Privacy Policy
Effective date: July 30, 2026
Unlit is a quit smoking tracker for iPhone. It has no server of ours, no account, and no analytics. Your quit record, cravings, slips, journal entries and reasons are stored only on your device and are never transmitted to us or to anyone else. This policy explains exactly what stays local, the one category of information that does leave the device when you buy something, and how to control or delete everything.
Plain-English summary
- Unlit has no accounts, no login, and no email collection, and it does not sell or share your personal information.
- Your quit date, streak, cravings, slips, journal, reasons, photos and settings are stored only on your device.
- Unlit has no analytics or tracking SDKs and does not track you across apps or websites. No advertising identifier is requested.
- Unlit asks for no network permission. Every feature except making a purchase works with no internet connection at all.
- If you buy Unlit Pro, Apple processes the payment and our purchase provider RevenueCat receives your purchase and subscription status against a random, anonymous ID. That is the only information that leaves your device.
- RevenueCat never receives your quit record, cravings, slips or journal. There is no mechanism in the app to send them anywhere.
- Because everything is local, deleting the app deletes your data — and there is no cloud backup we can restore it from.
1. Overview
This Privacy Policy applies to the Unlit mobile app for iOS (iPhone), its Unlit Pro purchase features, its widgets and Live Activities, and these public support pages.
Unlit helps you stop smoking and keep track of what that is earning you. You set a quit date — immediately, on a future date, or at the end of a taper schedule Unlit generates for you — and the app counts your smoke-free streak, the cigarettes you have avoided and the money you have saved. You can run a guided three-minute session when a craving hits, log cravings and slips, keep a journal, and unlock health markers and milestones over time.
Unlit does not create user accounts and does not operate a cloud database. There is no sign-in, no profile, and no email address collected. All of your information is written to a single file inside the app's own private container on your device.
2. Short Summary
| Accounts | Unlit does not require account creation, login, or an email address. |
|---|---|
| Ads and tracking | Unlit shows no third-party ads and includes no analytics or tracking SDKs. It does not request the advertising identifier (IDFA) and does not track you across apps or websites. |
| Local app data | Quit plan and quit date, smoking profile, streak, cravings, slips, journal entries, your written reasons and any photos attached to them, milestones, health-marker progress and settings are stored only on your device. |
| Network use | Unlit requests no network permission and makes no network calls of its own. The only outbound traffic is generated by Apple and by our purchase provider when you buy, restore, or refresh a subscription. |
| Offline | Every feature except making a purchase works in airplane mode — including your Pro status, which is cached on the device. |
| Purchases | Apple processes the payment. RevenueCat records purchase and subscription status against a random, anonymous ID generated on your device. Neither receives your quit record. |
| App Store privacy label | Purchase History, linked to the anonymous app-generated ID, used for app functionality only and not for tracking. Nothing else is collected. |
| Health data | Unlit does not use HealthKit and does not read or write Apple Health data. |
3. What stays on your device
The following are written to a single file inside Unlit's private app container, plus a small snapshot in a shared container so the widgets can display it. None of it is transmitted anywhere.
- Your quit plan — the method you chose (cold turkey or taper), your quit date, and any generated taper schedule.
- Your smoking profile — cigarettes per day, pack price, pack size, currency, and years smoked. These are the inputs for the money-saved and cigarettes-avoided figures.
- Your dependence questionnaire answers, if you completed it.
- Your reasons — the text you wrote, and any photo you chose to attach to each one.
- Craving logs — time, intensity, trigger, outcome and duration.
- Slip logs — time, count, trigger and any note you added.
- Journal entries — time, mood and the text you wrote.
- Derived progress — streak, lifetime totals, milestones earned and health-marker progress.
- Settings — notification preferences, appearance and accessibility options.
Unlit uses no database and no cloud sync. If your device is backed up to iCloud or to a computer, this file may be included in that backup under your own Apple account and Apple's terms; that is a function of iOS backup, not something Unlit sends.
4. What leaves your device
One thing, and only when you interact with a purchase: your purchase and subscription status.
Unlit uses RevenueCat to manage purchases and to verify entitlement on top of Apple's StoreKit. When you buy Unlit Pro, restore a purchase, or the app refreshes your subscription status, RevenueCat receives:
- a random identifier generated on your device the first time you open the app — it is not your name, email, Apple ID, phone number, or advertising identifier, and it is not linked to any account;
- the purchase and subscription state associated with that identifier — which product, whether it is active, and when it renews or expires;
- standard technical information any network request carries, such as your IP address and device or app version, handled under RevenueCat's own privacy policy.
RevenueCat does not receive your quit date, streak, cravings, slips, journal entries, reasons, photos or any other content. The app contains no code path that sends them, and it requests no network permission of its own.
Apple processes the payment itself. We never see or receive your card details, billing address, or Apple ID.
Because purchase status is recorded against that identifier, Unlit's App Store privacy label declares Purchase History, linked to that app-generated identifier and used for app functionality only. It is not used for tracking, and no advertising identifier is requested. We would rather state this plainly than claim "no data collected," which would not be accurate once you buy something.
