Privacy

BetterPath Privacy Policy

Last updated: July 25, 2026

BetterPath works without an account. Your profile, questionnaire answers, weight log, meal log, water log, workout log, Food Noise Rescue check-ins, coach conversations, weekly diary, shopping checklist, private progress photos, reminders, cached plans, and integration snapshots are stored locally on your device. Rescue history does not contain conversation transcripts or voice audio.

Summary

BetterPath's backend processes request-scoped context when you use AI features, voice features, Food Noise Rescue, meal photo analysis, generated plans, or connected integrations. The backend is designed not to retain your profile, Rescue history, log history, chat history, meal photos, audio, or health history after handling the request.

To enforce monthly voice allowances, the backend keeps a narrow usage meter containing a one-way keyed hash of the RevenueCat anonymous app user ID, subscription tier, calendar month, session timing, and seconds used or reserved. It does not contain audio, transcripts, prompts, profile fields, meal data, or health data. Completed meter records are deleted within 90 days.

BetterPath uses Apple in-app purchases and RevenueCat to manage subscription purchase status. BetterPath does not receive your payment card details.

Information Stored On Your Device

BetterPath stores these items locally on your device:

You can delete local app data from Profile - Delete my data. This clears BetterPath data stored on that device. If you uninstall the app, iOS may also remove app data according to iOS behavior.

AI Features And Backend Processing

When you use BetterPath's AI features, BetterPath sends the relevant context needed for that request to the BetterPath backend. Depending on the feature, this may include profile answers, recent logs, generated plan context, chat messages, voice session instructions, meal descriptions, meal photos, or connected integration snapshots. During Food Noise Rescue, the selected intensity and trigger, support mode, and a small locally derived summary of what has helped before may be included so the response can fit the current moment. When a diet plan is generated, the AI response also includes three short plan-specific nudges for morning, midday, and evening. Those messages are returned with the plan and cached locally; no new AI request runs when a notification is delivered.

Nutrition and Fitness coach conversations remain on your device. For an active request, BetterPath sends a bounded summary, recent messages, goals, saved plans, and relevant recent trends. Older messages can be summarized through a request-scoped backend operation and the returned summary is stored only on your device.

The backend forwards request data to configured AI providers, currently Azure OpenAI, to generate the response. BetterPath does not use a server-side database for profile, Rescue, log, chat, meal-photo, audio, or health-history retention in the current v1 backend.

AI providers may process and retain limited request data under their own service terms, security controls, and abuse-monitoring rules. Microsoft states that prompts and responses are not used to train generative foundation models without permission, but content associated with possible abuse may be stored and reviewed unless the Azure resource has been approved for modified abuse monitoring. Contact BetterPath support if you have a privacy or processor-deletion question.

Camera, Photos, Microphone, And Notifications

If you take or select a meal photo, the image is sent to the BetterPath backend and AI provider for meal analysis. BetterPath uses the result to create or update a meal log on your device. The backend is designed not to retain the photo after the request completes.

If you add a progress photo, BetterPath copies it into the app's private local storage. Progress photos are not sent to the BetterPath backend or an AI provider. They remain on the device until you delete the photo or use Delete My Data.

If you use voice mode, BetterPath uses your microphone to create an AI voice session. Relevant profile context may be included in the session instructions so the coach can respond personally. The backend mints a short-lived session token and is designed not to retain voice audio or voice transcripts. Base includes up to 30 voice minutes per calendar month and Pro includes up to 90. Individual sessions end after at most 15 minutes. Only the pseudonymous allowance meter described above is retained.

All app notifications are optional and off by default. BetterPath asks for notification permission only after you turn on a reminder feature. Rescue reminders use up to two user-chosen time windows and may include one short local follow-up after a Rescue begins.

If you enable plan nudges, BetterPath locally schedules two or three messages from the bounded sequence generated with your current diet plan. Regenerating the plan replaces the previous sequence. If you also enable an Eating Window, the plan nudges are placed inside that window. You can keep lock-screen text discreet or choose to show plan-specific text. The backend does not send push notifications or receive delivery data.

If you enable Eating Window reminders, you choose a daytime window between 8 and 12 hours. BetterPath schedules one reminder when it opens and one 30 minutes before it closes. There is no streak, score, penalty, or server enforcement, and the feature does not instruct you to ignore hunger. A neutral weigh-in reminder is also available separately.

Subscriptions

BetterPath uses auto-renewable subscriptions for paid AI coaching access. Purchases are processed by Apple through the App Store. RevenueCat is used to check subscription status, manage entitlements, support restore purchases, and provide the anonymous app user ID that BetterPath hashes for voice allowance enforcement. BetterPath does not receive or store payment card information.

Optional Integrations

BetterPath only shows an integration when it is configured and available in the installed build. If you connect WHOOP, BetterPath uses OAuth to access the WHOOP data you authorize, such as recovery, HRV, resting heart rate, sleep, and strain. BetterPath stores WHOOP access and refresh tokens in secure device storage and stores the latest normalized snapshot locally in your profile. BetterPath does not see your WHOOP password.

If you connect Apple Health, BetterPath requests read-only access to the data types you choose to share: steps, active energy, resting energy, workouts, and body weight. BetterPath does not request clinical records, heart-rate data, or permission to write data to Apple Health. Bounded daily activity summaries and recent weight readings are stored locally for Progress.

When you use AI coaching, BetterPath may include a minimal current Apple Health summary, such as today's steps, energy, or workout minutes, in request-scoped context sent to the BetterPath backend and AI provider. Raw HealthKit sample history and HealthKit identifiers are not sent, and the backend is designed not to retain the summary after processing the request.

Disconnecting Apple Health clears its cached summaries from BetterPath and stops future syncs. Apple manages the underlying permissions in the Health app and iOS Settings. Delete my data also clears Apple Health summaries stored by BetterPath on the current device.

Website Waitlist

If you join the BetterPath website waitlist, the website sends the contact information and goal information you submit to Airtable for waitlist administration and to Loops for requested product emails. This website information is separate from the local profile and logs stored by the BetterPath iPhone app. You can unsubscribe from emails using the link in any message.

No Tracking

The current v1 app does not require account creation and does not use third-party advertising tracking. BetterPath does not sell personal data or use app data for cross-app tracking.

Vendors And Processors

Depending on enabled features and deployment configuration, BetterPath may use:

Data Deletion

Use Profile - Delete my data to clear BetterPath data stored on the current device, including coach conversations, daily plan choices, weekly diary entries, shopping checklist state, generated nudge text, Eating Window settings, Rescue history, and pending local reminders. Because v1 does not require an account and is designed not to retain server-side profile/log history, there is no account profile to delete on BetterPath servers.

The pseudonymous voice allowance meter is retained for allowance enforcement and fraud prevention and is automatically deleted within 90 days. Deleting local data does not reset the current monthly voice allowance.

Deleting BetterPath data does not delete source records from Apple Health or WHOOP. Those services manage their own source data and permissions.

If you contact support about privacy or deletion, support may ask for the app version, device, connected integrations, and whether any external provider deletion requests are needed.

Contact

For support or privacy questions, contact hello@betterpath.health.