Overview

Kestra is a personal life dashboard built on one principle: your data belongs to you. Everything you enter into Kestra stays on your device. We do not collect, store, or transmit your personal data to any server we operate.

There are no accounts, no analytics, no crash reporting, no advertising identifiers and no tracking of any kind. The developer receives no data about you or your usage.

What Data Kestra Uses

With your explicit permission, Kestra may access the following — only on your device:

  • Health data (steps, heart rate, sleep, calories) — read from Apple Health, never sent anywhere
  • Location — used for local weather, to find nearby restaurants when you log a meal, and to geotag a purchase so you can see your spending on a map. Coordinates are stored only on your device, and Kestra never tracks your location in the background
  • Microphone — used only while you are actively dictating a meal or a purchase. Audio is never recorded, stored or transmitted by Kestra
  • Speech recognition — your spoken description is transcribed using Apple’s speech recognition. Where your device supports on-device recognition, Kestra requests it, so the audio need not leave your phone. Only the resulting text is kept, as part of the entry you created
  • Camera — only when you scan a meal for macro analysis
  • Photo library — only when you choose to analyse a meal photo
  • Face ID — only to unlock the in-app password vault, via Apple’s secure APIs

None of this data is collected by Kestra or its developer.

Financial Data

If you connect a brokerage account (e.g. Trading 212), your API credentials are stored exclusively in your device’s encrypted Keychain. They are never sent to or stored on any server operated by Kestra.

Portfolio figures, spending records and statement analysis are computed and stored on your device only.

Personal Server (Optional)

Kestra supports an optional personal server for advanced features (Obsidian sync, AI briefing, WHOOP, Earnings Radar). This is a server you own and operate — Kestra does not provide or manage it, and the developer has no access to it or visibility of what passes through it.

Third-Party Services

Kestra can read from services you choose to connect. In each case the request goes directly from your device to that service, using credentials you supply. Your data is not routed through the developer at any point.

  • Open-Meteo (weather) — open-source, no account required, no personal data sent
  • Trading 212 — portfolio positions and cash balance
  • WHOOP — recovery, strain and sleep data, with your explicit consent only
  • 17TRACK — parcel tracking
  • DigitalOcean — hosting cost and balance, via a read-only token
  • Yahoo Finance — share price history; receives ticker symbols only
  • Financial Modeling Prep — company profiles; receives ticker symbols only
  • U.S. SEC EDGAR — public company filings
  • National Rail data — live train departures
  • OpenSky Network — nearby aircraft
  • Apple Maps — nearby venue lookup when logging a meal or purchase
  • Any AI provider you configure with your own key

Each service has its own privacy policy governing what it does with the request. Kestra works fully offline; widgets that need a key or a server will say so.

We use no advertising networks, analytics SDKs, or tracking frameworks of any kind.

Data Storage

All data is stored locally using iOS standard storage. Sensitive credentials use the iOS Keychain with WhenUnlockedThisDeviceOnly protection — encrypted at rest, never included in unencrypted backups.

Because your data is local, deleting the app deletes your data. There is no backup held by the developer and no way for us to recover it. Kestra data is included in your normal iPhone backup, so iCloud Backup or a computer backup will carry it to a new device.

Purchases

Kestra Pro is an optional one-off in-app purchase, sold through Apple’s In-App Purchase system. Apple processes the payment — the developer never sees your card details, billing address or Apple Account information.

Kestra stores only a local flag recording that the purchase exists, and verifies it against Apple’s receipt system. Refunds are handled by Apple, not by us.

Children

Kestra is not directed at children under 13 and does not knowingly collect information from children.

Your Rights

Because no personal data is collected or held by the developer, there is nothing to request, correct, export or erase from any system of ours.

You control all your data directly: erase everything from Settings → Data, or delete the app to remove it entirely from your device.

Under UK GDPR you retain your statutory rights, but in practice there is no data held about you to exercise them against.

Contact

Questions: orlandovs1@hotmail.com


Last updated: 25 July 2026 — Privacy policy URL for App Store Connect: https://orlandovs.pages.dev/privacy/