OpenBreath

Privacy policy

Last updated 22 August 2026

OpenBreath stores your training data on your own phone. There is no OpenBreath account and no OpenBreath server. Nothing leaves your device unless you choose to sign in to Google and back up, and that backup goes to your own Google Drive.

1. Who is responsible

OpenBreath is an independent app published by Marcos Cilleruelo. For any question about this policy or your data, write to info@apneastatic.com.

2. What the app stores on your device

DataWhy
Breath measurements: volume in millilitres, date and time, whether it was an inhale or an exhale, the practice you tagged it with, an optional name you typed, and two raw values reported by the device. To show your history, bests and trends. This is the app's entire purpose.
The identifier and name of the last Bluetooth device you connected to. To reconnect automatically instead of making you scan every time.
Your settings: language, selected practice, last tab, whether automatic backup is enabled. So the app opens in the state you left it.
If you sign in with Google: your email address and display name. To show which account is signed in. Stored locally only.

This data is held in the app's private storage. It is not transmitted to us — we operate no server and receive none of it.

3. Google sign-in and Google Drive (optional)

Signing in is optional and the app is fully usable without it. If you do sign in, the app requests one Drive permission:

drive.appdata

This grants access to a hidden folder in your Google Drive that belongs to this app alone. The app cannot see, read, or modify any other file in your Drive, and this is enforced by Google, not merely promised here. The only thing written there is a single file, openbreath-backup.json, containing the same measurements you can already export yourself.

Backups are manual by default. If you switch on Back up automatically, the app uploads that same file shortly after a training session. Restoring only ever adds measurements — it never deletes or overwrites what is already on your phone.

Your Google credentials are handled by Google's own sign-in screens. The app never sees your password, and it does not store long-lived access tokens.

4. Analytics

The app includes Google Firebase Analytics, which collects usage and diagnostic information such as app opens, in-app events, and general device and operating-system details, together with an app-instance identifier generated by Google. It is used only to understand whether the app works and which parts are used.

Your breath measurements, their names, and your email address are never sent to Analytics. Google processes this data as described in the Firebase privacy documentation.

5. Bluetooth and location permissions

The app uses Bluetooth to talk to the training device. On Android 11 and older, the operating system requires a location permission before any app may scan for Bluetooth devices at all. The app therefore declares that permission for those versions only, and does not collect, use, or derive your location in any way. On Android 12 and newer the permission is not declared, and the Bluetooth scan is marked as never being used to determine location.

6. What is not done

7. Keeping, deleting and taking your data

Step-by-step instructions are on the delete your data page.

8. Children

OpenBreath is not directed at children and is not intended for use by anyone under 18. Breathing exercises of this kind carry real risk, which is why the app is declared for adults on Google Play.

9. Changes

If this policy changes, the date at the top changes with it. Material changes will be reflected in the app before they take effect.