Legal

Privacy Policy

Last updated: August 1, 2026

Who this policy covers

LifePilot is an independent application created and operated by Tommaso Sacco. This policy applies to the LifePilot iOS app and the getlifepilot.org website. For questions about who operates LifePilot, contact lifepilot.info@gmail.com.

Account and authentication

Authentication is handled through Firebase Authentication and supported sign-in providers, which may include signing in with an email address, Google Sign-In, or Sign in with Apple. LifePilot does not have access to or store passwords in readable form. Depending on how you sign in, your account may be associated with an account identifier, a display name, and an email address.

Goals, plans and other content you create

LifePilot lets you enter or generate goals, descriptions, tasks, plans, progress updates, diary-style entries, and answers you provide while setting up a plan. This content may include images you choose to select. These items can be associated with your account and stored so the app can provide the service, including generating and adapting your plan. Please avoid entering highly sensitive information that is not necessary for the app to work.

AI-generated plans

Selected goal information may be sent to an AI service provider when necessary to generate, improve or adapt a plan. The provider used for this is documented internally and is being confirmed for inclusion here; see the contact section below if you have questions about this processing.

Firebase services

LifePilot uses several Firebase services provided by Google: Firebase Authentication for sign-in, Cloud Firestore and Firebase Storage for storing account data, goals, tasks, plans, progress, and any images you choose to store with your account, and Firebase App Check to help protect our backend services from unauthorized or fraudulent requests. App Check is a security measure, not an analytics tool.

Firebase Analytics

LifePilot uses Firebase Analytics to understand which screens and features are used, general interaction patterns, and technical information about the app and device. This data can be associated with an app or device identifier and is not fully anonymous. It is used to understand usage and improve the product, not for behavioral advertising.

PostHog

The website and app use PostHog (EU-hosted) to understand feature usage, screens visited, and App Store click-through. Website analytics respect the Do Not Track browser signal — if enabled, no analytics script loads on the website, and profiles are only created for identified users, not anonymous visitors. PostHog events are generally limited to usage and interaction data; the content of your goals is not intended to be sent to PostHog as event data.

Firebase Crashlytics

If LifePilot crashes or encounters an error, Firebase Crashlytics may collect crash reports, stack traces, and technical information such as device model, operating system version, and app version. This is used to diagnose errors and improve app stability and security.

Firebase Messaging and notifications

LifePilot may use Firebase Messaging to deliver notifications, which involves a notification token and the technical information needed to deliver it. LifePilot also uses local notifications generated on your device for reminders and app features. Notifications are used for reminders and product functionality, not promotional messaging. You can disable notifications at any time from your iOS device settings.

Calendar sync

If you choose to sync LifePilot with Apple Calendar, access to your calendar is requested and used only after you authorize it, for the purpose of adding planned actions you choose to sync.

Images

If you select images within the app, LifePilot only accesses the specific images you choose, not your entire photo library, and only after you grant permission. Selected images may be stored using Firebase Storage as part of your account content.

Subscriptions and purchases

Pro subscriptions are purchased and processed entirely through Apple's App Store. LifePilot does not receive or store your card details. RevenueCat is used to manage subscription status, purchase history, entitlements, and the technical information needed to verify access to Pro features, using an identifier tied to your installation or account. Refunds and cancellations are handled through your Apple account, following Apple's own policies.

How data is used

To provide the core planning functionality, to keep your account secure, to manage your subscription, and to understand which features are used so the product can be improved. We do not sell personal data.

Data retention

We retain personal data only for as long as reasonably necessary to provide LifePilot, maintain account records, comply with applicable obligations and resolve disputes.

Your rights

Depending on your location, you may have rights to access, correct, delete, restrict or object to the processing of your data, request portability where applicable, withdraw consent where applicable, and lodge a complaint with the competent supervisory authority. You can exercise these rights by contacting lifepilot.info@gmail.com.

Deleting your account

You can request account deletion by contacting lifepilot.info@gmail.com. We will delete the account data associated with your request, except where certain information may need to be retained for legal, security or record-keeping obligations.

Children

LifePilot is not directed at children under 13, and we do not knowingly collect data from them.

Changes to this policy

This policy may be updated to reflect changes to LifePilot, its providers or applicable requirements. If this policy changes, the "Last updated" date above will be revised.

Contact

Questions about this policy: lifepilot.info@gmail.com.