Hydration Bear · Legal and privacy
Privacy Policy
Effective September 3, 2026 · Last updated September 9, 2026
1. Scope
This policy applies when you use the Hydration Bear iOS app, account service, and related support services. Third-party websites and services are governed by their own privacy policies.
2. Information we process
Email account information: If you register or sign in with email, our account service processes your email address, salted password hash, verification-code records used for registration or email changes, account identifier, and login session. We never store your password in plain text. Verification codes expire after 10 minutes and login sessions after no more than 30 days.
Sign in with Apple information: If you choose Sign in with Apple, the App receives a stable Apple user identifier and, on the first authorization only, may receive your name and email address, including an Apple private relay address. This information identifies your App account and displays your profile on the current device. It is not sent to our email account server.
Information you provide or create: This includes your nickname, avatar choice, sex, height, weight, age, activity level, daily hydration goal, beverage type, amount, drink time, reminders, and preferences. The App uses this information to estimate a hydration goal, schedule reminders, and generate history and statistics. It is stored locally on your device.
Basic network and security information: When you use the email account service, our server and network infrastructure may process your IP address, request time and type, and basic network information sent by your device to protect the service, limit abuse, and troubleshoot problems. We do not use it for advertising or profiling.
3. Camera and on-device drink recognition
When you start drink recognition, the App uses the front camera to analyze whether a face is visible, head position, and the relative position of the hand and mouth. It may also use an on-device model to help recognize a drinking action.
Camera frames are processed one by one only in device memory and discarded immediately. They are not recorded, written to Photos or other storage, uploaded, or shared with third parties. This feature does not identify you and does not create a face template.
You can turn off camera access at any time in iOS Settings > Privacy & Security > Camera. Camera recognition will no longer work, but manual confirmation remains available.
4. Screen Time and selected apps
After you expressly authorize it, the App uses Apple's Family Controls and Managed Settings frameworks to temporarily shield apps, categories, or websites you select when a hydration reminder is due, and removes the shield after you confirm a drink.
Apple represents your selections using opaque tokens. The App stores these tokens on the current device only to apply the restrictions you configure. We cannot decode them into your complete usage history, and we do not upload your selections, browsing history, or Screen Time data.
You can revoke authorization in system settings. Without authorization or a selection, the App shows only its own hydration reminder and does not shield other apps.
5. Notifications
Notification permission is used only to send local hydration reminders at the times you choose. Notification content and schedules are managed by your device, and we do not use this permission to read notifications from other apps. You can choose Never in the App to cancel scheduled reminders or disable notifications at any time in iOS Settings.
6. Storage, retention, and security
Whether or not you sign in, body information, hydration records, reminder settings, and Screen Time selections remain on the current device and are not uploaded to the account service. Guest and account data are separated and remain until you clear them or uninstall the App. Account-scoped local data is also removed when that account is deleted.
Email addresses, password hashes, and account identifiers remain on our account server until you delete the account. Short-lived verification codes and sessions become invalid when they expire or complete their purpose. Necessary security logs are retained only as long as needed for security and troubleshooting, then deleted or de-identified.
We use reasonable safeguards such as access controls, HTTPS, salted password hashing, and session protection. No storage or transmission method can guarantee absolute security, so please protect your credentials and verification codes.
7. Service providers and sharing
We do not sell or rent personal information and do not include advertising, cross-app tracking, or third-party analytics SDKs. We use service providers only as needed for the functions listed below:
Service providers
| Provider | Information processed | Purpose |
|---|---|---|
| Apple | Sign in with Apple credentials; Screen Time authorization and opaque selection tokens | Provide Apple sign-in and system-level shielding |
| Resend | Recipient email address, verification email content, and delivery information | Deliver registration and email-change verification codes |
We may disclose necessary information when required by law, to protect users or the public, or to defend legal rights. If a merger, acquisition, or asset transfer occurs, we will require the successor to remain bound by this policy and provide any notice required by law.
8. Your rights and data deletion
You can use and change reminder settings without signing in and delete all hydration records for the current identity under Settings > Clear all records. After registering or signing in, you can also view and update your account profile and email.
To delete an account, go to Settings > Profile > Account information, choose Delete account, and confirm deletion of all data. Deleting an email account removes the server account information and the profile, hydration records, and settings on the current device. Local data for an Apple sign-in account is also deleted.
If you cannot access the App or want to access, correct, or delete relevant information, email goudan1030@gmail.com. We may need to verify account ownership to prevent unauthorized requests.
9. Children
The App is not directed to children under 14. If you are under 18, use it only after a parent or guardian has read and agreed to this policy. If we learn that we processed information from a child under 14 without guardian consent, we will delete it as soon as reasonably possible.
10. Changes to this policy
We may update this policy as features or legal requirements change. If a change materially affects your rights, we will provide notice in the App or by another prominent method. The latest update date appears at the top of this page.
11. Contact us
Operator: 深海鱼信息科技
Email: goudan1030@gmail.com
Contact us at the address above with questions about this policy or our handling of personal information.
For more help, visit Help and support.