This page is the short version. The full policy is at /privacy/policy.
What Voke collects
- Your account. Your name and the email address Apple gives Voke when you sign in with Apple. That’s often a private relay address.
- Health data you connect. Sleep, heart rate, heart rate variability, steps, workouts and the other readings in Apple Health or Google Health that you allow.
- Your devices. A key for each iPhone you sign in on, so Voke knows uploads really come from your phone.
- Your sharing. Your circles, who’s in them and what each person can see.
- Your AI use, if you use it. Your Ask Voke chats, your morning summaries and which AI apps you’ve connected.
Voke has no ads, no advertising trackers and no analytics tools in the app.
How it’s protected
- Encrypted with your own key. Each account has its own encryption key. Your health data, your chats and your morning summaries are stored encrypted with it.
- Encrypted in transit. Everything between your phone and Voke goes over an encrypted connection.
- Voke’s server can read your data. To work out your scores, show your data to the people you share with and answer your questions, Voke’s server decrypts it while it works. This isn’t end-to-end encryption, and we won’t call it that.
Who can see it
- You. Everything.
- People you share with. Only the categories and level you picked for them: scores, daily totals or full detail. Body measurements and heart rhythm events are never shared.
- AI apps you connect. Only the categories you approved when you connected them.
- Other people’s AI. Only if you turn on “Let their AI see this too” for that person. It’s off by default.
- Voke. We don’t read your data. Our systems process it to run the app.
Every time another person or an AI reads your data, Voke logs it. You can see what AI apps read in the app.
Where it’s stored
On Amazon Web Services in Montréal, Canada, with encrypted backups in Calgary, Canada.
Some data leaves Canada to make features work:
- Google sends your Google Health data from its servers when you connect Google.
- Apple handles Sign in with Apple and delivers notifications.
- Ask Voke and morning summaries are processed in the United States (see below).
AI
- Ask Voke and the morning summary send your question and the data needed to answer it to an AI model provider through Vercel’s AI Gateway, in the United States. Every request uses zero data retention: the provider deletes it after answering and doesn’t train on it. If a request can’t be served that way, it fails instead.
- Your own AI. When you connect Claude, ChatGPT or another AI app, the data it reads goes to that company under your account with them. Their privacy terms apply, not Voke’s.
- Data from Google and Apple is never used to train AI models.
- One switch turns it all off. “Use AI features” in your account settings. Turning it off disconnects every AI app, deletes your chats and morning summaries, and keeps your data out of everyone else’s AI too.
How long Voke keeps it
- Health data: until you delete your account.
- Ask Voke chats: 30 days, then deleted.
- Morning summaries: until you turn off AI or delete your account.
- Server logs: 30 days. They don’t contain health values.
- Backups: up to 35 days. They hold only encrypted data.
Deleting your data
Delete your account in the app: tap your account button at the top of the Feed, then Delete account. Voke removes you from every circle at once, deletes your health data and destroys your account’s key. Within 7 days nothing of yours can be read anywhere, including in backups.
Step-by-step instructions are at /delete-account.
Your rights
You can ask for a copy of your data, ask us to correct it, or ask us to delete it. Email [email protected].