Privacy Policy (iOS)

Last updated: August 6, 2026

This Privacy Policy describes how the iOS Regain App (“Regain,” “the app,” “we,” “us,” or “our”) handles information when you install and use it on an Apple device. The Android version of Regain is covered by a separate Privacy Policy (Android).

1. General information

The data controller for this app is EpowerX Labs Private Limited, a private limited company registered in India with its registered office at Plot No. 77, JBR Tech Park, 6th Rd, Whitefield, EPIP Zone, Bengaluru, Karnataka 560066, India. EpowerX Labs Private Limited is the GDPR controller for any personal data processed in connection with this app.

For privacy, GDPR, or CCPA queries, contact privacy@regainapp.ai. For general support, contact help@regainapp.ai.

2. What the app does on iOS

Regain is an iOS focus app. The blocking feature uses Apple’s Screen Time API. The app does NOT require an account for core functionality. Signing in with Apple or Google is offered as an optional convenience — it links your Regain Pro subscription across your devices; see Section 4 (“Account authentication”) for what is collected only when you sign in. Regain also records anonymous product-usage events only if you opt in on first launch — see Section 4 (“Optional usage analytics”) for the full inventory and Section 5 for how to withdraw consent. Regain uses privacy-preserving ad-measurement SDKs (Meta App Events, Firebase Analytics, and Google Ads on-device conversion) as described in Section 4 (“Ad-measurement partners”); no Advertising Identifier (IDFA) is ever collected and the app never shows the AppTrackingTransparency prompt.

3. Screen Time API disclosure

Regain uses Apple's Screen Time technology (FamilyControls, DeviceActivity, and ManagedSettings frameworks) to block distracting apps and websites. This technology does not provide Regain or EpowerX Labs with the ability to read, collect, or modify the list of apps installed on the user’s device. The apps selected for blocking are identified by opaque tokens generated by Apple and stored on-device inside the app’s App Group (group.ai.regainapp.shared); these opaque tokens cannot be used by Regain, EpowerX Labs, or any third party to discover the name or identity of the apps.

4. Information collected on iOS

The following enumerates exactly what data is associated with the iOS app, and who is responsible for collecting each category. Most categories are collected by Apple or by RevenueCat (a third-party processor) rather than by Regain as a controller. Optional usage-analytics events, if you opt in, are received on Regain’s own self-hosted infrastructure — see Section 7 for the data-processor list and Section 14 for the CCPA categories.

5. Withdrawing or granting analytics consent

The consent alert shown at first launch is the initial opt-in gate. You can change your answer at any time from Settings → Privacy Corner in the app.

6. What the app does NOT collect on iOS

Explicit negative inventory — the iOS Regain app does NOT collect any of the following:

7. Data processors (third-party services we transmit data to)

Regain transmits data to the following third-party processors. Optional usage-analytics events (Section 4) additionally go to Regain’s own self-hosted infrastructure in the EU (not a third-party):

8. Open-source libraries (no data transmission to third parties)

The following open-source libraries execute on-device only. They are listed for transparency, not because they introduce a data-sharing relationship:

The following third-party SDKs do transmit data over the network — they are covered by the Section 7 processor list above and are only active after you grant the relevant consent:

9. Subscriptions and purchases

iOS subscriptions and in-app purchases are managed by Apple’s App Store. You can cancel a subscription at any time via Apple ID Settings: https://apps.apple.com/account/subscriptions. To request a refund for an iOS purchase, visit Apple’s Report a Problem page: https://reportaproblem.apple.com. EpowerX Labs does not handle iOS payments and cannot issue refunds for iOS purchases directly.

10. Data retention

Local data (focus sessions, app-block tokens, settings) persists for the lifetime of the install on-device and is deleted automatically when the app is uninstalled. RevenueCat retains subscription data per its own policy linked in Section 7. Optional usage-analytics events are retained on Regain’s self-hosted infrastructure for up to 24 months, after which raw event rows are purged. Server access logs are retained for 30 days.

11. Security

All network traffic (RevenueCat API calls, image fetches, and analytics events when consented) is encrypted via TLS. On-device data is protected by the iOS app sandbox and App Group access control. Because there is no server-side user account, there is no password storage or authentication-credential risk for Regain to manage.

12. Children’s privacy (COPPA)

Regain is rated 4+ in the App Store age rating. The app does not knowingly collect data from children under 13. Signing in with Apple or Google is optional; users who do not sign in provide no identifiable data. Users who do sign in must be old enough to have an Apple ID or Google account, per those providers’ own age policies.

13. Rights of data subjects (GDPR)

If you are located in the European Economic Area, the United Kingdom, or Switzerland, you have the following rights under the General Data Protection Regulation:

Because Regain itself does not collect any personally identifying data directly (RevenueCat-collected data is governed by RevenueCat’s own policy linked in Section 7; optional usage-analytics events are anonymous per Section 4), most of these rights are inapplicable to data Regain itself holds. The policy nonetheless enumerates all six rights explicitly. To exercise any of them, contact privacy@regainapp.ai.

14. California residents (CCPA)

Categories of personal information Regain may collect directly:

You have the right under the CCPA to know what personal information is collected, to request deletion (Settings → Delete Account provides in-app deletion of all server-side account data), and to opt out of the sale or sharing of personal information for advertising purposes.

Sale / sharing disclosure. Regain does not sell personal information for monetary consideration. However, under the CCPA’s broad definition of “sharing” for cross-context behavioral advertising, the pseudonymous ad-measurement events transmitted to Meta and Google (Section 4, “Ad-measurement partners”) may qualify as sharing even though no IDFA and no direct identifier is included. To opt out, withdraw analytics consent in Settings → Privacy Corner. Once analytics consent is withdrawn, no events reach Meta or Google.

For CCPA queries, contact privacy@regainapp.ai.

15. International data transfers

RevenueCat, Apple, Google, and Meta operate in the United States. Standard Contractual Clauses apply to data transferred from EU users to each of these processors (see each processor’s privacy policy linked in Section 7 for details). Regain’s origin server logs and self-hosted analytics infrastructure are both located at Hetzner data centers in Helsinki, EU.

16. Changes to this policy

Updated versions of this Privacy Policy are posted at the same URL; the “Last updated” date at the top of the page reflects the most recent change. Material changes are communicated via an in-app notice on the next launch.

17. Contact

For privacy and GDPR/CCPA queries: privacy@regainapp.ai.

For general support: help@regainapp.ai.

Postal address: EpowerX Labs Private Limited, Plot No. 77, JBR Tech Park, 6th Rd, Whitefield, EPIP Zone, Bengaluru, Karnataka 560066, India.