Privacy Policy

Your diary never leaves your iPhone.

Aura has no account, no server and no analytics, so there is nothing for us to collect. This page explains exactly what the app touches on your phone, why, and how to remove it — in plain language first, and in full below.

Effective 14 September 2026 App Store label: Data Not Collected About 7 minutes to read
No account, no sign-up

No email, no password, no profile. Aura doesn’t know who you are, and doesn’t need to.

Nothing is uploaded

There is no Aura server. Your diary is stored on your iPhone and nowhere else we control.

Never sold or shared

No ads, no tracking, no analytics, no third-party code. Nothing to sell, and nobody to sell it to.

01The short version

  • No account. There is nothing to sign up for and no email address to give.
  • No server. Aura has no backend, so there is nowhere for your diary to be uploaded to.
  • No analytics, no crash-reporting SDK, no advertising identifier, and no third-party code of any kind.
  • Your data is never sold, shared, licensed or used to train anything.
  • No paywall in front of your own records. Exporting your diary is free, and always will be.
  • You can delete one record or everything, including the entries Aura saved to Apple Health.

This policy says the same thing as the Privacy screen inside the app (Settings › How Aura handles your data), in more detail. If the two ever disagree, the stricter one applies.

02Who we are

“Aura”, “we” and “us” mean Ozar Tech Corp., the company that makes Aura: Migraine Tracker for iPhone. This policy covers the Aura app, its widgets, Live Activity and Siri shortcuts, and this website, aura.ozar.io.

Because Aura doesn’t collect personal data, we are not a “controller” of your diary in the usual sense: it lives on your device, under your control. We’re still happy to answer any question about it — see Contact.

03What Aura handles, and where it stays

Everything below is created by you, stored in Aura’s database on your iPhone, and read by the app on your iPhone. None of it is transmitted to us.

WhatWhy Aura has itWhere it’s kept
Attack recordsStart and end times, severity, kind of headache, aura, symptoms, warning signs, recovery, how much it stopped you, and your notes — the diary itself.On your iPhone
MedicinesNames, doses and times you log, so Aura can count medication days against the published thresholds.On your iPhone
Pressure readingsOnly if you turn weather on: the barometric pressure when you log an attack, and once a day.On your iPhone (the reading, not your location)
Name on the reportOptional. Printed at the top of the PDF if you type one.On your iPhone
SettingsAttack mode, dimming, notification choices and similar preferences.On your iPhone
Health dataOnly if you allow it. See Apple Health.In Apple’s Health app, on your iPhone

Aura’s widgets and Live Activity read a small summary (such as whether an attack is running, and your last thirty days) from a storage area shared only between the app and its own widgets, on the same device.

Aura does not access your camera, microphone, photos, contacts, calendars, Bluetooth, local network, motion data or background location, and never asks to track you.

04Apple Health

Connecting Apple Health is optional, and each permission is asked for only when you turn the feature on in Settings › Apple Health.

What Aura writes

Each attack as a Headache entry, with its real severity, start and end, so your other health apps and your care team can see the same record you do.

What Aura reads

  • Sleep, to compare nights before attack days with your other nights.
  • The Headache entries Aura wrote, so it can find and remove them when you delete.
  • Menstrual flow — only if you turn on cycle comparisons.

Aura doesn’t request clinical records, heart rate, heart-rate variability, steps, workouts or any other Health data.

Our commitments for Health data. Information from Apple Health, and the health information in your diary:

  • is never used for advertising, marketing or data mining;
  • is never sold, and never shared with or disclosed to third parties;
  • is never stored in iCloud by Aura, and never leaves your device unless you export or share it yourself.

The comparisons Aura makes with sleep and cycle data are calculated on your iPhone. You can change or withdraw Health access at any time in the Health app: tap your profile picture, then Privacy › Apps › Aura.

05Location and weather

Aura only uses your location if you tell it weather affects you. If you don’t, no weather lookup ever happens and Aura never asks for location permission.

If you do, Aura asks for location while using the app (never in the background) and uses it at three moments: when you log an attack, once a day for that day’s pressure, and — if you asked for pressure alerts — to fetch the forecast.

Each time, your approximate position is sent to Apple’s WeatherKit service for that single lookup. Apple processes that request under its own privacy policy; it isn’t sent to us or anyone else. Aura stores the pressure reading it gets back, not where you were.

You can turn weather off in Aura’s Settings, or revoke access in iOS Settings › Privacy & Security › Location Services › Aura.

