Metriweave & your information
Privacy policy.
How Metriweave handles your information.
Privacy contact
info@boxcue.comMetriweave is a private health-data visualization app for iPhone, iPad, Apple Watch, and Apple widgets operated by Boxcue Technologies LLC (“Boxcue,” “we,” “us,” or “our”). This Privacy Policy explains how Boxcue handles information when you use Metriweave.
Summary
- Metriweave reads only the Apple Health and Health Records information that you choose to allow.
- Metriweave is read-only: it does not write, modify, or delete your Apple Health records.
- Your health information is processed on your Apple devices to create dashboards, charts, trend views, widgets, Watch summaries, and Health Report PDFs that you request.
- Metriweave does not sell health information, use it for advertising or marketing, disclose it to data brokers, or use third-party advertising or analytics SDKs.
- Metriweave has no user account and no server-side database for health or clinical data.
- Health Reports are generated on your device. Boxcue does not receive a copy, and Metriweave does not keep a report history or upload reports to an app-managed cloud service.
- A Health Report can include a name that you enter manually and, if you choose, a date of birth from Apple Health or manual entry. Both fields are excluded by default. Selected fields appear on the PDF; Metriweave retains the inputs only for the report session.
- If you explicitly save a report setup, Metriweave stores the setup name you choose, its configuration, and creation and modification timestamps in an encrypted, backup-excluded file on that device. It does not copy the report’s patient identity fields, HealthKit readings, clinical records, generated reports, or Apple Intelligence explanations into the setup. Saved setups are not synced through Metriweave’s iCloud storage.
- Metriweave keeps its report PDF only as a protected, backup-excluded temporary file for preview, printing, or saving. Printing or saving creates a copy outside Metriweave that is controlled by the printer or Files location you choose.
- If iCloud Key-Value Storage is available, Metriweave may sync app preferences only—not HealthKit samples, clinical records, Health authorization decisions, or widget summaries.
- If you allow access to workout routes, Metriweave reads their location points only to draw workout maps. Metriweave does not persist route points or send them to Boxcue, analytics, iCloud, support, or Apple Intelligence. Apple’s MapKit framework supplies the background map and may process map requests under Apple’s privacy terms.
- Life Events that you add are encrypted and stored only on your device. Their content is not synced to iCloud, widgets, Apple Watch, Metriweave servers, analytics, or support messages.
- When you choose an Apple Intelligence explanation, Metriweave supplies bounded context from the metric you are viewing to Apple’s on-device model. For each question, if you explicitly ask about another metric in your recorded data, Explain may temporarily load one additional Apple Health metric that was already included in a completed Metriweave Health access request and include a bounded summary for the displayed period. Explain does not request new Health access, browse websites, or fetch external resources. Your question, the health context, and the generated response are not sent to Boxcue or a Metriweave server or stored as persistent chat history. After you close Explain, at most one chat remains only in app memory and is eligible to resume for 15 minutes, as described in Section 3.
- If you choose to contact support in the app, Metriweave sends only the information you enter and any optional technical information you choose to include. Health data is never attached automatically.
Browse the policy
SECTION 01Information Metriweave accesses
With your permission, Metriweave may read the health, fitness, wellness, and clinical record information available through Apple Health and Apple Health Records that is needed for the metrics you select. Depending on your choices and the information present in Apple Health, this can include activity, workouts, optional workout route location points, mobility, exercise, sleep, mindfulness, heart and respiratory measurements, vital signs, body measurements, nutrition, hydration, reproductive and menstrual-cycle information, laboratory results, medications, conditions, allergies, procedures, immunizations, and other clinical Health Records.
Clinical Health Records and their underlying raw FHIR resources are processed on your Apple devices. Metriweave does not automatically send those records or raw FHIR to Boxcue or any server. A Health Report may contain the selected clinical information described in this policy when you deliberately print it or save an external copy.
