LEGAL
Privacy Policy
Heatspace (“Heatspace,” “we,” “us,” or “our”) provides guided sauna, steam, bathing, and red-light timers, session history, optional account sync, an Apple Watch companion, a moderated sauna finder, and a marketing and support website. This policy explains what information Heatspace processes, why it is processed, and the choices available to you.
Information Heatspace processes
Information you provide
- Profile preferences, including preferred practice, goal, experience, usual setting, weekly goal, and onboarding choices.
- Optional post-session reflections and records, including practice type, mood, perceived intensity, discomfort, temperature, sauna-location snapshot, and notes.
- If you use Sign in with Apple, the Apple-provided account identifier and, when shared, your email address and name.
- Sauna-location proposals, saved sauna identifiers, and listing reports submitted through the Find feature.
- Support communications you choose to send us.
Purchases and identifiers
Apple processes payments for Heatspace Pro. Heatspace does not receive your card or bank details. RevenueCat processes App Store product identifiers, purchase and entitlement status, transaction-related information supplied by Apple, an anonymous RevenueCat identifier, and—after you sign in—your Heatspace/Supabase user identifier so purchases can be restored and Pro access can follow your account.
Session and device information
- Session timing, selected protocol, completion state, and sync state.
- Local app settings and cached entitlement state required to operate the app.
- Basic service diagnostics returned by Apple, RevenueCat, or Supabase when an operation fails.
- Heatspace does not use this information for cross-app tracking or targeted advertising.
App product analytics
Heatspace records a small, fixed set of product interactions to understand whether people can use the app: app opens, onboarding step views and completion, practice selection, ritual views, session starts, completions, and abandonments, evidence-detail views, reminder enablement, paywall views and dismissals, and purchase or restore outcomes. These events may include the onboarding step, paywall entry point, selected practice, whether a ritual is built in, custom, or free-form, the identifier of a built-in ritual, reminder cadence and count, purchase package type, entitlement result, app version and build, a random identifier for the current app process, and a random installation identifier used for aggregate retention measurement.
The analytics installation identifier is generated by Heatspace, stored in the app container, not derived from an Apple device, vendor, or advertising identifier, and reset when the app is removed. App analytics does not include your Heatspace account identifier, name, email address, HealthKit data, heart rate, session duration, temperature, location, reminder days or times, notes, free-text ritual names, or raw error messages. Events are sent directly to Heatspace's Supabase project, are not used for advertising or cross-app tracking, and cannot be joined to a Heatspace account by an identifier in the analytics table.
Website analytics
The Heatspace website uses Vercel Web Analytics to understand aggregate traffic and improve the site. It records anonymous page-view information such as the page visited, referring site, approximate country or region, browser, operating system, and device type. Heatspace does not send names, email addresses, account identifiers, HealthKit data, or app session data to website analytics, and does not use analytics for cross-site advertising. Vercel Web Analytics does not use third-party cookies for this measurement.
The website also uses Vercel Speed Insights to measure page performance. It records anonymous performance timings for the page visited, such as Core Web Vitals, along with coarse device, browser, and connection information. It does not use third-party cookies, does not identify you, and is not used for advertising.
Location
If you tap Near me, Heatspace requests your current location to sort and display nearby approved sauna listings. Current location is processed on your device and is not stored as location history or uploaded to Heatspace servers. You can browse and search the sauna finder without granting location access.
Apple Watch and HealthKit
With your permission, the Apple Watch app may read live heart rate during supported heat-practice sessions and save a completed traditional sauna, infrared sauna, steam-room, or hot-bath session as a Mind & Body workout in HealthKit. Red-light sessions are not saved as HealthKit workouts. Average and maximum heart-rate summaries may be transferred to the paired iPhone for the local session summary. When you explicitly choose Review Health workouts on iPhone, Heatspace reads recent workout summaries and available heart-rate statistics to show possible heat-practice sessions. Nothing is imported automatically. If you import a match, its timing, source note, and other eligible session fields become part of your Heatspace history and may sync with your Heatspace account when you are signed in; the HealthKit workout object and heart-rate summary are not uploaded in the current implementation.