06Notifications, Siri and widgets

Notifications are scheduled by the app on your iPhone. There is no push server. Aura sends at most three kinds, each of which can be turned off: one offer to add details after an attack ends, a heads-up when medication days approach the threshold, and — only if you asked for it — a warning before a big pressure drop.

Live Activities show a running attack on your Lock Screen and in the Dynamic Island. They’re drawn on your device; you can turn them off in iOS Settings › Aura.

Siri and Shortcuts. When you use a phrase like “Hey Siri, I have a migraine in Aura”, Apple processes your voice request under Apple’s own privacy policy and hands the action to Aura on your device.

07What we don’t do

  • We don’t run any server that receives your data, and we don’t create a user ID or device ID.
  • We don’t include analytics, advertising, attribution, crash-reporting or social SDKs, or any other third-party code.
  • We don’t track you across apps or websites, and Aura never shows the App Tracking Transparency prompt.
  • We don’t sell, rent, license or share your data, and we don’t use it to train machine-learning models.

One thing worth knowing: if you have chosen Share With App Developers in iOS Settings › Privacy & Security › Analytics & Improvements, Apple may pass us anonymous crash reports and usage statistics for Aura. That is Apple’s system, controlled by that switch, and it doesn’t include your diary.

08Sharing you choose

From the Report tab you can create a PDF report and a CSV of every field. Both are built on your iPhone. They only leave it when you send, save or print them yourself through the iOS share sheet — for example, emailing your neurologist.

Once you share a file, the copy is handled by whoever or whatever you shared it with (your email provider, your clinic, a cloud drive). Aura can’t see or delete those copies.

Importing a CSV from another diary app works the same way in reverse: the file is read on your iPhone and nothing is uploaded.

09Backups

Aura doesn’t sync your diary through iCloud or any other service. Like the data of any iPhone app, it is included in backups you make of your device — to iCloud Backup or to a computer — which are handled by Apple under your Apple Account. Health data follows the Health app’s own backup and sync settings.

That means restoring your iPhone from a backup brings your diary back. It also means that deleting data in Aura doesn’t remove it from backups you made earlier; see Deleting your data.

10Your choices and rights

Depending on where you live, laws such as the GDPR, the UK GDPR and US state privacy laws give you rights to access, correct, export and delete personal data. With Aura you can exercise all of them yourself, instantly, without asking anyone:

  • Access and export: Report tab › Build the PDF, or export the CSV.
  • Correct: every record is editable, including its times.
  • Delete one record: swipe it in History, or open it and choose Delete this record.
  • Delete everything: Settings › Erase everything. This also removes the Headache entries Aura wrote to Apple Health.
  • Withdraw permissions: Health, location and notifications can each be switched off at any time.

Because we don’t hold any of your data, a request sent to us can’t find anything to return or erase — but please do contact us with any question, and you can always complain to your local data-protection authority.

11Security

Aura’s database is stored inside the app’s protected container and encrypted by iOS data protection, which is tied to your iPhone’s passcode. Health data is stored and encrypted by the Health app. The only network request Aura itself makes is the optional, encrypted WeatherKit lookup to Apple.

The best thing you can do to protect your diary is to use a passcode and Face ID or Touch ID on your iPhone.

12Children

Aura is not directed at children under 13, and we don’t knowingly collect personal information from anyone — including children. If a young person uses Aura with a parent or carer, everything described here still applies: the diary stays on the device.

13This website

aura.ozar.io follows the same rules as the app:

  • No cookies, no analytics, no advertising and no tracking pixels.
  • Fonts, scripts and images are served from this site. It makes no requests to third parties.
  • If you turn on the site’s “attack mode”, that choice is remembered in your own browser’s local storage (under the key aura-mode). It never leaves your browser; clear your site data to remove it.
  • Like any website, our hosting provider may record standard server logs — such as IP address, the page requested, date and browser type — for a short period, to keep the site secure and running. We don’t use them to identify or profile anyone.

14Changes to this policy

If this policy changes, we’ll update the effective date at the top of this page, and describe the change in the app’s release notes.

If Aura ever started collecting any data — for example to add sync — the App Store privacy label, the in-app Privacy screen and this page would all change in the same release, and the app would ask you before anything was collected. Nothing would change silently.

15Contact

Questions about privacy, or about this policy? Email hello@ozar.io. We read every message. If you email us, we’ll use your address only to reply, and delete the conversation when it’s finished if you ask.

Effective 14 September 2026. Previous versions: none — this is the first.

Attack mode is on — this site is dimmed.