Tideline

Last updated 1 September 2026 · Draft, pending legal review

Privacy

Tideline holds some of the most sensitive information a person has. This page says plainly what it does with it. If anything here is unclear, write to hallo@tideline.ch and we will fix the wording.

Who is responsible

MarketVision AG, Zürich, Switzerland, is the controller for the purposes of the Swiss Federal Act on Data Protection (nDSG) and the EU General Data Protection Regulation (GDPR). Contact: hallo@tideline.ch.

Where your record lives

Your record — supplements, doses, symptom entries, notes, tags and imported measurements — is stored on your device, inside the app's own storage. It is not uploaded to us. We do not operate a server that holds your health data, and we cannot read your record.

If your device backs up to iCloud, the app's data is included in that backup under Apple's terms, encrypted with your Apple account. That backup is between you and Apple; we have no access to it.

Apple Health

With your permission Tideline reads sleep, heart rate variability, resting heart rate and step count. It is read-only:

Oura

If you connect an Oura ring, Tideline reads sleep, heart rate variability, resting heart rate, steps, readiness and nightly temperature deviation from the Oura Cloud API. The connection is read-only. Your access and refresh tokens are stored in the device keychain, not in your record file and not with us. Disconnecting removes them, and you can revoke Tideline's access from your Oura account at any time.

Sharing with a clinician or coach

Nothing is shared until you grant access to a named person, and a grant is a scope rather than a switch: you choose which categories they may see. Every grant carries an expiry date and ends by itself if you do nothing. Every access is recorded in a log you can read. Revoking is immediate. Anything a person exported before you revoked remains with them, and Tideline says so rather than implying otherwise.

Legal basis

Health data is a special category of personal data under Article 9 GDPR. Where the GDPR applies, we rely on your explicit consent (Art. 9(2)(a)) for processing it, and on that same consent for each sharing grant you create. You may withdraw consent at any time by revoking a grant, disconnecting a source, or deleting the app.

What we collect about you

In the current version: nothing. Tideline contains no analytics, no advertising identifiers and no third-party trackers. We receive no crash reports unless you choose to send them through Apple, which are aggregated and do not contain your record. If that ever changes, this page will change first and the app will ask.

Your rights

Access and portability
Your record is on your device and readable by you at any time.
Correction
Every entry can be edited or re-rated, and backdated entries are marked as entered late rather than rewritten silently.
Erasure
Deleting the app removes the record from your device. Revoking a grant ends a clinician's access immediately.
Complaint
You may complain to the Swiss Federal Data Protection and Information Commissioner, or to your local supervisory authority in the EU or UK.

Children

Tideline is not intended for people under 16.

Changes

If this policy changes in a way that affects what happens to your data, the app will tell you before the change takes effect, and this page will carry a new date.

This is a draft. Tideline is in private testing and has not yet been released. This policy describes the app as built today and needs review by a qualified lawyer before public release.