Privacy Policy

Chronicat: Cat Health Tracker · Last updated: 8 October 2026

This Privacy Policy explains how Pixoro Apps ("we", "us", "our") collects, uses, and protects information when you use the Chronicat: Cat Health Tracker mobile application for Android and iOS (the "App"). By downloading or using the App, you agree to the practices described in this Policy. If you do not agree, please do not use the App.

1. Who We Are

The App is developed and operated by Pixoro Apps, located in Ukraine.

For any privacy-related questions or requests, contact us at: pixoro.apps@gmail.com.

2. Summary

3. Information We Collect

3.1 Account information

Your account is identified by a random account ID that our authentication system creates. This ID is what links your data across the services described below.

3.2 Information you provide

Cat profile data, cat photos and event/diary data are stored on our cloud backend provider, Supabase, so they are backed up and available across your devices — see Section 5 for details. Your AI chat history is stored on your device and is not stored on our servers, except for a reply you choose to report (Section 3.5). Like other app data, it can be included in your device's own backup (for example, Android's backup to your Google account or an iCloud backup). Signing out or deleting your account removes the chat history from the App; photos you attached in chats may stay in the App's private storage on the device until you uninstall the App.

Health reports (PDF) you create in the App are generated on your device; they are shared only if you choose to share them.

3.3 Subscription and purchase information

When you purchase a subscription or start a free trial, the transaction is handled by the app store you use: the Apple App Store or Google Play. We use RevenueCat to manage subscriptions. RevenueCat receives your account ID, the purchase and subscription details the store provides (for example, the product, purchase and expiry dates, and whether a trial is active), and basic technical information its SDK collects (such as IP address, device model, operating system version and store country), and uses them to tell the App whether Chronicat Plus is active. We do not collect or store your full payment card number or billing address — these are handled entirely by Apple or Google.

3.4 AI assistant (Ask AI, part of Chronicat Plus)

Replies in the AI assistant are generated by OpenAI, L.L.C. ("OpenAI"). The App sends each message to our own server (a Supabase Edge Function), which checks that you are signed in and have an active Chronicat Plus subscription, and then forwards the request to OpenAI's API. Our server passes the conversation through; it does not save it. If a request is refused or fails, the server logs your account ID — never the conversation — so we can investigate.

Your permission comes first. Before the assistant sends anything, the App shows a screen that names OpenAI and lists what will be shared, and asks for your permission. Nothing is sent until you tap «Allow». If you choose «Not now», the assistant stays paused and nothing is sent. Your choice is saved on your device for your account. You can withdraw your permission at any time in Settings → Legal → "Share data with OpenAI"; after that nothing more is sent to OpenAI for the assistant.

When you have allowed it, each message you send includes:

Your email address, your name, your account ID and your device's identifiers are not sent to OpenAI. If a reply records a diary entry for you (it is shown under the reply), that entry is saved to your cat's diary like any other entry, and you can edit or delete it.

How OpenAI handles this data: according to OpenAI's stated API data policy, data sent through its API is not used to train OpenAI's models by default, and API inputs and outputs are retained for up to 30 days for abuse monitoring, unless longer retention is required by law. See OpenAI's API data usage page and policies.

3.5 Reports on AI replies

You can report any AI reply from inside the App (for example, if it seems harmful, offensive or wrong). When you send a report, we receive and store, in our Supabase database:

The report is linked to your account. We use reports only to review the reply and improve the assistant's safety. Other users cannot see them. We keep a report for up to 12 months, and it is deleted with your account if you delete it sooner.

3.6 Cat name forms (Ukrainian)

When the App's language is Ukrainian, it shows your cat's name in the correct grammatical forms (for example «про Барсика»). To get these forms, the App sends only the cat's name and sex through our server to OpenAI. This is separate from the AI assistant and does not include any other data; the result is saved on your device. It is not used for other languages.

3.7 Analytics, crash reports and technical data

To understand how the App is used and to fix problems, we use Firebase Analytics and Firebase Crashlytics (Google) and Amplitude. They receive:

This data is not anonymous. When you sign in, the App sets your account ID as the user ID in Firebase Analytics, Amplitude and Crashlytics, so analytics and crash reports are linked to your account (your name and email are not sent to them). When usage analytics is on, the App also gives RevenueCat its Firebase app-instance ID, so subscription events can be matched with analytics. Signing out clears the user ID on the device.

