Second Spring is operated by Ardenholt LLC. For a product like this one, privacy is not a policy section — it is the architecture. This page describes what little we collect, and what we never receive at all.
Your log: we never have it
Everything you put into the Second Spring app — symptoms, cycles, sleep, notes, and the patterns between them — is stored only on your device, encrypted at rest, behind your device passcode and Face ID / Touch ID. There is no Second Spring account, no cloud sync, and no server that holds a copy. We cannot read, recover, export, or hand over your log, because it never touches infrastructure we operate. If you export or print your log, the copy goes where you choose, under your control.
What we do collect
- Email address — only if you join the waitlist on this website. Used to email you about Second Spring and nothing else. This is the only personal data our servers hold.
- Payment information — purchases are handled by the App Store (Apple) or Stripe. We never see or store your card number.
- Standard server logs for this website — IP address, user-agent, request paths, retained ≤30 days for security and debugging.
What we don't do
- No analytics SDKs, ad SDKs, or trackers inside the app.
- No selling, renting, or sharing of personal data. Ever.
- No reading of the symptom check on this site — it runs entirely in your browser; your answers are never transmitted.
- No sharing with advertisers, data brokers, or anyone else — health data never leaves your device.
What happens if we shut down
Nothing, for your log. The app works offline and does not depend on our servers. Your data outlives us by design.
Your rights
Ask us to delete your waitlist email anytime at [email protected] and we will, promptly. For your log, deletion is in your hands — remove the app or wipe the log in Settings; there is no server copy for us to delete.
Changes
If this policy changes, we'll update this page and the effective date. We won't weaken the on-device promise — it is the product.