Behold | Privacy Policy

Last Updated: 9 June 2026

This update (9 June 2026) adds disclosures about limited first-party product analytics through PostHog and website subscription processing through Stripe. It preserves the prior disclosures about magic link (passwordless email) sign-in and Google Firebase Authentication for customers who subscribe through our website before installing the iOS app.


Introduction

Thank you for using Behold. At Behold, we believe in the power of technology for human progress, productivity, and wellbeing. We also believe in clear and unambiguous rules when it comes to privacy.

Our guiding principles are simple:

  • Your core app data stays on your device: Your practices, boundaries, schedules, and app selections are stored locally on your device, not on our servers.
  • Minimal account data: For customers who subscribe through our website, we create a lightweight account tied only to your email address so we can authenticate you on the iOS app via a magic link. We do not store names, profile information, or any other personal identifiers.
  • Limited product analytics: We collect limited pseudonymous product analytics so we can understand onboarding, subscription activation, and whether core features are working.
  • No advertising or attribution tracking: We do not use advertising identifiers, do not run advertising attribution, and do not track you across apps or websites.
  • No selling of data: We will never sell personal data to third parties.
  • You are the customer: Behold is funded by subscriptions, not advertising.

Data Controller

Next Wave Apps is the data controller responsible for your personal data.

  • Company: Next Wave Apps
  • Address: Mathenesserdijk 397B, 3026GE, Rotterdam, The Netherlands
  • KVK Number: 98243691
  • Contact Email: [email protected]
  • Founder: Ralph Hermeling

How Behold Stores Your Data

On-Device Data Storage

Core data created while using the Behold app is stored locally on your device, including:

  • Practices and boundaries
  • Schedules and preferences
  • App selections for focus and restrictions
  • App state and configuration

This data is:

  • Not transmitted to Next Wave Apps servers
  • Not backed up to our infrastructure
  • Fully controlled by you through your device

If you delete the app, this data is removed unless restored via your device's own backup mechanisms (e.g. iCloud device backup, managed entirely by Apple).

Account Data Storage

Account data (email address and authentication identifiers) is stored by our authentication provider, Google Firebase Authentication, on Google infrastructure. See Accounts and Authentication below.

Product Analytics Storage

Limited product analytics data is sent to and stored by PostHog Cloud US. See Product Analytics below.


Screen Time / FamilyControls Data

Behold uses Apple's FamilyControls, ManagedSettings, and DeviceActivity APIs to enable focus and presence features.

The app processes only the information needed to enable the restrictions you choose, such as:

  • App bundle identifiers you explicitly select to restrict
  • Boundary and practice schedules
  • App categories selected by you

Important clarifications:

  • We do not collect app usage durations
  • We do not monitor activity in other apps
  • We do not transmit Screen Time data off your device
  • We do not transmit selected app names, selected website domains, app tokens, category tokens, or web domain tokens to PostHog

All Screen Time–related processing happens entirely on-device, using Apple-provided APIs.


Accounts and Authentication

When an account is created

An account is created for you if you start a subscription or trial through our website (beholdhq.com) before installing the iOS app. The account allows you to sign into the iOS app and access the subscription you purchased on the web.

Customers who download Behold directly from the App Store and subscribe through Apple in-app purchase do not have an account with us. No login is required for this path.

Data collected for authentication

For accounts, we process:

  • Your email address (provided during web checkout)
  • A unique user identifier generated by our authentication provider
  • Authentication timestamps and session tokens required to keep you signed in

How magic link login works

When you request to sign in, we send a one-time login link to your email address. Tapping the link in the iOS app verifies your identity and creates an authenticated session on your device. We do not store passwords because there are none.

Authentication provider

We use Google Firebase Authentication (Google Ireland Limited / Google LLC) to manage accounts and send magic links. Firebase processes your email address, user identifier, and authentication events on Google infrastructure. Firebase Authentication data may be stored on Google servers located in the United States.

Google acts as a data processor on our behalf under a Data Processing Agreement, and international data transfers are covered by Standard Contractual Clauses and the EU–U.S. Data Privacy Framework.

More information about Firebase privacy practices: https://firebase.google.com/support/privacy


Subscription & Payment Data

Behold offers optional paid subscriptions.

Apple App Store

  • Apple processes all in-app purchases
  • Behold never receives credit card or payment details
  • Apple provides subscription status to the app

Superwall

  • Superwall is used to manage paywalls and subscription logic
  • Superwall may process limited subscription-related data (e.g. product identifiers, paywall impressions, conversion events)
  • This data is processed according to Superwall's own privacy policy

Website Subscriptions

If you subscribe through our website, your payment is processed by Stripe. Stripe may process billing details, payment method information, transaction records, and related fraud-prevention information according to Stripe's own privacy policy. Behold does not store payment card data on its own servers.


Product Analytics

Behold uses PostHog for limited first-party product analytics.

This is not advertising attribution, advertising measurement, or cross-app tracking. We do not use advertising identifiers, do not track you across apps or websites, and do not share analytics data with advertising networks or data brokers.

PostHog is configured in the iOS app with automatic application lifecycle capture, screen view capture, element interaction capture, rage-click capture, session replay, and surveys disabled. We send only explicit product events that help us understand whether Behold is working as intended.

