Summary
Booger is designed so its developer cannot access a family's care log. Child profiles, medicine entries, temperatures, notes, reminders, corrections, and device-sync status are stored on the user's device and transferred directly to devices the user explicitly pairs nearby.
Booger has no developer account system, cloud sync service, advertising, analytics, behavioural profiling, or third-party crash-reporting SDK.
Information handled on the device
The app handles information a caregiver chooses to enter, including a caregiver display name, child name or nickname, care entries, reminders, entry times, and correction history. It also stores random family and device identifiers, encryption material, and device-sync status needed for direct nearby syncing.
These records are saved in the app's protected local storage. Family and device secrets are held in Keychain. Care records are marked to be excluded from device backup where supported, although operating-system and user-controlled backup behaviour is ultimately controlled by Apple and the device owner.
Direct nearby exchange
With the user's explicit pairing approval, Booger uses Bluetooth to transfer an encrypted care log directly between nearby paired devices. The transfer is not routed through a Booger server. Nearby advertising is designed not to include child names, medicine data, or family names.
Every paired device holds its own copy. Deleting a local copy on one device cannot erase a copy held by another device that is offline.
Apple services and permissions
- Bluetooth finds approved nearby Booger devices and exchanges the encrypted family care log.
- Camera scans a short-lived pairing invitation. Booger processes the image for pairing and does not upload it.
- Notifications deliver generic reminders created by the user. Default lock-screen text avoids child and medicine details.
- StoreKit lets Apple process an App Store purchase. Booger receives a verified entitlement and relevant transaction date on the device, not payment-card details, and does not send that information to its developer.
- TestFlight may give the developer beta crash and feedback information under Apple's terms when a tester chooses to participate. Testers should not include private family or health information in feedback or screenshots.
Apple's services are governed by Apple's own privacy policies.
Developer collection and sharing
Booger's developer does not collect, receive, sell, or share the care log or nearby family syncs. The app contains no developer-operated network endpoint or third-party data-collection SDK, so there is no third party receiving care-log data from the developer.
If a future version adds any remote service, analytics, crash reporting, export destination, HealthKit integration, or other data path, this policy and the in-app explanation must be updated before release.
Retention, deletion, and consent
Data remains on each paired device until the user removes that family's local copy or removes the app, subject to Apple's operating-system backup and restoration behaviour. The in-app deletion control removes that family's saved data from the device. The user must repeat deletion on every device that holds a copy.
Pairing and system permissions are user-controlled. A user can stop nearby exchange by turning off Booger's Bluetooth permission, stop reminders by turning off notification permission, and revoke camera permission in iOS Settings. Removing permission does not itself erase existing local records.
Children
Booger is used by adult caregivers and is not directed to children. It does not ask a child to create an account or provide an email address, address, date of birth, sex, weight, health identifier, or photograph. A caregiver may choose to enter a first name or nickname and factual care information locally.
Safety and scope
Booger is a factual notebook, not medical advice or an emergency service. It does not calculate doses, interpret temperatures, diagnose, triage, recommend treatment, or say when medicine is safe or due.
Contact
For privacy, deletion, or policy questions, email feedback@stephenson.tools. Please do not include private family or health information.