If you add Apple Health medication history to a report, Metriweave asks you to choose which tracked medications it may read. Those medication records and their user-recorded dose events remain separate from prescription records found in Clinical Health Records. Metriweave does not create medications or log doses in Apple Health.
If you turn on Include date of birth for a Health Report and choose Apple Health as the source, Metriweave requests access to that characteristic for the report. You may instead enter a date of birth manually or leave it out. Apple Health does not provide a general profile name to Metriweave; an optional report name is always entered manually.
Workout route access is optional. Metriweave reads a workout route’s location points only after you authorize access through Apple’s Health permission controls and only when route data is available for the workout you open.
Metriweave does not receive access to a category unless you authorize it through Apple’s Health permission controls. You can decline, change, or revoke access at any time using the Health app or your device’s privacy settings. An empty chart can mean there are no records for the selected period, the category is unavailable on your device, or Metriweave does not have access to read it.
For each question, if you explicitly ask Explain about another metric in your recorded data, Metriweave may temporarily read one additional metric that was already included in a completed Metriweave Health access request for the displayed period. Explain does not present a new Health permission request. If no readable records are returned, Metriweave treats the data as unavailable and does not infer that read access was denied.
SECTION 02How Metriweave uses health information
Metriweave uses health information solely to provide its health and fitness features to you: selected dashboards; Day, Week, Month, Year, and trailing 12-month charts; chart summaries and comparisons; trend descriptions; Health Report PDFs containing the date range, measurements, charts, detailed readings, clinical prescriptions, Apple Health medication history, Life Events, sources, and coverage information that you select; on-device workout maps when you have authorized access to their routes; user-entered Life Events as optional context without changing trend calculations; optional explanations from Apple’s on-device intelligence model using bounded context from the metric you are viewing and, if you explicitly ask about another metric in your recorded data, one additional metric per question from a completed Metriweave Health access request for the displayed period; and selected widget and Apple Watch summaries.
For supported metrics, a source comparison temporarily calculates two source-specific results over the same date interval and data cutoff without changing your saved source choices. The feature is unavailable when Metriweave cannot enforce a trustworthy source-only result, including derived metrics, clinical records, ECGs, audiograms, State of Mind, workouts, and workout zones. Blood pressure remains a complete correlated systolic/diastolic reading. How this number was calculated uses only the metric information already loaded on the device and does not make another Health query; any displayed arithmetic describes chart buckets that reconcile to the shown result, not a reconstruction of raw readings.
Metriweave does not use HealthKit or clinical health information for advertising, marketing, user profiling for advertising, sale, data brokerage, or use-based data mining. Metriweave does not send HealthKit records or clinical health information to advertisers, data brokers, analytics providers, or Boxcue-operated servers. The limited MapKit processing described below applies only when you open a workout map.
SECTION 03Where information is stored
On your device
HealthKit queries, clinical-record processing, trend calculations, Health Report generation, and Apple Intelligence explanations occur on your device. Metriweave stores app settings locally, including saved dashboard names, selected metrics, dashboard order and layout, chart styles, color choices, units, appearance settings, accessibility presentation preferences, and the active dashboard preset.
Metriweave temporarily keeps clinical records and chart results in app memory to avoid reloading them. These working caches are not saved to disk. Their time in memory depends on refreshes and how long the app remains running; there is no fixed deletion deadline for these caches.
Explain keeps your questions, displayed and additional metric context, and responses only in app memory. After you close Explain, at most one closed chat remains in app memory and is eligible to resume for 15 minutes. You can resume it by reopening Explain for the same unchanged chart in the same app language before that time expires. Closing the resumed chat starts a new 15-minute period. Expired chats cannot be resumed. If iOS suspends the app, clearing an expired chat from memory may wait until the app can run again. The chat is cleared when you start a new explanation or the app shuts down. Metriweave does not save this content as persistent chat history, place it in app preferences, the shared App Group, iCloud Key-Value Storage, analytics, logs, or support requests, or send it to Boxcue or a Metriweave server.