Analytics events we collect

We may collect events about:

  • Onboarding progress
  • Screen Time permission being granted
  • Account activation
  • Grace pause starts
  • Discernment screen views
  • Aggregate counts of boundary and practice activations

Analytics data included with events

Analytics payloads are limited to:

  • Counts, such as app count, practice count, boundary count, and counter deltas
  • Template keys for boundary and practice activations
  • Duration minutes for grace pauses
  • Platform
  • Customer origin
  • Subscription channel
  • A pseudonymous analytics identifier

For app-onboarded customers, the analytics identifier is a Superwall alias. For web-acquired customers, the analytics identifier is a visitor identity created in the web funnel. We do not use your Firebase UID or email address as the PostHog analytics identifier.

Analytics data we do not send

We do not send the following to PostHog:

  • Email addresses
  • Names
  • Advertising identifiers (IDFA)
  • Selected app names
  • Selected website domains
  • App tokens, category tokens, or web domain tokens
  • Screen Time usage history
  • App usage durations
  • Browsing history
  • Message content
  • Session recordings or screenshots

Analytics choice

Behold currently collects this limited product analytics by default. Behold does not currently provide an in-app analytics toggle.

If you object to this processing or want us to delete analytics data associated with your identifier, contact [email protected].


Data We Collect Directly

Behold collects the following personal data directly:

  • Email address — used to (a) authenticate web-acquired customers via magic link login, and (b) respond to your inquiry if you contact us for support.
  • Authentication identifiers and session data — generated when you use magic link login (see Accounts and Authentication above).
  • Limited product analytics data — used to understand onboarding, account activation, and whether core features are working (see Product Analytics above).

We do not collect names, phone numbers, billing details, profile photos, or any other personal identifiers. We do not offer Sign in with Apple, Google, or other social logins.


What We Do NOT Collect

Aside from the email address and authentication data described above, Behold does not collect:

  • Advertising identifiers (IDFA)
  • Location data (GPS)
  • Contacts, photos, or media
  • Health or fitness data
  • Browsing history
  • Cross-app usage data
  • Advertising attribution data
  • Social login data (Apple ID, Google, etc.)
  • Sensitive personal data (religion, political views, etc.)

How We Use Your Data

We use data only to:

  1. Operate core app functionality
  2. Enable Screen Time–based focus features
  3. Authenticate web-acquired customers via magic link login
  4. Process subscriptions via Apple, Superwall, and Stripe
  5. Respond to user support requests
  6. Send optional notifications (practice reminders, service messages)
  7. Understand onboarding, account activation, and core feature usage through limited product analytics

Third-Party Services

Behold integrates only with the following third parties:

Authentication

  • Google Firebase Authentication (Google Ireland Limited / Google LLC) — processes email addresses and authentication events to enable magic link sign-in. Acts as a data processor on our behalf.

Subscriptions & Paywalls

  • Superwall — paywall and subscription management
  • Stripe — website subscription checkout, billing, and subscription management for web-acquired customers

Product Analytics

  • PostHog Cloud US — limited first-party product analytics, as described in Product Analytics above

Apple Frameworks

  • StoreKit
  • FamilyControls
  • ManagedSettings
  • DeviceActivity
  • Push Notifications

Website Hosting

  • Cloudflare — hosting for our public website only (no app or user account data is stored on Cloudflare)

We confirm that any third party with whom Behold shares user data — including those listed above — is contractually required to provide protection of user data equivalent to that described in this policy.


Cookies and Website Data

Our website (www.usebehold.com) uses only essential cookies required for basic functionality. We do not use advertising or tracking cookies.


Legal Basis for Processing (GDPR)

Under GDPR, we process personal data based on:

  • Contractual necessity: To provide subscriptions, authenticate web-acquired customers, and deliver app functionality
  • Legal obligation: To comply with tax and accounting requirements
  • Legitimate interests: To maintain app security, respond to support requests, and understand whether Behold's onboarding and core features are working through limited first-party product analytics

International Data Transfers

Authentication data processed by Google Firebase Authentication may be transferred to and stored on servers in the United States. Product analytics data processed by PostHog Cloud US is transferred to and stored in the United States. Website subscription and billing data processed by Stripe may also be transferred internationally.

Where required, these transfers are protected by appropriate safeguards such as Standard Contractual Clauses, Data Processing Agreements, and applicable Data Privacy Framework certifications.


Data Retention

  • On-device app data remains under your control and is removed when you delete the app (unless restored from your device's backup).
  • Account data (email address, user identifier, authentication tokens) is retained for as long as your account is active. You may request deletion at any time by emailing [email protected]; on deletion we remove your record from Firebase Authentication.
  • Product analytics data in PostHog is retained for up to 12 months unless deleted earlier.
  • Support emails are retained only as long as necessary to resolve your inquiry and meet legal obligations.
  • Subscription records held by Apple, Superwall, or Stripe are subject to their own retention policies and applicable law.

You may request deletion of any data we control at any time.


Your Rights

You have the right to:

  • Access your personal data
  • Request correction
  • Request deletion
  • Restrict or object to processing
  • Withdraw consent where applicable
  • Data portability
  • Lodge a complaint with your local supervisory authority (in the Netherlands: Autoriteit Persoonsgegevens)

To exercise these rights, contact: [email protected]


Children's Privacy

Behold is not intended for children under 13. We do not knowingly collect personal data from children under 13.


Changes to This Policy

We may update this Privacy Policy as Behold evolves. Material changes will be communicated through the app or website prior to taking effect.


Contact Us


As a digital wellbeing company, we want to bring you peace and balance in your use of digital technology. Privacy is core to your peace of mind, so we take extra care with it.

© 2026 Next Wave Apps. All rights reserved.

Logo Behold

Limit distracting apps so you can focus on God, relationships, and what truly matters. Helping you stay present through daily practices and boundaries

© 2026 All rights reserved.