Orbit
Privacy Policy
Last updated: September 8, 2026
Your journal is stored on your device. Orbit has no accounts, advertising, analytics, or developer-operated journal server. Optional weather and address lookups send location information to Apple. Exports you choose and your device's backups can create copies elsewhere.
1. What this policy covers
This policy describes Orbit, the mood journal for iPhone and Mac made by trolls.dev. Orbit records observations you enter about yourself or one other person. It does not access that person's device, accounts, or location. Any location recorded by Orbit comes from the device on which you are logging.
2. What Orbit stores
- Journal entries: the selected profile, mood, intensity, date and time, and optional notes, coordinates, place label, meal timing, and recorded weather.
- Saved places: the coordinates, address when available, and matching radius for Home and Work.
- Anchor events: the names, periods, and start dates of cycles you define.
- Preferences: display names, scheduled meal times, the selected profile, and onboarding choices.
Entries, places, and anchors are stored in files inside Orbit's private app container. Preferences use local system storage. Orbit does not upload this journal to trolls.dev or automatically sync it between devices. Files the app cannot read may be kept separately for recovery rather than overwritten.
3. Optional location access
Orbit asks for location permission when you choose to allow it during setup or in Settings. With permission, it can take a brief location reading when you log, when it preselects a place, when you set a current-location pin, or when you choose Check Weather. These requests have time limits and can reuse a recent reading. Orbit does not continuously track your movements.
A location reading obtained while saving may be stored with the entry. Matching it to your saved places happens on the device. If that reading takes too long, a bounded follow-up request may obtain a location for weather only; that later location is not added to the entry or used to change its place.
You can decline or revoke access in your device's location settings and keep using the journal. You can still select a place label manually. Revoking permission stops new location requests; it does not delete coordinates already saved in your journal or saved places.
4. Apple Weather
With location access, Orbit requests weather after saving a new entry. It sends Apple Weather a coordinate rounded to two decimal places, roughly a kilometre, to obtain conditions, temperature, and atmospheric pressure. Orbit does not include the entry's mood, intensity, note, profile, or display names in that request. The returned weather is stored with the entry.
Check Weather in Settings makes the same kind of request, but only displays the answer temporarily. It does not save a journal entry. Weather is optional: a failed request does not prevent saving, and older entries are not automatically filled in later. Surfaces displaying weather also request Apple's attribution information and artwork; those requests do not include journal contents.
Weather data is provided by Apple Weather. See Apple's weather data attribution and Apple's privacy policy.
5. Apple Maps address lookups
Address lookups happen when you set Home or Work in Settings. Searching for an address sends the text you enter to Apple Maps. Choosing Use Current Location sends that pin's coordinate to Apple Maps to find its address. This coordinate is not rounded in the way weather requests are. Neither lookup includes your moods, notes, or profile names.
Address search works without location permission because you supply the address. Opening Settings or matching an entry against an existing saved place does not trigger an address lookup. Apple operates these services under its own privacy policy.
6. Exports, imports, and backups
You can export entries from both profiles as CSV or JSON to a destination you choose, and import an Orbit JSON journal. Exports can contain notes, coordinates, and other sensitive entry details. They are readable files without a separate Orbit password. If you choose a cloud-backed folder or share a file, that provider or recipient receives the copy you selected.
An export includes entries, but not saved places, anchors, scheduled meal times, or display names. It is not a complete backup of the app. Your device's own backup system, such as iCloud Backup on iPhone or Time Machine on Mac, may also copy Orbit's local data. Orbit does not exclude its files from these backups; you control them through your device and backup provider.
7. Retention and deletion
Orbit keeps your local journal until you delete it. You can delete individual entries, remove saved places and anchors, or use Erase All Data in Settings to remove the app's stored journal data for both profiles and reset names and meal settings. The app reports an error if a file cannot be erased.
Deleting data in Orbit does not remove exports, copies you shared, or existing device backups. Manage those copies separately. trolls.dev does not hold a server copy of your journal and cannot retrieve it if your local data and backups are lost.
8. Support and this website
If you email support, we receive the address and information you choose to send so we can respond. Please avoid sending private journal exports or another person's sensitive information. Visiting this website and sending support email are separate from the app's local journal storage; see the trolls.dev website privacy policy.
9. Changes and contact
We will update this page when Orbit's data practices change. The date above identifies the latest revision. For privacy questions, email [email protected] or visit Orbit support. The app's terms are available at Orbit Terms of Service.