5. Photos
You may attach a photo from your library to each of the reasons you write. Unlit uses the standard iOS photo picker, which runs outside the app: you choose one image and iOS hands that single image to Unlit. Unlit never receives access to your photo library, cannot browse it, and does not ask for photo-library permission.
A copy of the image you chose is stored inside Unlit's own private container so it can be shown to you during a craving. It is not uploaded anywhere. Removing the reason, or deleting the app, removes the copy.
6. Notifications
Unlit can send reminders, milestone notifications and taper-step prompts. These are local notifications: they are scheduled by the app on your device and delivered by iOS. There is no push server, and no notification content is transmitted off the device.
Notifications are optional. Unlit asks for permission once, and you can change or revoke it at any time in the app's settings or in the iOS Settings app.
7. Widgets and Live Activities
Unlit's Home Screen and Lock Screen widgets, and the Live Activity
shown during a craving session, read a small snapshot of your progress
— such as your streak and totals — from a shared container
(group.app.unlit.shared) that only the Unlit app and its
own widget extension can access. This is device-local storage shared
between two parts of the same app. Nothing is transmitted, and the
Live Activity is driven locally rather than by push.
Note that widgets and Live Activities are visible on your Home and Lock Screen, so anyone who can see your screen can see whatever the widget displays. If that matters to you, you can remove the widget or turn Live Activities off.
8. No ads, analytics or tracking
Unlit contains no advertising SDK, no analytics SDK, no attribution SDK, no crash-reporting SDK and no social SDK. It does not request the IDFA and never presents an App Tracking Transparency prompt, because it has nothing to track you with. Its privacy manifest declares tracking as false and lists no tracking domains.
We do not sell or share personal information, and we do not work with data brokers. There is no profiling and no automated decision-making.
9. Sub-processors
| Apple | App distribution and payment processing. Governed by Apple's privacy policy. |
|---|---|
| RevenueCat | Purchase and subscription management. Receives the anonymous identifier and purchase status described in section 4. Governed by RevenueCat's privacy policy. |
| Email provider | If you email support, your message and address are processed by our email provider so we can reply. |
There are no others. Unlit has no backend of ours, no hosting provider handling your data, and no third-party service that receives your quit record.
10. Choices and deletion
- Delete individual entries — cravings, slips, journal entries and reasons can be deleted in the app.
- Export your data — Unlit Pro can export your record so you keep a copy under your control.
- Delete everything — deleting the Unlit app from your iPhone removes the app container, and with it every piece of information listed in section 3.
- Notifications — revoke permission at any time in iOS Settings.
- Purchase records — subscription records held by Apple and RevenueCat are tied to the purchase itself and are retained for accounting, tax and fraud-prevention purposes. To request deletion of the record associated with your anonymous identifier, contact us using the details in section 18.
Please note the consequence of a local-only design: deleting the app deletes your quit record permanently, and we have no copy to restore it from. Export first if you want to keep it.
11. Security
Your information is stored inside the app's private container, which iOS isolates from other apps, and is protected by your device passcode, Face ID or Touch ID through iOS file-level encryption. The file is written atomically so an interrupted write cannot corrupt it.
Purchase traffic between your device, Apple and RevenueCat is encrypted in transit. No system is perfectly secure, but the most meaningful protection here is structural: there is no server of ours holding your data, so there is no database of quit records to breach.
12. Data retention
Your local information is retained on your device until you delete it or delete the app — we do not control it and cannot access it. Purchase records held by Apple and RevenueCat are retained under their own policies and applicable accounting and tax law. Support emails are retained only as long as needed to resolve the matter and to keep a reasonable record of it.
13. Your privacy rights
If you are in the European Economic Area, the United Kingdom, or another region with similar law, you have rights to access, correct, delete, restrict and object to processing of your personal data, and to data portability.
In practice, most of these you exercise directly: the information is on your device, you can view, edit, export and delete it yourself without asking us, and we hold no copy. For the purchase records described in section 4, the legal basis is performance of a contract (providing the subscription you bought) and our legitimate interest in preventing fraud and keeping accurate accounts. Contact us to exercise a right in relation to those records.
You also have the right to lodge a complaint with your local data protection authority.
14. California privacy rights
Under the CCPA and CPRA, California residents have the right to know what personal information is collected, to request deletion, to correct inaccurate information, and to opt out of sale or sharing.
We do not sell or share personal information as those terms are defined, and we do not use it for cross-context behavioural advertising. The only category collected is purchase and subscription information tied to an anonymous, app-generated identifier, used solely to deliver the features you paid for. We do not knowingly collect sensitive personal information.
15. Children
Unlit is not directed to children. It is intended for adults who smoke and want to stop, and it is not designed or marketed for anyone under 17. We do not knowingly collect personal information from children. If you believe a child has provided information to us, contact us and we will address it.
16. International transfers
Your quit record does not cross any border, because it does not leave your device. The purchase information described in section 4 may be processed by Apple and RevenueCat on servers in the United States and other countries, under their own privacy frameworks and standard contractual clauses where those apply.
17. Changes
If this policy changes we will update the effective date at the top of this page, and for material changes we will say so on this page. The current version is always available at soldra.lt/unlit/privacy/.
18. Contact
Questions about this policy, or a request relating to your data: [email protected].
Unlit is made by Soldra, an independent app studio based in the Republic of Lithuania.