When you build a Health Report, selected identity fields appear on the PDF pages. Unsaved builder changes and identity inputs otherwise remain only for that report session. Metriweave does not save identity inputs in app preferences, a saved setup, Keychain, the shared App Group, iCloud Key-Value Storage, analytics, support requests, filenames, or PDF metadata. The finished PDF is written to an app-controlled temporary location, protected with Apple data protection, and excluded from backup. Metriweave uses that temporary file for preview, Print Report, or Save PDF, then deletes it when the report session ends. If the app stops unexpectedly, it removes stale temporary report files when Health Reports next initializes. Metriweave does not keep report history, and Boxcue does not receive the report or its contents.
When you explicitly create, update, or duplicate a saved report setup, Metriweave stores the setup name you choose and its configuration, together with creation and modification timestamps. The configuration includes the report format, paper size, rolling or fixed date rules, selected sections and order, detail modes, source choices, and per-measurement overrides. It does not copy the report’s patient identity fields, HealthKit readings, clinical records, raw FHIR, generated PDFs, page estimates, report history, or Apple Intelligence explanations into the setup. The setup file is encrypted using a device-bound, non-synchronizing key, protected with complete file protection, excluded from backup, and stored only in Metriweave’s private app container. It is not placed in the shared App Group, iCloud, widgets, Apple Watch, analytics, logs, support payloads, or a Metriweave server. Builder edits do not autosave.
When you explicitly save a Pattern Question, Metriweave stores its name and configuration, including your rules and thresholds, selected measurements and units, date-range rules, and source choices, together with creation and modification timestamps. It does not save HealthKit readings, matching results, clinical records, or Apple Intelligence conversations in a saved question. The file is encrypted with a device-bound, non-synchronizing key, protected with complete file protection, excluded from backup, and stored only in the private app container. It is not placed in iCloud, the shared App Group, widgets, Apple Watch, analytics, logs, support payloads, or a Metriweave server. Saving and updating are explicit; ordinary Pattern Search edits do not autosave.
When you open a workout map, Metriweave reads any authorized route location points and processes them transiently to draw the route overlay. The points are never persisted by Metriweave in its app container or shared App Group, included in widgets or the Apple Watch companion, synced through iCloud, attached to support requests, sent to Metriweave servers or analytics, or provided to Apple Intelligence. Apple’s MapKit framework supplies the background map and may process map requests under Apple’s privacy terms. Metriweave does not write or modify workout routes.
Life Event types, dates, notes, and metric scopes are encrypted with a device-bound, non-synchronizing key and stored with complete file protection. Metriweave excludes the encrypted Life Events file from backup and refuses to retain a new copy if those protections cannot be verified. Life Event content is not placed in iCloud Key-Value Storage, widgets, Apple Watch, analytics, support requests, or a Metriweave server.
To avoid interrupting a new user, Metriweave may keep small local counters and dates that indicate how long the app has been set up, the number of distinct use days and meaningful views up to fixed limits, and whether Metriweave attempted Apple’s native review request or you tapped the manual App Store rating link for an app version. This state contains no health values, metric identifiers, source information, Apple Account information, or advertising identifier. It is not sent to Boxcue or used for analytics.
For widgets and the Apple Watch companion, Metriweave stores small, derived, display-ready summaries in its private App Group on your device. These summaries can include a selected metric name, formatted value, unit, trend text, update time, and purchase-entitlement state. They are not your complete Apple Health database.
iCloud Key-Value Storage
If iCloud Key-Value Storage is available for your Apple ID and device, Metriweave may synchronize app preferences only across your compatible devices. These preferences may include saved dashboard names, selected metric identifiers, dashboard order, card size and appearance, chart presentation choices, units, accessibility display preferences, the active and default dashboards, the active preset, whether Life Events are shown on charts, and your per-metric source-selection choices. Source-selection preferences may contain matching fields such as an app or source bundle identifier and general device details such as product type, model, or manufacturer. They do not contain HealthKit readings, sample values, HealthKit or clinical-record dates, charts, clinical records, user-defined device names, device-local HealthKit identifiers, or Life Event content. Synced preferences and saved dashboards include creation or modification timestamps used to manage those settings and resolve updates; these are not Health record dates.
