Skip to main content

Privacy Policy — Documented

Effective date: 31 July 2026

Product: Documented (iOS, iPadOS)

Documented has no account, analytics, advertising SDK, or Cocoacorn server for your claim or health data. Your evidence stays on your device unless you enable an optional iCloud feature or choose an export, backup, purchase, restore, save, print, or sharing action.

Introduction

Documented ("we", "us", "our") is developed by Cocoacorn. This privacy policy explains how the Documented app handles your data.

Data We Collect

Cocoacorn does not collect your Documented records. Documented has no user account, advertising SDK, or third-party analytics SDK, and Cocoacorn operates no server for your claim or health data.

Apple may process information when it provides App Store purchases, iCloud, notifications, crash reporting, or other platform services. Apple handles that information under Apple's own terms and privacy policy.

Data Stored on Your Device

Documented stores the following data locally on your device:

  • Your claim profile, including claim type, jurisdiction, conditions, claim dates and references, and any outcome you record
  • Dated daily evidence, difficulty ratings, affected activities, criterion or descriptor mappings, consequences, notes, carry-forward provenance, photos, and captions
  • Medication records, assessment notes, Mandatory Reconsideration or tribunal drafts, and any audio attachment filenames, audio files, or transcripts already present in a record
  • App preferences, reminder settings, purchase-entitlement state, local sync or backup status, generated reports, CSV files, temporary export files, staged restore files, and backup archives while held by the app

This data stays on your device unless you enable an optional iCloud feature or choose an export, backup, purchase, restore, save, print, or sharing action.

App Lock

If you enable App Lock, Documented asks iOS to authenticate you using Face ID, Touch ID, or your device passcode. Authentication is handled by Apple on your device. Documented and Cocoacorn do not receive your biometric data or device passcode.

iCloud Sync

If you enable iCloud Sync, supported Documented data syncs through your private CloudKit database in your personal iCloud account. Cocoacorn cannot access this data.

Changing the iCloud Sync preference requires an app restart so Documented can open the appropriate local store. Turning sync off stops the app from opening its CloudKit-backed store on a later launch; it does not necessarily delete records already held in iCloud.

Automatic and Manual Backups

When iCloud Sync is enabled, Documented also enables Automatic Backups. If iOS gives the app an eligible background opportunity, or when you open the app, Documented can write at most one backup per day to its folder in your iCloud Drive and retain the latest seven automatic backups.

You can also create a manual .documentedbackup archive and choose where to save or share it. Backup archives can contain your full evidence history, settings, photos, and existing audio attachments. They contain sensitive information in readable form and are not separately encrypted by Documented.

Restore replaces local Documented records. It is blocked while iCloud Sync is requested or active. Documented stages and inspects the selected archive, rejects unsafe archive content, and creates a local rollback snapshot before replacement.

Backups, Exports, and Sharing

CSV exports and Claim Evidence Reports can contain sensitive health, identity, and claim information. Documented opens a report in an in-app preview before you choose to save, print, or share it.

Once you send a file to another app, person, printer, adviser, provider, authority, or storage service, that recipient or service handles the copy under its own privacy terms. Documented does not send exported files to Cocoacorn.

Optional Evidence from Other Apps

If you choose to include compatible-app evidence in a Claim Evidence Report, Documented can read limited summaries made available on the same device by Tended, Metered, Tolerated, or Steadied. These summaries can include selected health, energy, diet-protocol, or cycle-related patterns for the report period.

Documented does not import those apps' complete journals, original narrative, photos, attachments, or private databases. Compatible-app evidence is not required to use Documented, is not sent to Cocoacorn, and is included in a report only when you select that option.

Demo Mode

Demo Mode creates an isolated workspace containing fictional sample evidence. It does not modify your real records, sync sample records to your real iCloud store, or grant a StoreKit purchase entitlement. Demo exports contain fictional sample data only.

In-App Purchases

Documented offers an optional Documented+ non-consumable in-app purchase. Apple processes the purchase through the App Store. Cocoacorn does not receive or store your payment-card details. Purchase and Family Sharing records are managed by Apple through your Apple Account, and Restore Purchases is available in the Documented+ purchase screen.

Retention and Deletion

Your records remain on your device until you delete them, replace them during restore, or remove the app and its data. You can delete individual records or use More > Data > Delete All Data to remove local Documented records and switch off automatic backups.

If iCloud Sync is active, deletion can also synchronise through your personal iCloud account. Independently saved PDFs, CSV files, manual backups, shared files, and older iCloud Drive backup archives must be deleted from every location where you saved or sent them.

Children's Privacy

Documented does not knowingly collect data from children under 13. The app does not collect any data from any user.

Contact

If you have questions about this privacy policy, contact us at support@cocoacorn.com or visit https://www.cocoacorn.com/documented/support.