) are encrypted at rest under Apple-held keys; full end-to-end encryption for those requires Advanced Data Protection in your iCloud settings.
What leaves your device
Your stored measurements — the history you see in the app — stay in your own iCloud account. Separately, three streams of technical data go to service providers so the app can be kept working. None of them is linked to an account, a name, or an advertising identifier, and LightPulse does no cross-app tracking.
- Usage analytics (Google Firebase Analytics). Which features you open, whether a measurement started, finished, or failed, and which subscription steps you reached. No heart-rate value and no context tag is ever included — these events record that something happened, never what it measured. Each measurement carries a randomly generated session identifier, used only to match a failed measurement to its diagnostics. LightPulse never sets a user ID, so nothing is tied to you as a person.
- Crash reports (Google Firebase Crashlytics). If something goes wrong, a stack trace, the error message, recent in-app breadcrumbs, and device and OS details are sent so the fault can be fixed.
- Failed-measurement diagnostics (Google Cloud Firestore). When a measurement fails to produce a result, LightPulse uploads why it failed, how long it ran, your device model and iOS version, and a log of the measurement attempt — how many pulses were detected, how many were rejected and why, and how long each stage took. No heart-rate value appears in it. This is what makes it possible to fix measurement problems on hardware we do not own.
If you subscribe, purchase and renewal status is processed by RevenueCat against an anonymous identifier so the app knows whether LightPulse Plus is active. Apple handles the payment itself.
Lawful basis (EU/UK)
LightPulse processes special-category data (heart-rate measurements, optional date of birth and biological sex) under GDPR Art. 9(2)(a) — explicit consent. By tapping Save, you consent to processing the measurement on your device and storing it in your iCloud account.
The analytics, crash reports, and failed-measurement diagnostics described above are processed under GDPR Art. 6(1)(f) — legitimate interests, namely keeping the app working and fixing measurement failures. Some of that data is derived from a heart-rate measurement. If you would rather it were not collected, write to contact@robispan.eu and it will be stopped for your device.
Uninstall behaviour
When you delete LightPulse, iOS may ask whether you also want to delete your Health data. If you tap Delete, the heart-rate samples LightPulse wrote to Apple Health are removed. Your LightPulse-owned measurements stored in your iCloud private database are unaffected and will return on reinstall.
You can also delete all LightPulse-owned data from inside the app via Settings → Delete all my data. That action wipes the iCloud copy on every device signed into your Apple ID, and cannot be undone.
Contact
Questions about this policy: contact@robispan.eu.