Privacy Policy
Last updated 6 August 2026
Orbitaire is built by CacheStack Ltd (company number 17179570, “CacheStack”, “we”, “us”). This policy explains what data Orbitaire collects, why, where it goes, and how you can control it. We've tried to write it in plain language rather than pure legalese. If anything is unclear, email team@cachestack.co.uk.
The short version
- Orbitaire is offline-first by default. Most data lives on your device unless you enable cloud sync (Pro).
- We don't use analytics or advertising SDKs, and we don't track you across other apps or websites.
- We don't access your bank accounts, brokerage accounts, or health records. Finance and fitness data is what you type in.
- Your messages are sent to a model provider to generate a reply and are not used to train AI models.
- You can delete your account and cloud data at any time from Account settings in the app.
1. Data we collect
Account data. When you create an account we collect your email address and, if you choose Sign in with Apple, the name Apple shares with us. You can also continue as a guest without creating an account, in which case data stays local to your device.
Content you create. Chat messages, memory facts, calendar preferences, to-dos, meeting recordings and notes, gym and nutrition logs, finance holdings you enter, and shopping searches, all created by you using the app.
Device permissions. Orbitaire only requests access when a feature needs it, and always explains why at the point of request:
- Camera: to attach a photo in Chat or scan a food barcode.
- Microphone & Speech Recognition: for chat dictation, quick voice capture, and meeting recordings you start after confirming participant consent.
- Photo Library: to attach reference/progress photos, or save generated images.
- Calendars: to show today's agenda from calendars you select. Event details stay on your device by default.
We do not request location, HealthKit, or contacts access, and Orbitaire does not use Apple's App Tracking Transparency framework because we don't track you for advertising.
2. How your messages are processed
When you chat with Orbitaire, your message and any memory context you've approved is sent through CacheStack's backend to the model you've selected. Orbitaire currently offers a curated set of models: ChatGPT (OpenAI), Gemini (Google), Grok (xAI), DeepSeek, GLM (Z-AI) and Claude (Anthropic), routed via OpenRouter. If you turn on web search, your query is also sent to Perplexity's Search API.
We do not log or retain full message text, search queries, or image data in our own observability systems, and we do not use your conversations to train any AI model. Depending on your subscription, conversation history is kept on your device (Free) or securely synced via our backend so it's available across your devices (Pro, with cloud sync enabled).
Memory facts you've approved may be included as context in future conversations to make replies more relevant. You can review, disable by category, or delete anything Orbitaire remembers from the Memory section of the app at any time.
3. Module-specific data
Gym & nutrition. If you set up a fitness profile, we store what you tell us (goal, sex, age, height, weight, activity level, and training preferences), plus food diary entries, body-metric logs, and workouts you record. This data is self-reported and stored locally by default; it syncs to our backend only if you're on Pro with cloud sync enabled. Food search and barcode lookups are sent to the public Open Food Facts database (just the search term or barcode, no personal data). Orbitaire does not integrate with Apple Health.
Finance. Holdings, cash positions and recurring investment plans are entered manually by you. Orbitaire does not connect to your bank or brokerage accounts. We look up public market data (stock, crypto and exchange-rate prices) by ticker symbol from providers including Finnhub, Twelve Data, Alpha Vantage, Yahoo Finance, CoinMarketCap and exchangeratesapi. These lookups are not linked to your identity. Payment reminders are informational only; Orbitaire never processes payments.
Connected accounts (optional, Pro). If you choose to connect a Google or Microsoft account for the Agent module, we request read-only access to your Gmail (gmail.readonly) or Outlook mail and calendar (Mail.Read, Calendars.Read). We store a short subject line and snippet (up to 400 characters) for relevant items, never full message bodies, and your OAuth tokens are encrypted at rest. You can disconnect a connector at any time, which revokes and deletes the stored tokens.
4. Subscriptions and payments
Orbitaire Pro subscriptions are billed and processed entirely by Apple through the App Store, so CacheStack never sees your payment card details. We use RevenueCat to manage entitlements, which receives your app user ID and purchase/transaction history from Apple in order to unlock the correct features on your account.
5. Where your data is stored
Authentication is handled by Supabase; your session is kept in your device's Keychain. Local app data (memory, gym logs, and similar) is stored in your device's app storage. When cloud sync is enabled, application data is stored in Cloudflare D1 (structured data) and Cloudflare R2 (files such as generated images and attachments), scoped to your account and protected by encryption in transit and at rest.
7. Retention and deletion
You can delete your account at any time from Account settings in the app by typing DELETE to confirm. This purges your account, memories, agents, connector tokens, and cloud-stored data from our backend and identity provider. Billing records we're legally required to retain are kept for the minimum period the law requires. Reference images used for AI processing are temporary and deleted after processing. Calendar access via EventKit never leaves your device; disconnecting is done through iOS Settings.
8. Children's privacy
Orbitaire is not directed at children, and you must meet the minimum age described in our Terms of Service to use it. We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, contact us and we will delete it.
9. International data transfers
CacheStack is based in the United Kingdom. Some of our service providers (including AI model providers and Cloudflare) process data outside the UK and EEA. Where this happens, we rely on appropriate safeguards such as Standard Contractual Clauses.
10. Your rights
If you're in the UK or EEA, you have rights under UK GDPR / GDPR including the right to access, correct, delete, restrict or port your data, and to object to certain processing. Most of these you can exercise directly in the app (memory review and deletion, account deletion); for anything else, email team@cachestack.co.uk. You also have the right to lodge a complaint with the UK Information Commissioner's Office (ico.org.uk).
11. Changes to this policy
We'll update the date at the top of this page when this policy changes, and notify you in the app for material changes.
12. Contact us
CacheStack Ltd (company number 17179570)
team@cachestack.co.uk