Marigold Privacy Policy
Effective date: September 15, 2026
Applies to: the Marigold — Perimenopause Tracker iPhone app ("Marigold" or "the app"), published by WALABOK LLC ("we", "us", "our").
The short version
Everything you log in Marigold stays on your iPhone. Marigold has no user accounts, no server, and no cloud database of your information. We cannot see your symptoms, your cycle, your notes, or your reports, and we never sell or share them. You can choose to share reports, exports, or backup files, and to store copies in Apple Health. Apple’s device backup and Health synchronization can also retain copies according to your Apple settings. We have no access to those copies. Limited advertising measurement is described separately below.
Marigold contains no advertising, no analytics trackers, and no third-party software kits. We measure our own ads on TikTok and Instagram using Apple's SKAdNetwork, which sends delayed, privacy-limited attribution postbacks to ad networks for campaign reporting. The signals describe acquisition and purchase milestones, never your health records; they contain no advertising identifier.
The rest of this policy explains that in full. If anything is unclear, write to us at walabokllc@gmail.com.
1. Who we are
Marigold is made and published by WALABOK LLC, a Texas limited liability company based in Missouri City, Texas, USA. For privacy questions or requests, contact us at walabokllc@gmail.com or by mail at the address in Section 16. We aim to answer within 30 days.
2. What Marigold stores, where, and for how long
Marigold is a self-report diary. Everything below is typed or tapped in by you, and it is stored only in the app's private storage on your iPhone:
• Symptom logs — which of fifteen perimenopause symptoms you logged each day, a severity from 0 to 4, and an optional note.
• Cycle days — period days and flow, from spotting to heavy.
• Menopause Rating Scale (MRS) check-ins — your answers and scores.
• Appointments — the date of a clinician visit, an optional note about the visit, and your optional post-visit notes and outcome.
• Treatments — the name, form (patch, gel, tablet, and so on), dose, start and end dates, and notes for treatments you choose to record.
• Custom trackers — anything you decide to track yourself, with the name you give it.
• Your personalization — the name you enter for your report, the perimenopause stage you selected during setup, the symptoms you chose to focus on, and your reminder and app-lock settings.
• "How did you hear about Marigold?" — if you answered this optional setup question, your answer is stored on the phone only. It is never transmitted to us or to anyone else.
How long we keep it: we keep none of your app data. Your data stays on your phone until you edit it, delete it, or delete the app. Nothing expires automatically, and we hold no copy.
Two more things worth knowing about "on your phone":
• Your device backup. If you back up your iPhone to iCloud or to a computer, Apple's backup includes Marigold's storage in the same way it includes every other app. That is Apple backing up your device under your Apple ID and Apple's terms — not a Marigold database, and we have no access to it. Marigold does not use CloudKit or any cloud sync of its own. Apple encrypts iCloud backups; if you want them end-to-end encrypted, turn on Advanced Data Protection in iOS Settings.
• Deleting the app. Removing Marigold from your phone removes everything stored in Marigold itself. It does not remove the copies Marigold saved into Apple Health (Section 3) or any backup of your phone you have made. To remove the Apple Health copies, use "Delete all my data" in Marigold's Settings before you uninstall, or in the Health app choose Marigold and delete its data. If you want to keep your history, save a backup from Settings first (Section 5).
3. Apple Health
Connecting to Apple Health is optional. Marigold works fully without it. You can decline during setup and connect later in Settings → Apple Health; to change or withdraw permissions, use the Health app (Health → your picture → Privacy → Apps & Services → Marigold).
