Privacy Policy
Short version: the ZuckerDings app collects nothing: no account with us, no backend, no tracking; everything happens on your device or moves directly between your device and Abbott. This website is hosted on GitHub Pages, which (like any web server) processes visitors’ IP addresses in its logs.
Last updated: 22 July 2026. A German version is available: Datenschutzerklärung.
Controller
The controller responsible for data processing under the GDPR is the operator named in the Impressum / Legal Notice. Contact: support@poschenrieder.io.
Scope
This policy covers two things, which are deliberately separate: (1) the ZuckerDings iOS app, and (2) this website at zuckerdings.poschenrieder.io. The app and the website do not share data.
A note on health data
Glucose readings are health data (a special category of personal data under Art. 9 GDPR). ZuckerDings is built around that: your readings are processed exclusively on your device and in direct transfer between your device and Abbott’s servers. We operate no servers for the app, so we never receive, see, or store your glucose data at any point.
1. The ZuckerDings app
What the app collects
Nothing. The app has no backend server, no analytics, no advertising, no tracking, and no third-party SDKs that collect data. We do not create an account for you, and we never receive, see, or store any of your information. On the App Store the app declares “Data Not Collected.”
Your LibreLinkUp credentials
To show live data you provide your own LibreLinkUp follower account email address and password, the same account you already use in Abbott’s LibreLinkUp app to follow a FreeStyle Libre sensor. These credentials:
- are stored only in the iOS Keychain on your device;
- are shared with the ZuckerDings widget through a private, on-device App Group container so the widget can refresh;
- are never transmitted to us or to any server we control. We operate no servers for the app.
Your glucose data
When you use live data, the app sends your LibreLinkUp credentials directly from your device to Abbott’s LibreLinkUp/LibreView cloud and receives your latest glucose readings in return. Those readings are cached locally on your device (in the App Group container) so the widgets can display them and show a “last updated” time. This data is not sent anywhere else. Abbott is an independent controller for the data processed through your LibreLinkUp account; its handling is governed by Abbott’s own terms and privacy policy, over which we have no control.
Legal basis & on-device storage
Processing in the app serves only to provide the functionality you request (Art. 6(1)(b)/(f) GDPR, together with Art. 9(2)(a) GDPR for the health-data category, since you actively provide your credentials and thereby your explicit consent to that processing). Storing credentials and cached readings on your device is strictly necessary to deliver the service you explicitly requested, so it falls under § 25(2) TDDDG and requires no separate consent. The app is distributed via the Apple App Store; Apple may process download and usage data as an independent controller under Apple’s privacy policy.
2. This website
This website is static and hosted on GitHub Pages (GitHub, Inc., 88 Colin P. Kelly Jr. Street, San Francisco, CA 94107, USA), delivered via GitHub’s content-delivery network.
- Server logs. Like any web server, GitHub automatically processes technical access data when you visit — including your IP address, date and time, the page requested, referrer, and browser/user-agent string. This is necessary to deliver the site and to keep it secure and stable. Legal basis: Art. 6(1)(f) GDPR (legitimate interest in operating a secure website). We have no access to these logs.
- No cookies, no analytics, no tracking, no external fonts or CDNs. The site sets no cookies and loads no third-party scripts or fonts, so no consent banner is required (§ 25 TDDDG).
- International transfer. GitHub is a US provider (Microsoft group). Data may be processed in the USA on the basis of the EU–US Data Privacy Framework and/or EU Standard Contractual Clauses. See GitHub’s privacy statement.
Recipients
Abbott (only via your own LibreLinkUp account, when you use live data), GitHub (website hosting), and Apple (app distribution). We do not sell or share data with anyone else.
Retention
Cached readings stay on your device and are removed when you uninstall the app. Credentials are stored in the iOS Keychain, which iOS keeps even after the app is uninstalled; on the first launch after a reinstall the app detects this and removes them automatically. You can also remove them at any time by signing out in the app. Website server logs are retained and controlled by GitHub per its own policy; we hold no copies.
Your rights
Under the GDPR you have the right to access (Art. 15), rectification (Art. 16), erasure (Art. 17), restriction (Art. 18), data portability (Art. 20), and objection (Art. 21), and to withdraw consent (Art. 7(3)) where processing is based on it. Because the app collects no personal data about you and we operate no servers for it, we typically hold nothing to disclose or erase; for your LibreLinkUp/LibreView data, please contact Abbott, and for website server logs, please also refer to GitHub.
Right to complain
You may lodge a complaint with a data-protection supervisory authority, in particular the one for our location, the Berliner Beauftragte für Datenschutz und Informationsfreiheit, or the authority where you live or work.
Automated decision-making
We do not use automated decision-making or profiling within the meaning of Art. 22 GDPR.
Children
ZuckerDings is not directed at children and does not knowingly collect information from anyone, including children.
Changes
If this policy changes, the updated version will be posted here with a new “last updated” date.
Contact
Questions about privacy? Email support@poschenrieder.io or see the Impressum.