Me+ADHD is a task planner for ADHD brains. Almost everything it knows about you stays on your phone. This page says exactly what leaves the device, what triggers it, and who receives it — in the same plain terms the app itself uses.
- Your tasks, notes, photos, saved addresses and settings are stored on your device.
- Nothing is sent anywhere until you use a feature that needs it.
- One feature — arrival reminders — uses location in the background. It is off until you turn it on, and even then the check runs on your phone.
- There are no adverts, no advertising identifiers, no third-party analytics or tracking SDKs, and nothing is sold or shared with data brokers.
- You do not need an account to use the app.
Who we are
This policy is published by LR Development ("we", "us"), the developer of Me+ADHD for iOS and Android. For anything on this page, including a request to delete your data, write to liam.rothwell1@gmail.com.
What stays on your device
The following never leaves your phone unless a section further down says otherwise. It is held in the app's own private storage, which only Me+ADHD can read, and it is removed when you uninstall the app.
- Tasks, subtasks, notes, categories, durations and due dates
- Before-and-after task photos
- Saved places and the addresses you type for Home, Work and anywhere else
- Biological anchors, hydration, streaks, sparks, levels and badges
- Mood and mind-state entries, habit-breaker records, emotion reality checks
- Your name, your settings and your work schedule
- Calendar and Reminders content, which is read from Apple Calendar / Google Calendar on the device and is not copied to any server by us
Your AI key, if you add one, is held in the iOS Keychain or Android EncryptedSharedPreferences — never in ordinary app settings.
What leaves the device, and when
Four services, each triggered by something you do. Nothing here runs in the background, and none of it happens on first launch.
| Who receives it | What is sent | When |
|---|---|---|
| Google (Gemini API) generativelanguage.googleapis.com |
The text of your message to Sparky. If you ask it to comment on your day, that also includes that day's task titles, the titles of today's calendar events, and a summary line of your settings. If location is on, it includes place roles ("Home", "Work"), the name of your locality, and distances — never your address or exact coordinates. | Only when you send a message to Sparky, ask for a task breakdown, scan a list, or press "Plan my day". |
| Open-Meteo api.open-meteo.com |
A latitude and longitude rounded to two decimal places — about a kilometre of precision. Nothing else: no identifier, no account, no key. | Only when you have turned location on and the app is fetching the forecast Sparky quotes. |
| OSRM (Android only) router.project-osrm.org |
Two coordinate pairs — where you are and where the errand is — to estimate driving time. | Only when location is on and a nearby errand is being evaluated. |
| Supabase (our backend) yqbkcmctqdalvhablwcm.supabase.co |
See "Accountability buddies" below. Nothing at all unless you turn that feature on. | Only after you opt in to buddies. |
About the AI
Sparky tries an on-device model first where your phone supports one (Apple Foundation Models on iOS, ML Kit Gemini Nano on Android). Requests handled on device do not leave your phone at all. When it falls back to the cloud, the request goes to Google's Gemini API under Google's privacy policy. You can supply your own Google AI key in settings, in which case requests are billed to and governed by your own Google account.
We do not train any model on your data, and we do not keep a copy of your prompts or replies on our servers — the conversation lives on your device.
Accountability buddies Off until you turn it on
The social features — buddies, messages, high fives, the leaderboard — are the only part of Me+ADHD with a server behind it, and they do nothing until you opt in. Sign-in is anonymous: we never ask for your email address, phone number or a password, and the account is not linked to your real identity.
When you use them, these are stored on our Supabase backend:
- Your display name, chosen username and avatar emoji
- Your streak, spark totals and today's focus goal — each of which has its own switch, and each of which you can keep private
- Which buddies you are connected to, and requests between you
- Messages, nudges and high fives you send, so the recipient can read them
- A last-active timestamp
Your buddies never see your task titles, notes, photos, calendar or location. Those are never uploaded. If you enable the global leaderboard, your display name and spark total are visible to other users of the app; it is off by default.
Turning a share off deletes what was already shared, rather than hiding it — a switch that reads "off" over data still sitting on a server would be the app lying to you.
Permissions, and what each one is for
- Location — surfacing errands when you are near the shop, telling Home from Work, and the local forecast. Requested as "while using the app" unless you switch on arrival reminders, which is the one feature that needs background location. See below.
- Calendar / Reminders — reading today's events so tasks are planned around them. Read-only unless you switch on Reminders sync.
- Camera — scanning a handwritten list, and before-and-after photos. Images are processed for text and stored on your device.
- Microphone / speech — voice brain dump and dictation. Audio is handed to the operating system's own speech recognition (Apple's on iOS, Google's on Android), which on both platforms may process it on the provider's servers rather than on the phone. We never receive, record, store or upload the audio — only the text it returns, which then goes into a task on your device. The microphone stops the moment you send the message, leave the screen or background the app.
- Notifications — anchor reminders and check-ins. Every category can be switched off separately, and quiet hours come from the bedtime you set.
Every permission is optional. Decline any of them and the rest of the app still works.
Arrival reminders Off until you turn it on
Arrival reminders are the only part of Me+ADHD that uses your location while the app is closed. With them on, your phone watches a short list of circles — the places you saved, such as home, work and a particular shop — and when you arrive at one, the app checks whether any of your tasks belong there and tells you.
That check happens entirely on your phone. No coordinate, no arrival and no task is uploaded as part of it. The operating system tells the app "you entered this circle"; the app reads your own task list and posts a notification. If nothing relevant is waiting, nothing is shown.
- It is off by default. Turning it on is what triggers the permission request — iOS asks for "Always", Android for "Allow all the time".
- Turning it off removes every watched place immediately.
- Declining the permission does not break anything else: the app still notices places while it is open, and says so rather than pretending the feature is running.
- We are not tracking your movements. The app is told about arrivals at places you saved, not about where you go, and it keeps no history of them.
Children
Me+ADHD is not directed at children under 13, and we do not knowingly collect data from them. If you believe a child has provided us data, write to us and we will delete it.
Your data, and how to remove it
- Delete everything on the server: Settings → Accountability & Profile → delete your cloud account. This wipes your profile, buddy connections, messages, nudges and leaderboard record from Supabase, and clears the stored session from your device. It is immediate and cannot be undone.
- Delete everything on the device: uninstall the app. Nothing is retained.
- Access, correction, portability or a complaint: write to liam.rothwell1@gmail.com. Under the UK GDPR and EU GDPR you may also complain to your data protection authority — in the UK, the ICO.
We keep buddy data only while you have the feature switched on. Delete your cloud account and it is removed at once, rather than kept for a retention window.
Our legal basis for processing buddy data is your consent, given by turning the feature on and withdrawable at any time by turning it off or deleting the account.
Security
Traffic to every service above uses HTTPS. Buddy data is protected by row-level security, so one account cannot read another's rows. Keys and session tokens are held in the iOS Keychain or Android EncryptedSharedPreferences. No system is perfectly secure, which is a reason the app keeps as much as possible off any server at all.
App stores
Apple and Google collect their own installation, crash and usage statistics for apps distributed through the App Store, TestFlight and Google Play. That collection is theirs, governed by Apple's and Google's policies, and is separate from anything described here.
Changes
If what the app sends ever changes, this page changes in the same release — the date at the top is the one to check. Material changes will also be noted in the app's release notes.
Me+ADHD is a productivity and behavioural wellness tool. It is not a medical device and does not provide diagnosis, therapy or crisis care, and nothing you enter is treated as clinical health information by us. If you are in crisis, contact your local emergency services.