The full Privacy Policy is the authoritative detail. Optional features operate only when available in your app version and explicitly enabled.
Start without an account
ShotNest does not use accounts or logins. Shot records, supply, body measurements, notes, settings, and saved label information start in local app storage on your iPhone. You can use the app without creating a ShotNest profile on a server.
The app has no ads or third-party analytics. That does not mean no information ever leaves your device: Apple services, optional Community Insights, and information you email to support have separate roles explained below.
Label scanning happens on your iPhone
ShotNest uses Apple Vision on-device to recognize text from photos you take or select. Resized source photos and recognized text are stored locally with the supply record so you can review them.
Source image files stay on the iPhone where you added them. When optional iCloud Sync is available and enabled, the structured record and recognized text can sync, but source photos do not. A photo available on one iPhone is therefore not guaranteed to appear on another device.
Scanning is a convenience, not a verification service. Compare every recognized field with the original label.
iCloud Sync is a separate choice
When available and enabled, iCloud Sync stores and reconciles structured records in your private CloudKit database through your Apple Account. It uses your iCloud storage without creating a ShotNest account. ShotNest cannot see those private records in Apple’s developer tools.
Pausing sync does not delete either copy. Delete iCloud Copy pauses sync and removes the private cloud copy while leaving the records on that iPhone intact. Recovery after reinstalling depends on sync having been available and enabled and a cloud copy remaining.
Community Insights is not iCloud Sync
Community Insights is a separate, first-party opt-in feature. If available and enabled, monthly summaries derived on your phone are sent to ShotNest through Supabase using a random, pseudonymous identity.
They can include catalog medication IDs, limited supply information, recorded supply additions, and logged shot counts and dose totals. They do not include individual records, exact event dates, notes, injection sites, lot numbers, label text or photos, weight, other Apple Health data, contact information, or precise location.
These are self-recorded summaries, not verified purchases, adherence, pharmacy inventory, or clinical outcomes. ShotNest reports aggregates and suppresses medication or source breakdowns until at least 100 participating installations are represented. Routine network information may still be processed to deliver and protect the service.
Turning sharing off stops future contributions. Use Delete My Contribution for immediate deletion. Otherwise, inactive contributions and their backend identity are deleted after 24 months without a successful refresh. See the policy for the full contribution and retention details.
Apple Health and Apple Watch have their own controls
Apple Health access is optional. With permission, ShotNest can import selected body measurements into local storage. Saving weights from ShotNest to Health is a separate choice. Deleting ShotNest data does not delete information already saved in Health or revoke Health permissions.
The companion Apple Watch app receives a limited, read-only snapshot through Watch connectivity, not a ShotNest server. It can include the next-shot schedule, medication and dose, suggested site, and active supply status. Public complication content excludes medication and dose.
Shot reminders are scheduled locally on your iPhone. ShotNest does not register a push token or send your schedule to a notification server. See reminder and Health settings.
Choose the deletion action that matches your intent
- Delete ShotNest Data: in Profile settings, removes local records and saved label photos. When iCloud Sync is available and authorized, it propagates structured-record deletion through iCloud. It also cancels scheduled reminders and sends a cleared Watch snapshot when connectivity is available.
- Delete iCloud Copy: removes only the private cloud copy and pauses sync, leaving local records intact.
- Delete My Contribution: deletes your optional Community Insights contribution.
- Delete the iPhone app: removes its local files from that device. An enabled, remaining iCloud copy may restore structured records after reinstalling.
Delete ShotNest Data also attempts to delete an existing Insights contribution. If offline, the request is saved and retried when the backend becomes available. Information already saved in Apple Health remains separate.
Support cannot inspect or restore your detailed local or private CloudKit records. Check the full policy before deleting data you want to keep.
The website and support are separate from app records
This website uses Google Analytics to understand visits and download-link clicks. Google Analytics is not included in the ShotNest app and website events do not contain your ShotNest health records.
Apple may provide aggregated App Store performance information and, when users choose to share diagnostics with Apple, aggregated usage and crash information. These reports do not include detailed app records or health content.
If you email support, your message travels through your email provider. Share only what is necessary; avoid sending medication labels, health records, or photos unless needed for the request.
Sources and further reading
This product guide summarizes the published policy. Read the policy for complete details and its effective date.