Recovery Insights is a separate, optional Health permission. If you enable it, Heatspace reads sleep analysis, heart rate, heart-rate variability, respiratory rate, and sleeping wrist temperature when those records are available. Heatspace uses the records on your device to assemble the nights before and after a session and a prior 28-day baseline. Detailed sleep and overnight measurements are not added to Heatspace account sync or uploaded by the current implementation. Heatspace does not use HealthKit data for advertising, data brokerage, or marketing, and does not sell HealthKit data.
How Heatspace uses information
Heatspace uses information to:
- Operate timers, protocols, session history, Apple Watch connectivity, and safety confirmations.
- Personalize ritual recommendations and calculate on-device wellness summaries.
- Sync your profile, eligible session fields, and saved sauna identifiers when you choose to sign in.
- Provide, verify, and restore Heatspace Pro access.
- Understand aggregate app feature adoption and improve onboarding, rituals, reminders, evidence explanations, and purchase flows.
- Moderate sauna-location proposals and reports and prevent duplicate or abusive submissions.
- Respond to support requests, protect the service, and comply with legal obligations.
- Heatspace does not sell personal information and does not share personal information for cross-context behavioural advertising.
Service providers
Heatspace uses the following processors to provide app and website functionality:
- Apple: Sign in with Apple, App Store purchases, StoreKit, HealthKit, and platform services.
- Supabase: Optional account authentication and cloud sync for profiles, eligible session fields, saved sauna identifiers, and private marketplace submissions; and account-unlinked product analytics for app improvement.
- RevenueCat: Purchase validation, entitlement state, and purchase restoration.
- Vercel: Website hosting and privacy-focused, aggregate web analytics and performance measurement.
- These providers process information under their own privacy terms and applicable contractual obligations.
Storage and retention
Session history and preferences may remain only on your device unless you sign in and enable the cloud-backed features described above. Synced account data is retained while your account is active and as reasonably necessary to operate the service, resolve disputes, enforce agreements, and meet legal obligations.
Account-unlinked app product analytics is retained for no longer than 13 months. A small queue of unsent events may remain on your device until delivery succeeds; it is capped and is removed when you delete the app.
When you delete your account in Heatspace, the authenticated deletion process removes the Supabase authentication user and associated private profile, session, and saved-location records. Marketplace submissions may be retained in de-identified form to preserve moderation integrity and prevent abuse. Deleting a Heatspace account does not cancel an Apple subscription; subscriptions are managed separately in your Apple Account settings.
Local app data can also be removed by deleting the app from your device. Health data already saved to HealthKit is controlled through Apple Health and your device settings.
Your choices
- Use the core timer without creating an account.
- Decline or revoke Location and Health permissions in Apple Settings.
- Review or delete local session history from the app where available.
- Export visible session history as CSV or JSON from Account → Export session history. The export is created on your device and is shared only with a destination you choose.
- Restore purchases from the paywall or Account screen.
- Permanently delete a signed-in Heatspace account from Account → Delete account.
- Manage or cancel an Apple subscription at apps.apple.com/account/subscriptions.
- Contact us to ask about your privacy rights, subject to identity verification and applicable law.
Children
Heatspace is not directed to children under 13, and we do not knowingly collect personal information from children under 13. Heat, bathing, and light-device use by minors should occur only with appropriate adult and medical guidance and according to equipment instructions.
Security and international processing
We use reasonable administrative and technical safeguards designed to protect information. No storage or transmission method is completely secure. Service providers may process information in countries other than your own, subject to applicable safeguards.
Changes to this policy
We may update this policy as Heatspace changes. We will update the effective date and provide additional notice when required by law.
Contact
For privacy questions or requests, contact Vlad Arama at vladarama2002@gmail.com.
Vlad Arama · Heatspace · Canada