If you allow it, Marigold reads from and writes to the following Apple Health categories, and no others. The technical name in the second column is Apple's identifier for each type.
| What you log in Marigold | Apple Health category — technical name |
|---|---|
| Hot flashes | Hot Flashes — HKCategoryTypeIdentifierHotFlashes |
| Night sweats | Night Sweats — HKCategoryTypeIdentifierNightSweats |
| Sleep problems | Sleep Changes — HKCategoryTypeIdentifierSleepChanges |
| Heart palpitations | Rapid, Pounding or Fluttering Heartbeat — HKCategoryTypeIdentifierRapidPoundingOrFlutteringHeartbeat |
| Joint & muscle aches | Generalized Body Ache — HKCategoryTypeIdentifierGeneralizedBodyAche |
| Low mood | Mood Changes — HKCategoryTypeIdentifierMoodChanges |
| Exhaustion | Fatigue — HKCategoryTypeIdentifierFatigue |
| Bladder issues | Bladder Incontinence — HKCategoryTypeIdentifierBladderIncontinence |
| Vaginal dryness | Vaginal Dryness — HKCategoryTypeIdentifierVaginalDryness |
| Brain fog | Memory Lapse — HKCategoryTypeIdentifierMemoryLapse |
| Headache | Headache — HKCategoryTypeIdentifierHeadache |
| Bloating | Bloating — HKCategoryTypeIdentifierBloating |
| Period days and flow | Menstrual Flow — HKCategoryTypeIdentifierMenstrualFlow |
Three symptoms — irritability, anxiety, and sexual discomfort — have no matching Apple Health category and are kept in Marigold only.
Why we write: so your logs live in one place, under your control, in Apple Health.
Why we read: so "Rebuild my logs from Apple Health" can restore entries Marigold previously saved there — for example after you reinstall the app. Marigold reads back only samples that Marigold itself wrote; it does not import entries created by other apps or devices.
What we never do with Health data. Health data is used only for the two purposes above. It is never used for advertising, marketing, or analytics; never disclosed to a third party; never sold; and never used to build a profile of you or to make decisions about you. Apart from the diary entries that "Rebuild my logs" restores at your request, Marigold keeps no copy of anything it reads from Apple Health, and it never sends Apple Health data to iCloud or to any server. (Your own diary entries are part of Apple's device backup only if you have iCloud Backup on — see Section 2.) This is consistent with Apple's HealthKit rules, which we follow.
A note on permissions. You choose, category by category, what Marigold may write and read. Apple deliberately does not tell apps whether *read* permission was granted, so Marigold can only ever show you the status of what it is allowed to *write*. "Delete all my data" in Marigold also asks Apple Health to remove the copies Marigold saved there.
4. Face ID, reminders, and other device features
• App lock. If you turn on app lock, Marigold uses Face ID, Touch ID, or your passcode through Apple's system each time you open the app. Marigold never sees your face or fingerprint; Apple only tells the app whether the check succeeded.
• Reminders. The daily logging reminder and appointment reminders are local notifications scheduled on your phone; they do not pass through any server. Turn the daily reminder off in Settings → Reminders. Appointment reminders are scheduled when you set an appointment and stop when you remove it; if you typed a note on the appointment, that note appears in the reminder, so it may show on your lock screen. You can silence all Marigold notifications in iOS Settings → Notifications.
• Haptics are handled entirely on the device.
5. Reports, exports, and backups — the data you choose to share
Marigold can produce three kinds of files, each only when you ask for it:
• Doctor report (PDF) — a summary of your symptoms, cycle, MRS scores, treatments, and custom trackers for a date range, with the name you entered for the report.
• Export (CSV) — a spreadsheet of your symptom severities, cycle days, MRS totals, appointments, treatments, and tracker values, plus your name, stage, focus symptoms, and your "how did you hear about us" answer if you gave one. The CSV includes the note you attached to each appointment; symptom notes, treatment notes, post-visit notes, and individual MRS answers are in the backup file rather than the CSV.
• Backup file — a complete copy of your Marigold data for restoring later.
When you create one, iOS shows the standard share sheet and you decide where it goes — AirDrop, Messages, Mail, Files, a printer, iCloud Drive, or another app. These files contain your health information, so treat them as you would any medical document. Once a file is shared, it is governed by wherever you sent it, and Marigold has no further control over it. Marigold never uploads anything on its own.
