Privacy Policy
Last updated: 7 September 2026
Menifest ("Menifest", "we", "us") is a personal operating dashboard that brings money, work, health and business data onto one screen. This policy explains what we collect, why, who else touches it, and what you can do about it. It applies to the Menifest iOS app and the Menifest web app at app.menifest.eu; where something is true of only one of them, it says so.
The short version: everything here exists to render features you turned on. We do not sell your data, we do not use it for advertising, there is no tracking or advertising SDK in the iOS app, and you can delete all of it from inside the app.
1. What we collect
- Account information — your name, your email address, and the identifier your sign-in method gives us. Authentication is handled by our provider Clerk; we never receive or store your password. If you use Sign in with Apple with "Hide My Email", we only ever hold Apple's relay address.
- What you enter — your business records (clients, leads, revenue and subscriptions, expenses, contracts, net worth), your work records (tasks, habits, goals, roadmap, notes), your body records (weight and body-fat entries, workouts, meals, sleep), progress photos you upload, and any blood-test markers you choose to record.
- Apple Health data, if you turn on Health sync on iOS — see section 2, which covers it in full.
- Coach conversations — the messages you send the in-app AI coach, its replies, and the short facts it saves so it does not ask you the same thing twice. See section 3.
- Subscription status — whether you have an active subscription and which plan, received from Apple through RevenueCat. We never receive your card number, your Apple ID, or your billing address.
- A notification token — if you allow notifications, the push token your device issues, so reminders can reach it. Nothing else about your device.
- Google Calendar data — only in the web app, and only if you connect your Google account. See section 5.
- Technical data — ordinary server logs (IP address, timestamp, which request was made), kept briefly to keep the service secure and to diagnose faults.
No tracking. The iOS app contains no advertising SDK and no third-party analytics SDK. It does not collect the advertising identifier (IDFA), does not build a profile of you, and never asks to track you across other companies' apps or websites.
2. Apple Health (iOS only)
Health sync is off until you turn it on and grant permission in Apple's own Health permission sheet. You choose what to share there, and you can change it at any time. When it is on, Menifest reads the following from Apple Health:
- Sleep analysis
- Active energy burned and resting (basal) energy burned
- Step count
- Apple exercise time
- Resting heart rate and heart rate variability (SDNN)
- Body mass and body fat percentage
- Workouts
Menifest never writes to Apple Health. The app does not request write permission for any type, so nothing it does can alter or add to the data in your Health app.
What we do with it. These readings fill in your Health page and your weekly review so you do not have to log by hand, and they are available to the in-app coach when you ask it a question that needs them (see section 3). They are stored in our database in the European Union, scoped to your workspace by row-level security so that no other account can read them.
What we will never do with it. Health data obtained through Apple Health is:
- never used for advertising or marketing of any kind, ours or anyone else's;
- never sold, rented or shared with data brokers or information resellers;
- never used for any purpose other than the health and fitness features you turned on;
- never disclosed to a third party except the sub-processors listed in section 7 that operate the service on our behalf;
- never used for research without your separate, explicit consent.
Turning it off. Revoke Menifest's access at any time in iOS Settings ▸ Privacy & Security ▸ Health ▸ Menifest. New data stops arriving immediately. Readings already synced are deleted when you delete your account (section 9), or on request.
3. The AI coach
The coach is powered by Anthropic's Claude models, which run on Anthropic's servers, not ours. When you send it a message we transmit: your message, the recent conversation, the short list of facts it has saved about you, and only the figures it asks for to answer that particular question — which, depending on what you ask, can include your health and financial figures. It does not receive a copy of your whole workspace by default.
Anthropic processes this to generate the reply and, under the commercial API terms we use, does not use it to train its models.
Memory. The coach saves short facts about you — who you are, what you are building, your goals, your constraints, your preferences — so it does not have to ask twice. You can read every one of them in the app (Coach ▸ reset ▸ "See what it remembers"), delete any single one, or wipe all of them at once. Deleting a memory deletes it for good.
