Privacy Policy
Last updated: September 30, 2026
Overview
Dive Kit ("the App") is developed and operated by Ronny Majani ("we", "us", "our"). We respect your privacy and are committed to protecting your personal data. This privacy policy explains how we handle information when you use Dive Kit: the mobile app, this website, shared plan links and the Dive Kit AI connector.
Data We Collect
Dive Kit is designed to work 100% offline. The core functionality of the app does not require an internet connection and does not transmit your dive planning data to any server.
Data stored locally on your device:
- Dive plans and calculations you create
- Your app preferences and settings (units, certification level, etc.)
- Subscription status (managed by Apple/Google)
Data we may collect:
- Crash reports and diagnostics, processed by Sentry, described below.
- Subscription and purchase information, processed by Apple App Store or Google Play Store and by RevenueCat, which manages subscriptions for us.
- Anonymous usage analytics (e.g. which features are used, button taps, screen views), processed by PostHog. This data is not linked to your identity and contains no dive planning inputs or personal information.
- A record that you accepted the warning and disclaimer, described below.
Crash reports (Sentry):
When the app crashes or hits an error, it sends a report to Sentry, stored in Sentry's EU region (Germany). A report contains the error and where in the code it happened, your device model, operating system and app version, a short diagnostic message where the app writes one (for example, that the subscription screen could not load), and a trail of the taps and app events just before it. For a small sample of sessions (about 5%), the app also sends performance timings.
A report never contains your IP address, your device's name, a user identifier, the app's console output, or any dive, gas or other values you entered. When the gas blender cannot find a blend, the report carries only error codes and counts.
Your acceptance of the warning and disclaimer:
Before you use the app, and again whenever the warning and disclaimer
changes, the app asks you to accept it. The app stores which version you accepted and
when, on your device. If anonymous usage analytics is on, the app also sends a
disclaimer_accepted event to PostHog with the same version and time, the app
version, your platform (iOS or Android) and the app's language. It carries no name, email or
other identifier beyond PostHog's anonymous device ID. We keep it as a record that the
warning was shown and accepted. If you have opted out of analytics, only the copy on your
device exists.
Data We Do Not Collect
- Personal identification information (name, email, phone number)
- Location data
- Dive planning data or calculation inputs
- Personal usage patterns linked to your identity
Third-Party Services
The App uses the following third-party services:
- Apple App Store / Google Play Store, for premium feature purchases and subscription management
- PostHog, for anonymous usage analytics to help us understand which features are used and improve the app. No personal data or dive planning inputs are sent.
- Sentry, for crash reports and diagnostics, as described above.
- RevenueCat, for managing subscriptions and purchases. It receives an anonymous ID it creates for your install, your purchase receipts from Apple or Google, and your device platform. If usage analytics is on, it also receives PostHog's anonymous ID, so purchases can be counted alongside anonymous usage. It receives no name, email or payment details.
These services have their own privacy policies:
Opting Out of Analytics and Crash Reports
One switch in the app's Settings, Analytics and crash reports under Privacy & Legal, turns off both anonymous usage analytics and crash reports, straight away. When it is off, nothing is sent to PostHog or Sentry, and PostHog's anonymous ID is not passed to RevenueCat. Turning it off does not affect any app functionality. Crash reports and the ID passed to RevenueCat follow this switch from app version 2.11.3; earlier versions send them regardless of it.
Website Analytics
This website (divekit.app) uses Google Analytics 4 to measure traffic and understand how visitors use the site. IP addresses are anonymised and no advertising or cross-site tracking features are enabled.
We use Google Consent Mode v2: analytics cookies are disabled by default until you accept them via the cookie banner shown on your first visit. If you reject, Google Analytics receives only aggregated, cookieless signals and no identifiers are stored on your device. Your choice is remembered in your browser's local storage, clear your site data to be prompted again.
See Google's Privacy Policy for details on how Google processes this data.
Data Security
All dive planning data is stored locally on your device and is not transmitted to external servers. We do not have access to your dive plans or personal settings.
Backups
Dive Kit can write everything it keeps on your device (settings, profile, certifications and their card photos, gear, saved deco plans and checklists) into a single backup file, and read it back later. The file is plain, unencrypted JSON. It contains the personal details you entered in the app, which may include your name, date of birth, insurance details, certification numbers and photographs of your certification cards.
You choose where the file goes. Dive Kit hands it to your device's own share sheet, so the destination is whichever app or service you pick: Files, iCloud Drive, Dropbox, Google Drive, AirDrop, mail, or anything else installed. Once you send it somewhere, that service's own privacy policy governs it.
Dive Kit operates no server and receives no copy of your backup. Nothing leaves your device unless you save or share a backup file yourself, or switch on the optional automatic iCloud backup described below, which writes the same file to your own iCloud account. We cannot read, recover or delete a backup file for you. Because the file is not encrypted, anyone who obtains it can read its contents. Store it somewhere you trust and delete backups you no longer need.
Automatic iCloud backup (iPhone and iPad)
If you switch this on, Dive Kit writes the same backup file to your own iCloud Drive and keeps it up to date in the background. It goes to your Apple account, under Apple's terms, and nowhere else: we receive no copy and have no access to it. It is off until you turn it on, and turning it off stops the writes. The file stays in your iCloud Drive under "Dive Kit" until you delete it, which you can do from the Files app.
Restoring a backup replaces the data on the device with the contents of the file. Your subscription is not part of a backup: it belongs to your App Store or Google Play account and is recovered with "Restore purchases".
Dive Kit for AI Assistants (MCP Server)
Dive Kit runs a server at mcp.divekit.app that AI assistants such as ChatGPT, Claude and Gemini can call to plan dives (see Dive Kit for AI assistants). It works without sign-in and without an account.
What the server receives
The server receives the dive inputs your assistant sends, such as depths, times, gases and cylinders. It uses them only to compute the answer and returns the result to your assistant. It does not store them.
What we keep
- None of your dive inputs, results or share links.
- One log line per request with the tool name, the outcome, the response time and size, and whether the call came from a known AI host or a direct caller. It contains no request content, no IP address and no identifier.
- Error reports, processed by Sentry. They contain no dive inputs, request or response content, headers, IP addresses or user identifiers.
- Anonymous usage events, processed by PostHog: which tool ran, a few setting choices from a fixed list (for example metric or imperial, open circuit or CCR), the outcome, timing and response size, the name and version the AI client reports for itself, and an anonymous rate-limit bucket (a one-way hash, shared by every user of the same AI host). They contain no depths, times, gases or other inputs, and create no person profile.
Your AI assistant
The conversation itself happens in your assistant, and OpenAI, Anthropic or Google process it under their own privacy policies. We do not receive your conversation, only the inputs the assistant sends to a Dive Kit tool.
Questions about the server: hello@divekit.app.
Shared Plan Links
A shared plan link carries the plan inside the link itself. When someone opens it, their browser requests the page from divekit.app like any other web page, and the page decodes the plan in their browser. We keep no copy of shared plans. Cloudflare, which hosts this website, handles the request under its own privacy policy. Website analytics records a visit to the shared-plan page without the plan data in the link. Anyone you send a link to can read the plan in it, so share it only with people you want to see it.
Children's Privacy
Dive Kit is for adults: our Terms of Use require you to be at least 18. It is not intended for children, and we do not knowingly collect personal information from anyone under 18.
Changes to This Policy
We may update this privacy policy from time to time. We will notify you of any changes by posting the new policy on this page and updating the "Last updated" date.
Contact Us
If you have questions about this privacy policy, please contact us at hello@divekit.app.