6. Purchases
Marigold Plus is sold through Apple's App Store and billed to your Apple ID. Apple processes the payment; we never receive your name, card number, or billing address. Apple provides us with aggregated sales and subscription reports that do not identify you. To manage or cancel a subscription, use iOS Settings → [your name] → Subscriptions.
7. How we measure our advertising
We advertise Marigold on TikTok and on Instagram and Facebook, and we need to know which ads work. We do this with SKAdNetwork, Apple's privacy-preserving attribution system, rather than the ad platforms' own software kits.
Here is exactly what that means:
• Marigold contains no Meta SDK, no TikTok SDK, and no third-party attribution kit.
• Marigold never reads or sends your Advertising Identifier (IDFA) and never asks for App Tracking Transparency permission, because it does no tracking.
• Apple's SKAdNetwork may send the ad network delayed attribution postbacks. Ad networks combine them into campaign reports. Depending on Apple's privacy thresholds and the measurement window, milestone details may be a fine value, a coarse low/medium/high value, or omitted.
• Marigold supplies only these seven cumulative acquisition milestones: installed, finished setup, saw the Plus offer, started a free trial, subscribed monthly, subscribed annually, or bought the lifetime unlock. These are limited app-usage and purchase signals; they are not a record of your health activity.
• Symptoms, cycle entries, treatments, notes, reports, Apple Health records, and your setup answers are never included. Marigold does not provide an advertising identifier or another user or device identifier to ad platforms.
• A marker on your phone remembers the highest acquisition milestone observed. The app retries failed submissions and refreshes that value when you return so Apple can apply its measurement windows. It does not close a window early after a purchase. The marker contains no diary entries and is retained when you delete your health records; deleting the app removes its local copy.
If you told us how you found Marigold during setup, that answer stays on your phone and is not part of ad measurement. If you tapped one of our ads on TikTok, Instagram, or Facebook, that platform's own collection of your activity on *its* service is governed by its privacy policy, not ours.
8. When you contact us
The one way we can receive information from you is if you write to us. If you email walabokllc@gmail.com, we receive your email address, whatever you write, and any file you attach. That correspondence is stored in our Google (Gmail) account under Google's terms, is used only to answer you, is never combined with anything in the app (we have no way to do that), and is deleted within 12 months after the matter is closed. Please don't email us your health details — we don't need them to help you, and we will never ask for them to verify a request.
9. What we do not do
• No accounts, sign-in, or phone number required. We receive an email address only if you choose to write to us.
• No server of our own; nothing is uploaded automatically.
• No analytics, crash-reporting, or advertising software kits of any kind.
• No ads inside the app.
• No sale of personal data, and no "sharing" of it for cross-context behavioral advertising (showing you ads based on what you did in other apps), as those terms are defined in US state privacy laws. We have never sold personal data and do not intend to.
• No location collection, and no geofencing (no tracking of when you are near a particular place).
• No profiling and no automated decisions about you.
One thing Apple may do independently of us: if you have turned on "Share with App Developers" in iOS Settings → Privacy & Security → Analytics & Improvements, Apple may send us aggregated, de-identified crash and usage statistics for the app. This is controlled entirely by you in iOS settings, comes from Apple under Apple's privacy terms, and never includes what you logged in Marigold.
10. Your rights and how to use them
Because your data is on your phone and not on our systems, you can exercise every right directly, immediately, and without asking us:
• Access and portability — Settings → Export my data (CSV), or create a backup file.
• Correction — day-by-day logs from the past week can be edited from the calendar; older daily logs are locked so your record stays contemporaneous, which is what makes it credible to a clinician. Treatments, appointments, trackers, the notes on them, and your personalization can be edited at any time.
• Deletion — Settings → Delete all my data removes every entry, your name, stage, focus symptoms, and setup answer, and asks Apple Health to remove the copies Marigold saved there. Reminder and app-lock settings are kept until you change them.
• Withdraw Apple Health permissions — in the Health app at any time.
• Withdraw reminder permissions — in iOS Settings → Notifications.