Nobody at Menifest reads your conversations, except with your explicit consent when you ask us for support, where it is necessary for security, or where the law requires it.
4. How we use your information, and on what legal basis
We use your information solely to operate and improve Menifest. Under the GDPR our legal bases are:
- Performance of our contract with you — authenticating you, storing and displaying the records you create, running the features you use, handling your subscription, and providing support.
- Your consent — Apple Health access and push notifications. You can withdraw either at any time in your device settings, without losing the rest of the app.
- Our legitimate interests — keeping the service secure, preventing abuse, and diagnosing faults, balanced against your rights.
- Legal obligation — retaining the limited records of purchases that tax and accounting law requires.
We do not sell your personal information, we do not use it for advertising, and we do not profile you on anyone else's behalf.
5. Google user data (web app)
The Menifest web app can connect to Google Calendar. Nothing is connected unless you connect it, and Menifest requests only the scopes the feature needs:
- Google Calendar (
calendar.events) — to show your upcoming meetings on your dashboard and let you create, edit or delete events from within Menifest. - Basic profile (
email,profile,openid) — to sign you in and create your account.
These are the only Google scopes Menifest requests. We do not connect to Google Analytics, YouTube or any other Google service, and we do not request their scopes.
Calendar data is fetched on demand to render the feature. OAuth tokens are stored encrypted at rest. We access only your own data, only while your connection is active, and only to provide the features above.
The iOS app does not connect to Google at all. It requests no Google scopes and holds no Google tokens.
Limited Use disclosure. Menifest's use and transfer of information received from Google APIs to any other app will adhere to the Google API Services User Data Policy, including the Limited Use requirements. We do not use Google user data for serving advertisements, we do not sell it, and we do not allow humans to read it except with your explicit consent, for security or to comply with law, or where the data is aggregated and anonymized.
6. How your data is stored and secured
Your records live in a Postgres database hosted by Supabase in the European Union (Ireland), and progress photos live in a private storage bucket in the same region. Access is scoped per workspace and enforced in the database itself by row-level security, so a request carrying another account's credentials returns nothing rather than someone else's rows. All traffic is served over HTTPS. Keys that must stay secret — our AI provider key, our service credentials — are held server-side and are never shipped in the app.
7. Sub-processors
These are the companies that process data on our behalf so the service can run:
| Provider | What it does |
|---|---|
| Clerk | Authentication — your account, sign-in and password |
| Supabase | Database and file storage (EU, Ireland) |
| Vercel | Hosting for the website and web app |
| Anthropic | Generates the AI coach's replies (section 3) |
| Apple & RevenueCat | Processes and validates subscriptions |
| Expo | Delivers push notifications to your device |
8. Sharing
We share data only with the sub-processors above, and only as needed to operate Menifest. We may disclose data where the law requires it, or to establish or defend a legal claim. If Menifest is ever acquired, your data would transfer with it and this policy would continue to apply until you were told otherwise. We never sell your data.
9. Retention and deletion
We keep your data while your account is active. You can delete it yourself, from inside the app, at Settings ▸ Delete account. That removes your workspace and everything attached to it — your business and body records, anything synced from Apple Health, your progress photos, and your coach conversations and its saved memories — and then deletes your account with our authentication provider. It is immediate and cannot be undone. You can also ask us to do it by email. We retain only the limited purchase records that tax law requires.
10. Your rights
If you are in the EU or EEA you have the right to access your data, to have it corrected or erased, to receive a copy in a portable format, to restrict or object to certain processing, and to withdraw any consent you gave. Exercise any of them by writing to office@splitagency.eu; we answer within one month. You also have the right to complain to your local data protection supervisory authority.
11. Children
Menifest is not directed to children under 16 and we do not knowingly collect their data.
12. Changes
We may update this policy; material changes will be reflected by the "Last updated" date above, and we will tell you in the app when a change is significant.
13. Contact
Questions about this policy or your data: office@splitagency.eu.