Privacy Policy

PaceWise · Last updated 28 July 2026

This Privacy Policy explains how PaceWise ("the app", "we", "us") handles your information. In short: everything you enter stays on your device, and PaceWise never collects anything personal. The one thing it can send is anonymous counts of which features get used — nothing tied to you, and you can turn it off.

Data we collect

The information you enter — your paces, times, personal bests, races and profile — is never collected. It stays on your device (see the next section). PaceWise has no accounts, and no servers that hold your data.

The one thing PaceWise can send is anonymous usage analytics: a count of which features get used, so we know what's worth improving. These events are not tied to you — no name, no account, no device or advertising identifier, no location, and never any value you type. Your times, paces and personal bests never leave your device. We use Aptabase, an open-source, EU-hosted analytics service that is anonymous by design: it identifies each install only by a random id that rotates daily and cannot be traced back to you or linked across apps.

This is optional. You can turn it off — or confirm it's off — any time from the privacy screen in the app (on iPhone, your profile → Privacy; on Android, Settings → Privacy). If you were already using PaceWise before analytics existed, it starts off until you choose to turn it on; on a new install it starts on, and the first launch shows a one-time notice saying so, with a button to turn it off there and then. It is always off, with the toggle hidden, for anyone whose profile indicates they are under 13.

One thing we want to be straightforward about: turning analytics off records that you turned it off — a single anonymous event noting the switch moved and which screen you moved it from, sent at that moment while analytics is still on. It carries nothing about you. We count it because knowing how many people opt out, and where, is the only honest way to tell whether the default is one people are happy with. After that, nothing is sent at all — it is the last thing PaceWise sends until you turn analytics back on. Turning it back on records that too. If analytics is already off, or the under-13 lock applies, nothing is recorded either way.

Data stored on your device

Any information you enter into PaceWise stays on your device. It is not sent to us or to any third party. Deleting the app removes this data from your device.

PaceWise can back up your data to a file when you ask it to. The backup is created on your device and saved wherever you choose (for example the Files app, or a cloud folder you control). It is never sent to us — where it goes is entirely up to you. On iPhone the backup includes any saved parkrun barcodes, including ones you have added for other people, so that a new phone does not mean re-finding everyone's athlete ID — worth knowing before you share the file with anyone else.

Device permissions

PaceWise works offline and needs no permissions for its core features. A few optional features use device permissions; each is off until you use it, and everything they touch stays on your device. One — Add to Calendar on a dated race — uses your device's calendar. If you choose to use it, PaceWise adds a single all-day event for your race to the calendar you pick, and may update or remove that same event when you change or delete the race. PaceWise reads your calendar only to find the event it created (so it can keep it in sync rather than adding duplicates); it does not read, store, or transmit any of your other calendar data. You can deny or revoke Calendar access at any time in your device's Settings (iOS or Android), and the rest of PaceWise keeps working. This all happens on your device — nothing is sent to us.

On iPhone, some optional features use Apple Health. All of them are read-only — PaceWise never writes anything back to Health — and everything it reads is processed entirely on your device; nothing is sent to us. If you grant Health access, PaceWise reads your running workouts for two things: Import from Health on the Personal Bests screen (finding your fastest 5K, 10K, half, and full marathon times and offering them to you as Personal Bests — only the race times you choose to save are kept), and the Weekly distance view and its home-screen widget (your recent weekly running volume, refreshed when you use the app). By default PaceWise never reads Health in the background; if you turn on “Update widget in the background” (off unless you enable it), it also checks for new runs in the background so the widget stays current after a run. Separately, if you tap “Fill age & sex from Apple Health” in the athlete profile, PaceWise reads your date of birth and biological sex once, to set up age-graded times — never in the background, and it reads no other health data. You can deny or revoke Health access at any time in the iOS Settings or Health app, and the rest of PaceWise keeps working. On Android, the equivalent import reads from Health Connect — see the next section.

Two more optional features use device permissions in the same on-device way. A profile photo in the athlete editor can use your camera or photo library; the photo is stored only on your device, alongside the rest of your PaceWise data. And as described above, Add to Calendar touches only the race-day events PaceWise itself creates.

Health Connect (Android)

On Android, PaceWise can read your recorded running workouts from Health Connect — the on-device, encrypted health store — to help you find your fastest recorded times. This is entirely optional and off until you ask for it.

What we read. With your permission, PaceWise reads your exercise sessions (running and treadmill runs) and their distance from Health Connect. It uses these only to identify your fastest recorded 5K, 10K, half marathon, and marathon, which you can then choose to save as Personal Bests.

When we read it. Only when you tap Import from Health, or — if you have already granted permission — to show how many new results are available. PaceWise never reads your health data in the background.

What we never do. PaceWise never writes anything back to Health Connect, never sends your health data off your device, and never shares it with us or any third party. All of this happens on your phone. We keep only the personal-best entries you explicitly choose to save, stored locally on your device.

Your control. You can grant or revoke PaceWise's access to Health Connect at any time in Settings → Health Connect (or the Health Connect app). Revoking it simply hides the import feature; nothing else changes.

Third-party services

PaceWise integrates no advertising or cross-app tracking services, and nothing that profiles you. The app's only third-party service is Aptabase, the anonymous usage analytics described above. It receives only anonymous feature-usage counts, and only while you leave analytics enabled — plus the single event that records you turning it off, described above; nothing you enter is ever shared with it or anyone else.

This website

Everything above describes the PaceWise app. This website — pacewise.doughworks.dev — counts page views using Cloudflare Web Analytics. It sets no cookies and stores nothing on your device, which is why you have not been asked to accept anything. It does not fingerprint your browser and cannot follow you to other sites. What it records is the page you viewed, the site you arrived from, your country, and your browser and device type — never your IP address, and nothing that identifies you.

Children's privacy

PaceWise does not knowingly collect information from anyone, including children under 13. It collects nothing personal from anyone, and the optional usage analytics is turned off entirely — with its toggle hidden — whenever a profile indicates the person is under 13.

Changes to this policy

If this policy changes, we will update this page and revise the date above.

Contact

Questions about this policy? Email support@doughworks.dev.