Metriweave does not upload or synchronize HealthKit samples, clinical records, Health authorization decisions, generated Health Reports, saved report setups, saved Pattern Questions, or the widget/Watch summary cache to iCloud through Metriweave. Apple’s handling of iCloud is governed by Apple’s privacy policy and your Apple ID settings. If you deliberately save a report to iCloud Drive through Apple’s Files interface, that external copy is controlled by your chosen Files location and Apple ID settings, not by Metriweave’s iCloud storage.
SECTION 04Purchases
Metriweave offers optional Metriweave Pro subscriptions and a lifetime purchase through Apple’s App Store and StoreKit. Apple processes payments, subscription management, restore requests, and offer-code redemption. Metriweave does not receive or store your payment-card information.
Metriweave receives and stores only the purchase-entitlement status needed to determine whether Pro features are available in the app and its extensions. Apple’s handling of purchases is governed by Apple’s privacy policy and applicable App Store terms.
SECTION 05Support requests
If you choose Contact Support in the app, Metriweave sends the support topic, message, and—only if you provide it—your reply email address. If you leave Include Technical Information enabled, the request also includes the Metriweave app version, iOS version, and general device model. Metriweave does not automatically attach HealthKit samples, clinical records, dashboard values, or other health information to a support request.
Support requests are transmitted over an encrypted connection to a Boxcue Technologies LLC support endpoint operated using Cloudflare and are delivered to our support mailbox using Resend. Cloudflare and Resend may process the request content and limited network or delivery information as service providers. We use support information only to receive, investigate, respond to, secure, and improve support for Metriweave. We retain it only as reasonably necessary for those purposes, legal compliance, and abuse prevention. You may request deletion using the privacy contact above.
The reply email field is optional. If you do not provide an email address, we cannot reply directly; the app instead provides a reference number for your records.
SECTION 06Information Metriweave does not collect or use
- Metriweave does not require or create a Metriweave account.
- Metriweave does not operate a Metriweave server-side database for your health data.
- Metriweave includes no third-party advertising or analytics SDKs and does not track you across apps or websites.
- Metriweave does not sell, rent, or trade your information.
- Metriweave does not operate a report-ingestion server or keep a report history.
- Metriweave does not provide a general share sheet, direct provider-delivery service, CSV export, XML export, or raw FHIR export.
SECTION 07Sharing
Metriweave does not automatically transmit your HealthKit data, clinical health records, or generated Health Reports to Boxcue or third parties. The app uses Apple-provided services that you choose to use, including HealthKit, iCloud Key-Value Storage, StoreKit, WidgetKit, and WatchConnectivity. These services are provided by Apple and are subject to Apple’s terms and privacy practices.
When you tap Print Report or Save PDF, you direct the system to create a copy outside Metriweave. Printing may send the report to the printer or print service you choose. Saving opens Apple’s Files interface with export-as-copy behavior; available locations may include On My iPhone or iPad, iCloud Drive, and installed third-party File Providers. A printer or Files destination may store, upload, sync, or back up that copy under its own terms and settings. Metriweave does not choose the destination, receive the external copy, or control or delete copies outside the app.
When you voluntarily submit an in-app support request, Cloudflare and Resend process the limited support information described in Section 5 solely to transmit and deliver that request. They do not receive HealthKit data from the support feature.
When you choose an Apple Intelligence explanation, Apple’s on-device model processes bounded context from the metric you are viewing and, if you explicitly ask about another metric in your recorded data, one additional metric per question from a completed Metriweave Health access request for the displayed period. Explain does not browse websites or fetch external resources. The question, context, and response are not sent to Boxcue or a Metriweave server, synchronized through Metriweave’s iCloud storage, or stored as persistent chat history. A closed chat remains only in app memory and is eligible to resume for 15 minutes, as described in Section 3. Apple Intelligence is an Apple service subject to Apple’s terms and privacy practices.
