Privacy Policy
Last updated: September 7, 2026
Glucosly is a companion app that relays your CGM data from your own Nightscout server to your iPhone via push notifications, Live Activities, and widgets. This page explains what information the app and its backend collect and how it's used.
Glucosly displays your CGM data from the Nightscout server you connect for convenience and informational purposes only. It is not a medical device, does not diagnose, treat, cure, or prevent any condition, and is not a substitute for your primary CGM or meter. Always follow the guidance of your healthcare provider, and rely on your primary device — not Glucosly — for treatment decisions.
Information we collect
- Account information — the email address and password you use to sign in. Passwords are stored as salted hashes, never in plain text.
- Nightscout connection details — the server URL and API secret you provide to connect your Nightscout instance. The API secret is stored encrypted at rest.
- Glucose readings — current and historical blood glucose values, trend direction, and related metadata (e.g. sensor/cannula age) fetched from your Nightscout server and relayed to your device in real time. We do not store these readings — they pass through our systems only long enough to deliver them to your lock screen, Live Activity, or widget.
- Device and push tokens — identifiers issued by Apple (APNs device tokens, Live Activity push tokens, and a widget-scoped token) used solely to deliver notifications and widget updates to your device.
How we use this information
Data is used only to operate the app: authenticating you, fetching glucose data from the Nightscout server you connect, and pushing that data to your device's lock screen, Live Activity, and widgets. Glucose readings are relayed in real time and are not retained afterward. We do not use your data for advertising, and we do not sell or share it with third parties.
Third-party services
Your CGM data is retrieved directly from the Nightscout server you configure, which is under your own control and subject to its own hosting and privacy practices. Notifications are delivered through Apple Push Notification service (APNs), which requires your device token to route the notification.
Data retention and deletion
Account information and Nightscout connection details are retained for as long as your account is active. Glucose readings are not stored and are not retained after delivery. You can remove a connected Nightscout server at any time from the app's account settings. To delete your account and all associated data entirely, contact us using the email below.
Security
Credentials are encrypted at rest, and all traffic between the app and our backend is encrypted in transit (HTTPS).
Children's privacy
Glucosly is not directed at children under 13, and we do not knowingly collect information from them.
Changes to this policy
If this policy changes, the "Last updated" date above will be revised accordingly.
Contact
Questions about this policy or your data can be sent to beta@glucosly.com.