App for storing and managing personal health metrics, medical appointment records, and medical document attachments. All data is synced exclusively to your iCloud account and kept under your control.
This app did not meet two or more trust checks, has a critical issue in one, or carries a red flag.
The five trust checks
Quick Verdict
Best for: People who keep health data in their own iCloud
What It Means For You
Health and medical data stays on-device and syncs to the user's own iCloud account, not to developer servers. No behavioral analytics or advertising networks are integrated. RevenueCat is linked for subscription and in-app purchase management.
Quick Verdict
Best for: People who keep health data in their own iCloud
What It Means For You
Health and medical data stays on-device and syncs to the user's own iCloud account, not to developer servers. No behavioral analytics or advertising networks are integrated. RevenueCat is linked for subscription and in-app purchase management.
Method and Limitations
Static analysis only. CITT reviewed the code of this build without running the app, so runtime behavior was not observed. The findings below describe the analyzed build and may not reflect server-side controls or later versions. CITT makes no determination about compliance with any law or platform policy; it reports what the artifacts contain and cites the published guidance so a reader can compare.
Version diff is on the Developer plan. See developer plans.
Context Tags
Package
com.darlerkens.HealthCloud
Version
1.3.0 (build 4)
Analysis Date
Aug 13, 2026
Classes Analyzed
33,734
Feedback helps us improve our analysis
Build 1.3.0 keeps health and medical records local and under the user's own iCloud control. CITT assesses this build as Solid: the data storage design is privacy-protective and the network and code safety profiles are strong, though adding app-layer encryption for stored health records would raise the overall data protection posture.
Data Security: 1 finding (1 high)
Network Security: 0 findings
Code Safety: 0 findings
Privacy: 2 findings (2 medium)
Subscription and purchase data may be sent to RevenueCat servers for subscription and purchase management; runtime network traffic was not observed.
Third parties that may receive data from the app:
Security: 72/100
Privacy: 76/100
App Privacy Manifest
Apple's required-reasons API documentation (developer.apple.com, retrieved 2026-08-13) lists several APIs that require a declared usage reason in a PrivacyInfo.xcprivacy file. Build 1.3.0 does not include an app-level privacy manifest. Adding one could make the App Store privacy label more complete by explicitly declaring the APIs the build references.
AdServices Attribution and AppTrackingTransparency
Build 1.3.0 links the AdServices framework but does not link AppTrackingTransparency. Apple's App Store guidelines (developer.apple.com, retrieved 2026-08-13) recommend that apps using AdServices for attribution also implement AppTrackingTransparency to present a consent prompt before attribution measurement occurs. Whether AdServices attribution is used at runtime was not observed.
App Type: Personal health records tracker (sensitive personal data)
Classes Analyzed: 33,734
Third-Party Services: 2 (RevenueCat, Lottie)
Context Tags: health, sensitive_data
This security analysis was conducted by CITT (Can I Trust That), an independent security analysis service. The analysis is static code review of iOS applications, intended to help people make informed decisions about app security and privacy.
Developer: Darlerkens
Version: 1.3.0 (build 4)
Analysis Date: 2026-08-13
Package: com.darlerkens.HealthCloud
Developer not yet contacted