If you write to us with a privacy request, we will explain how to do the above and confirm that we hold no copy of your data. Because we hold nothing that identifies you (other than an email you may have sent us, which we will delete on request), we cannot retrieve, correct, or delete anything in the app on your behalf. We will not discriminate against you for exercising any privacy right. If we decline a request, we will tell you why within 45 days, and you may appeal by replying to our response; we will answer the appeal in writing within 45 days. If we deny your appeal, we will tell you how to submit a complaint to the Attorney General of your state (for Washington residents: atg.wa.gov).
11. Consumer health data notice (Washington, Nevada, Connecticut, and similar laws)
This section is provided for residents of states with consumer health data laws, including Washington's My Health My Data Act. It repeats, in the form those laws require, what this policy already says. Our position is that data processed only on your own device, which we never receive, is not "collected" by us at all; we provide this notice anyway, because the fact that you use a perimenopause app is itself information about your health, and you should see exactly how it is handled.
• Categories of consumer health data processed on your device: self-reported perimenopause and menopause symptoms and severities; menstrual cycle information; Menopause Rating Scale responses; treatment and medication information you enter; appointment notes; custom health-related trackers you create; menopause stage; and, if you allow it, the same categories written to or read from Apple Health.
• Purposes: to store and display your diary, calendar, insights, and assessments on your device; to generate reports, exports, and backups when you ask; and, with your permission, to keep Apple Health in sync. No other purpose.
• Sources: you. If you connect Apple Health, samples Marigold previously wrote there.
• Health records shared automatically with us or ad platforms: none. Apple’s SKAdNetwork provides limited acquisition and purchase signals about this app to ad networks as described in Section 7. Those signals can indicate installation or purchase of a perimenopause app, but contain no diary or Apple Health records. Reports and exports you share, optional Apple Health storage, device backups, and support messages are described separately above.
• Affiliates and third parties with whom consumer health data is shared: none. (Google hosts our email if you choose to write to us — Section 8.)
• Sale of consumer health data: none, ever. We do not sell consumer health data and would require your separate, signed authorization to do so under Washington law.
• Geofencing: none. Marigold does not collect location and does not use geofences.
• How to exercise your rights (access, withdraw consent, delete) and appeal: see Section 10. Contact: walabokllc@gmail.com.
12. Children
Marigold is for adults. Our Terms of Use require users to be 18 or older. We do not knowingly collect personal information from anyone, and in particular not from children under 13 (or the higher age your local law sets). If a child has used the app, "Delete all my data" removes everything stored in Marigold.
13. Users outside the United States
Marigold is offered from the United States, and we provide this policy to all users wherever they are. Our position is that WALABOK does not process your personal data at all: the app processes it on your device, under your control, and we never receive it, so there is no international transfer of your data by us. If a law nonetheless treats us as a controller (the company legally responsible for your data), our basis for processing is your explicit consent, which you give when you enter health information into the app and when you connect Apple Health, and which you can withdraw at any time by deleting the data or the app. Every right of access, correction, portability, erasure, and objection can be exercised as described in Section 10. Residents of the European Economic Area and the United Kingdom also have the right to lodge a complaint with their local data-protection authority.
14. Security
Your data is protected by your iPhone's built-in encryption and by the passcode, Face ID, or Touch ID you have set on the device. Marigold adds an optional app lock. Files you export are protected only by where you choose to keep them. No method of storage is perfectly secure, and the strongest protection Marigold offers is architectural: there is no central database of your information to breach.
15. Changes to this policy
We re-check every statement in this policy against the app before each release. If we change how Marigold handles your information — for example, if a future version ever adds cloud sync — we will update this policy, change the effective date at the top, and, for any change that would let data leave your phone, ask for your consent inside the app before it happens. Continuing to use the app after a change that does not require consent means you accept the updated policy.
16. Contact
WALABOK LLC
10931 Providence Ct, Missouri City, TX 77459
walabokllc@gmail.com
*Marigold supports your wellbeing and is not a medical device. It does not diagnose, treat, or prevent any condition. Always consult a qualified clinician.*