Overview
In this article, you will review what is required in your privacy policy by the Google/Apple Platforms.
Requirements
Google/Apple have several points that must be included in a privacy policy statement. Note: The App itself stores very limited user data on the platform. See the article: What user information is stored on the RecDesk Engage App?
-
Data Retention
- How long do you store/retain user data?
- App data referenced in the above article is store indefinitely.
- How do users request to delete their data from your App?
- See the above article for deletion steps. In your privacy policy you can reference that they can reach out to your organization in order to complete this request.
- How long do you store/retain user data?
-
Health and Fitness Data requirement - A version of the following text should be included in your privacy policy message. If this is not included it will likely result in your App being rejected when submitted to the platforms for your initial publication or future updates.
-
The app collects and processes limited health and fitness data only as necessary to provide core fitness and activity-tracking functionality.
Subject to user consent, this may include workout and activity information such as activity type, duration, distance, time, calories burned, step counts, and activity status obtained from system health platforms, including Google Health Connect on Android and Apple Health on iOS.
This data is used solely for displaying activity history, generating fitness insights, enabling in-app challenges, and supporting app functionality.
Health and fitness data is not used for advertising, marketing, or profiling, is not sold or shared with third parties, and access permissions may be reviewed or revoked at any time through device settings. The app does not collect or process sensitive health or medical information.
-
The app collects and processes limited health and fitness data only as necessary to provide core fitness and activity-tracking functionality.
-
App Name Reference
- Your privacy policy must include your App Name.
Privacy Policy Example:
App data is retained Indefinitely. Email our team to formally request App data deletion. Your app data will be deleted within 30 days, except where retention is required by law or for legitimate business purposes such as financial recordkeeping.
The Your App Name here App collects and processes limited health and fitness data only as necessary to provide core fitness and activity-tracking functionality.
Subject to user consent, this may include workout and activity information such as activity type, duration, distance, time, calories burned, step counts, and activity status obtained from system health platforms, including Google Health Connect on Android and Apple Health on iOS.
This data is used solely for displaying activity history, generating fitness insights, enabling in-app challenges, and supporting app functionality.
Health and fitness data is not used for advertising, marketing, or profiling, is not sold or shared with third parties, and access permissions may be reviewed or revoked at any time through device settings. The app does not collect or process sensitive health or medical information.
Steps For verifying your Privacy Policy URL
To verify the Privacy Policy URL:
- Login to the RecDesk Engage App cockpit.
- Click App Factory.
- From the list of Apps, click on your App Icon to open your submission record.
- Scroll down to the Privacy Notice URL field to verify where your text is currently pulling from.
Once you have verified the URL, review your Privacy Policy and ensure the message covers all of the requirements outlined above.
Steps for updating the Privacy Policy in Content Management
- In RecDesk Director, open and log into Content Management (CMS).
- Locate and open the Privacy Policy page (a subpage under App Privacy Policy).
- Edit the text box (found in the lower left of the text module).
- Edit and save.