Privacy Policy

CareKnit

CareKnit

Effective Date: September 23, 2026

Developer: M-PAX Group · App: CareKnit (iOS / iPadOS, Bundle ID net.m-pax.careknit)

CareKnit helps a family keep one shared record for an ageing relative’s day: medication logs, appointments, visits, handovers and essential documents. It is designed so that we, the developer, do not operate a server, do not create accounts, and do not receive your family’s care data.

Short version:

1. Data we (the developer) collect

We collect nothing automatically. CareKnit contains no third-party analytics, crash-reporting SDKs, advertising SDKs, session replay, or fingerprinting. We do not sell personal data and we do not share personal data with data brokers.

The only personal information we ever receive is what you choose to send us yourself, for example if you email [email protected] for support. We use such messages only to answer you, and we delete them on request.

2. Data you enter in the app — where it lives

Anything your circle records (care recipient name and reference notes, medications, schedules, dose logs, appointments, visits, handovers, documents, member display names) is stored in two places, both under your control:

Sync is offline-first: a log is saved on the device immediately (“Waiting to sync”) and uploaded to CloudKit when connectivity allows. Apple processes CloudKit and iCloud Drive data under your Apple services relationship and your iCloud storage quota — please see Apple’s Privacy Policy for Apple’s handling.

CategoryExamplesStored where
Care content you enterNames, notes, medications, logs, appointments, visits, handovers, document filesYour device + your iCloud (CloudKit shared zone). Never on a developer server.
Circle membershipMember display names, roles, CloudKit share participantsYour device + your iCloud shared zone. Apple is the access-control source of truth.
Device-private settingsReminder choices, quiet hours, appearance, onboarding progress, sync tokens, diagnostics you choose to copyYour device only. Never synced.
PurchasesSubscription status, product IDsApple App Store / StoreKit. The organiser’s device mirrors a short-lived entitlement lease into the shared zone so members can ride free; clients validate that the lease was written by the share owner.

3. Data minimisation

CareKnit deliberately does not ask for date of birth, NHS number, home address, precise location, contacts upload, HealthKit data, or photo-library access. Document import uses the system scanner / file picker / photo picker only. Medication records keep exactly the spelling your family typed — there is no drug database, interaction checker, or medical interpretation.

4. Device permissions

5. Sharing with family

Invitations use Apple’s system sharing sheet (Messages, Mail, WhatsApp, copy link). Joining requires an Apple ID signed into iCloud — no CareKnit account is created. Everyone in the circle can see updates attributed by display name (timeline snapshots preserve the name shown when the action occurred). Removed members lose future access; their historical attribution remains. Never share your invite link publicly.

6. Purchases & subscriptions

CareKnit offers one auto-renewable subscription group (“CareKnit Circle”) with annual and monthly options and a 14-day introductory trial (Apple eligibility applies). Payment, renewal, cancellation, and refunds are handled by Apple. Prices, trial eligibility, and renewal terms shown in the app come from the App Store. The organiser subscribes; invited relatives join free while the organiser’s entitlement lease is valid. If the subscription lapses, everyone keeps read, search, download, and export access — only new shared writes are blocked.

Use of the app is governed by Apple’s Standard Licensed Application End User License Agreement: https://www.apple.com/legal/internet-services/itunes/dev/stdeula/.

7. What we do NOT do

8. Apple privacy labels & manifest (for App Store review)

Our PrivacyInfo.xcprivacy declares no collected data types and no tracking. Required-reason APIs used: file timestamps (C617.1) and user defaults (CA92.1). App Privacy “Data Not Collected” applies to the developer; user-entered care content is stored by the user in Apple iCloud at the user’s direction and is not collected by the developer. Purchase handling is via Apple Commerce.

9. Retention, export & deletion (your control)

Because there is no developer account or database, privacy access/deletion requests are fulfilled by these in-app steps. If you need help, email us and we will walk you through them.

10. Security

Records are protected by iOS file protection and Apple’s CloudKit transport/storage protections. An optional Face ID / Touch ID app lock (off by default) covers the UI and background snapshots but does not additionally encrypt CloudKit records. Logs and diagnostics redact names, notes, filenames, CloudKit identifiers, and share URLs. Temporary export files are deleted after sharing or on next launch.

11. Medical & legal disclaimer

CareKnit is for recording and coordinating care. It does not provide medical advice, check medicines or doses, or replace professional care. Follow the instructions from the person’s GP, pharmacist or care team. CareKnit is not an emergency service. For urgent help, contact local emergency services.

The document checklist (“You may want to keep a copy here”) is for organisation only and is not legal or medical advice.

12. Children

CareKnit coordinates care for an ageing relative and is intended for adult family organisers and members. We do not knowingly collect children’s data as a developer; any names a family chooses to record are stored only on their devices / their iCloud as described above.

13. Changes to this policy

If privacy practices change (e.g. a future optional analytics feature), this page will be updated with a new effective date, and the app’s privacy manifest / App Privacy labels will be updated before release. Material changes will also be noted in release notes.

14. Contact

Developer: M-PAX Group.
Privacy / support: [email protected]
Support page: https://m-pax.net/careknit.html

If you are in the UK/EU and have a data-protection question, include “CareKnit privacy” in the subject line and we will respond. Since we hold no developer-side account data, most requests are resolved with the in-app export / leave / delete steps in section 9.