Your choice: you can turn off usage analytics at any time with the "Usage analytics" switch in Settings → Legal. This stops Firebase Analytics and Amplitude from collecting data and removes the analytics link stored with RevenueCat. The switch is applied each time the App starts, so the first moments of a launch (such as an app-open event) may still be recorded before it takes effect. On iOS the switch also turns off crash reports; on Android, crash reports are still sent so that we can find and fix crashes.

We also use Firebase Remote Config (Google) to adjust a few settings without an app update, such as the minimum supported app version and when to ask for a rating. To deliver them, it receives technical data such as an app-instance identifier and app version.

4. How We Use Information

We use information to:

We do not sell your personal information, and we do not use your cat's health data for advertising.

5. Cloud Storage, Sync, and Sharing

Your cat profiles, cat photos and diary events are stored and synced using a third-party backend provider, Supabase (operated by Supabase, Inc.), so they are backed up and available whenever you sign in — including on a new or different device. This happens automatically as part of using the App; there is no local-only mode for this data. Cat photos are kept in private storage that is only reachable by the cat's members.

5.1 Sharing a cat with another user

You may choose to invite another person (for example, a family member or co-caregiver) to share a cat with you, by generating an invite code or link inside the App. If they accept:

If a person you share a cat with uses the AI assistant, that cat's profile and recent entries (including the ones you added) are sent to OpenAI as described in Section 3.4, under their permission.

5.2 What this means if you delete your account

If you created a cat that is shared with other users and you delete your account, that cat and its full event history are deleted for everyone it was shared with, not just for you. If you are a co-owner (not the creator) of a shared cat and you delete your account, the cat and events logged by other co-owners remain, but the events you personally logged are removed along with your account. See our account deletion page for details.

6. Who Receives Your Information

We share information only with the service providers below, and only for the purposes described:

Every third party that receives your data from us — including the analytics tools and SDKs listed above — is bound by its terms with us to provide the same or equal protection of your data as described in this Policy, and receives only the data needed for the purpose described.

We do not sell or rent your personal data to third parties.

7. Data Retention

8. Security

We take reasonable technical and organizational measures to protect your information. The App connects to our services over encrypted HTTPS connections. Your cat and event data is stored on Supabase's infrastructure and protected by access controls that restrict it to your account and anyone you explicitly share a cat with. AI reports can be added by the App but cannot be read back by any user — only we can read them. The OpenAI API key is kept on our server and is never shipped in the App. Your AI chat history is stored only on your device, so its security also depends on the security of your device (for example, device lock, encryption, and OS updates). No method of storage or transmission is completely secure, and we cannot guarantee absolute security.

9. Your Rights and Choices

Depending on your location, you may have rights regarding your personal data, including the right to:

Choices you can make directly in the App:

For other requests, contact us at pixoro.apps@gmail.com.

For EU/EEA/UK users (GDPR): our legal bases for processing are performance of a contract (providing the App and its features, including your account, cloud storage of your cat data, and subscriptions), your consent (for sharing data with OpenAI for the AI assistant, and for inviting others to share a cat), and our legitimate interests (maintaining and improving the App through analytics and crash reports, reviewing AI replies you report to keep the assistant safe, and showing your cat's name correctly in Ukrainian).

For California users (CCPA/CPRA): we do not sell or share personal information as defined by California law. You have the right to know, delete, and correct personal information, and to not be discriminated against for exercising these rights.

10. Children's Privacy

The App is not directed to children under 16, and we do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us and we will take appropriate steps to delete it.

11. International Data Transfers

Our service providers operate in several countries. Some of them — including OpenAI, RevenueCat, Amplitude and Google — are based in the United States, so information processed by them, by the app stores, or by our cloud backend (Supabase) may be transferred to and processed in countries other than your own. Where required, we rely on appropriate safeguards for such transfers.

12. Changes to This Policy

We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last updated" date and, where appropriate, notify you within the App. If we start sharing new kinds of data with OpenAI for the AI assistant, the App will ask for your permission again. Your continued use of the App after changes take effect constitutes acceptance of the updated Policy.

13. Contact Us

If you have questions about this Privacy Policy or your data, contact:

Pixoro Apps
Email: pixoro.apps@gmail.com