Skip to main content

What your period-tracker app might be sharing — and how to check

Period-tracking apps handle sensitive data. Here is what they typically share, with whom, and how to audit your own settings.

Period-tracking apps can be genuinely useful. They help you anticipate your cycle, notice patterns, and have more informed conversations with your healthcare provider. But they also collect some of the most sensitive health data imaginable — and how that data is handled varies widely between apps.

What data do period-tracking apps collect?

Most apps collect a combination of the following:

  • Cycle dates and length — when your period started and ended, how long it lasted
  • Symptoms — cramping, bloating, mood changes, headaches
  • Sexual activity and fertility indicators — intercourse logs, basal body temperature, cervical mucus observations
  • Pregnancy-related information — whether you are trying to conceive, currently pregnant, or postpartum
  • Location data — in some cases, via phone permissions granted to the app

Some apps also prompt for weight, sleep quality, energy levels, and medication tracking. Together, this creates a detailed longitudinal health record.

Who might that data be shared with?

The answer depends heavily on the specific app and its privacy policy. Common data-sharing scenarios include:

Advertising networks and data brokers. The Norwegian Consumer Council’s 2020 report Out of Control found that several popular health and period apps shared personal data with large advertising platforms, often without adequate disclosure. Advertising networks can link this data to other identifiers, building detailed profiles over time.

Analytics providers. Many apps embed third-party analytics SDKs that automatically transmit device identifiers, behavioral data, and in some cases health-related events to external servers.

Research partners. Some apps offer an opt-in research program, but the terms are not always clearly explained. Others share de-identified data with research institutions — though re-identification is a known risk when data sets are detailed enough.

Potential legal disclosure. In some jurisdictions, data held by a company may be subject to subpoena or government request. This has become a concern in discussions about reproductive health data following changes to abortion law in several U.S. states.

How to audit your own app’s settings

Regardless of which app you use, these steps can help you understand and limit data sharing:

1. Read the privacy policy (yes, really)

Look specifically for the sections titled “Third-party sharing,” “Advertising,” or “Data sales.” If the policy says data may be shared with “partners” without naming them, that is a meaningful red flag. The EFF’s 2022 analysis found that several popular apps retained broad rights to share data without users fully understanding the scope.

2. Review app permissions on your phone

On iPhone: Settings → Privacy & Security → [category] (Location, Health, Contacts)
On Android: Settings → Apps → [App name] → Permissions

Revoke any permission that the app does not clearly need to function. Location access is rarely necessary for a period tracker.

3. Check whether the app sells data

Some apps have a “Do Not Sell My Personal Information” link (required under California’s CCPA for California residents). Submitting a request — even if you are not in California — can reveal what data the company holds and force explicit acknowledgment of your preferences.

4. Look for a data export or deletion option

Reputable apps provide a way to download or delete your data. If you cannot find this option, check the privacy policy for instructions, or contact the company directly. Under GDPR (for users in the European Economic Area) and several U.S. state laws, the right to access and delete your data is legally protected.

5. Consider local-only storage

Some apps offer a setting to store data exclusively on your device, without syncing to the company’s servers. If privacy is a priority, this is worth enabling — though it typically disables cross-device sync and some AI-based insights.

Questions worth asking before choosing any health app

  • Does the company publish a clear, readable privacy policy — not just a wall of legal text?
  • Does it explicitly commit to never selling health data?
  • Is the app’s business model based on subscriptions, or on advertising and data?
  • Does the app work offline, with data stored locally?
  • Has the app undergone any independent security or privacy audit?

There are no universally “safe” answers to these questions, but they can help you make an informed decision based on your own priorities and risk tolerance.

A note on proportionality

No digital tool is completely without risk. The goal is not to avoid all health apps, but to choose them thoughtfully and understand what you are sharing. Reading a privacy policy, checking permissions, and preferring apps with transparent data practices are concrete steps that take less than 15 minutes — and they apply equally whether you use a dedicated period tracker, a general health app, or a wearable device.

If you are particularly concerned about sensitive reproductive health data, opting for apps that store data locally and do not share with advertising networks is a reasonable starting point.


This article is for informational purposes only and does not constitute legal or medical advice.

  1. FTC Report: Mobile Security Updates and the Security of Third-Party Applications (2018)
  2. EFF: Period Tracker Apps: What Do They Know About You? (2022)
  3. Surveillance Technology Oversight Project (STOP): Statement on Menstrual Surveillance (2022)
  4. Norwegian Consumer Council: Out of Control — How Consumers Are Exploited by the Online Advertising Industry (2020)
  5. Harding Center for Risk Literacy: Fact Box on menstrual cycle tracking apps (2022)