Last Updated: May 1, 2026
This Privacy Policy applies to Dona app, operated by Onloom LLC. For privacy inquiries contact [email protected]
Dona (“we”, “our”, or “the App”) is a privacy-first cycle tracking application designed for personal use without requiring any account registration. Core app data is processed and stored locally on your device. We do not operate proprietary servers to store your in-app content. We use Amplitude to collect limited usage and device analytics (for example, app interactions and technical device/app information) to understand performance and improve the App.
This Privacy Policy explains how we process information under applicable privacy laws, including the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act / California Privacy Rights Act (CCPA/CPRA), where they apply.
What information we collect and why
We collect limited, pseudonymous usage analytics through Amplitude to understand how the app is used, diagnose issues, and improve performance and features. We do not send your in-app content (e.g., cycle entries, notes) to Amplitude.
What we do not collect
Your name, email address, phone number, address or precise location and we do not ask you to create an account.
We do not access or use Apple’s IDFA. We do not request App Tracking Transparency permission and do not perform ‘tracking’ as defined by Apple.
Legal Basis for Processing
Your Rights (EEA/UK/Switzerland)
You may have rights to access, delete, or object to certain processing. Because the App does not use accounts and we do not collect direct identifiers (such as name or email), we may not be able to link analytics records to a specific individual or device. You can delete all locally stored App data by deleting the App.
California Privacy Rights (CCPA/CPRA)
We do not sell or share personal information as defined by the CCPA/CPRA. The App does not create user accounts and we do not maintain user profiles tied to your identity. You can delete locally stored App data by deleting the App.
Data Security
We apply reasonable safeguards to protect information. App data is stored locally on your device using iOS protections, and analytics sent to Amplitude is transmitted over encrypted connections (TLS/HTTPS). We minimise analytics payloads and do not send your in-app content to Amplitude.
Your Rights
You can contact us at [email protected] to ask privacy questions or request information about the categories of data we process. You can delete locally stored App data by deleting the App. If iCloud sync is enabled, you can manage or delete App data via your Apple ID iCloud settings.
Children’s Privacy
The App is intended for users 9+. We do not collect or verify age, and we do not knowingly process data from children under 9. No accounts and no direct identifiers (name, email, phone). We use limited, pseudonymous analytics through Amplitude to help us understand app stability and usage patterns. Amplitude is configured with COPPA-related controls enabled to further limit data collection.
Deleting Data
All App data is stored locally on your device. You can delete this data at any time by deleting the App from your iPhone.
Policy Updates
We may update this Privacy Policy from time to time to reflect changes in the App, legal requirements, or regulatory guidance. We will post the updated Policy with a new “Effective date” and, if changes are material, we will provide an in-app notice.
Contact Us
If you have any questions or suggestions, please contact us:
We respond to all requests within 5 business days