When Metriweave asks Apple’s system whether to present a rating prompt, or when you deliberately open the App Store review page from Settings, Apple may process that interaction under Apple’s terms and privacy practices. Metriweave receives no review text, rating, or confirmation that the system prompt appeared.
We require service providers that Boxcue uses to process user data to provide the same or equal protection stated in this Privacy Policy and required by the App Review Guidelines. This requirement does not make Boxcue the controller of a printer, Files location, or storage provider that you independently choose for an exported report.
We may disclose information only if required to do so by law, regulation, legal process, or enforceable governmental request. Metriweave has no developer-operated health-data server or account system.
SECTION 08Your choices and controls
- Grant, decline, or revoke Health access in the Health app or device settings.
- Choose which metrics appear on your dashboard.
- Choose each Health Report’s date range, contents, order, and level of detail.
- Review a report-size breakdown and explicitly apply suggested reductions before generation.
- Explicitly create, update, duplicate, load, rename, or delete a saved report setup on the device.
- Explicitly save, update, rename, or delete a Pattern Question on the device.
- Decide separately whether a report includes a manually entered name or a date of birth from Apple Health or manual entry.
- Review a report before printing it or saving a copy, and manage any copy created outside Metriweave through the chosen printer or Files location.
- Change dashboard layout, chart style, units, and accessibility presentation settings.
- Manage, cancel, or restore purchases through your Apple App Store account.
- Choose whether to provide a reply email or optional technical information in a support request.
- Add, edit, remove, or hide Life Events and decide whether to request an Apple Intelligence explanation or ask it to use one additional metric per question from a completed Metriweave Health access request.
- Use the optional App Store rating link in Settings, while Apple independently controls whether its native rating prompt appears.
- Remove Metriweave from your device to remove its local app container and extension cache.
- Request deletion of support information using the privacy contact above.
Where provided in the app, Reset All Local Data clears Metriweave’s local preferences and summaries and deletes the encrypted files for saved report setups and Pattern Questions and their device-bound keys. Reset controls never delete or alter Apple Health records.
SECTION 09Data security
Metriweave is designed to minimize data handling. Health data is read and processed locally on your device, and Metriweave uses Apple platform protections for HealthKit, app sandboxing, data protection, Keychain, App Groups, iCloud Key-Value Storage, StoreKit, WidgetKit, WatchConnectivity, and Apple’s on-device intelligence model. Health-summary cache files, encrypted Life Event content, encrypted saved report setup and Pattern Question configuration, and Metriweave’s temporary Health Report files are excluded from backup. Temporary report files use Apple data protection and are deleted after the report session. Support requests are encrypted in transit. No method of electronic transmission or storage is completely risk-free, and an external report copy is protected according to the printer, Files location, account, and device settings you choose.
You are responsible for maintaining the security of your device, device passcode, Apple ID, and iCloud account.
SECTION 10International users
Metriweave does not operate its own health-data or report-ingestion servers. If iCloud Key-Value Storage, App Store services, or the optional support feature are used, Apple, Cloudflare, or Resend may process the limited information necessary to provide those services in accordance with their privacy practices. A printer, iCloud Drive, or third-party File Provider that you choose for an external report copy may also process that copy under its own terms and settings. This may involve processing in countries other than the country where you live.
SECTION 11Changes to this Privacy Policy
We may update this Privacy Policy when Metriweave’s features or applicable requirements change. We will post the revised policy with a new “Last updated” date. Material changes will be reflected in the version available at the Privacy Policy URL.
SECTION 12Contact us
Boxcue Technologies LLC — Operator of Metriweave
Email: info@boxcue.com
SECTION 13Important health notice
Metriweave is a wellness visualization tool. It is not emergency monitoring, diagnosis, risk prediction, treatment advice, medication guidance, or a substitute for a qualified clinician. Always consult an appropriately qualified health professional about medical questions or decisions.