Trust center
Privacy should be understandable.
Orbit is designed around a local-first default. This page explains what the app stores, which permissions are optional, and when data can leave your device.
No public download · No automatic cloud sync · No form submission
Data stored on your device
Orbit stores the information you choose to add in its local app database. This can include names and contact details, photos, relationship type, how you met, birthdays, locations, social links, notes, tags, check-in cadence and status, interaction history, imported-contact markers, feedback saved in the app, and app settings.
This information supports Orbit’s people list, Today view, weekly review, check-in timing, and interaction history. Orbit does not require an account for the local app experience.
Optional device permissions
- Contacts
- Used only when you choose contact import. You select which people to save. The Android app blocks write-contacts permission for this read-only flow.
- Notifications
- Used to schedule private, local check-in reminders. Reminder notifications show names, not relationship notes.
- Camera and photos
- Used only if you choose a profile photo for a person.
- Microphone
- Not required by Orbit.
Manual backup and restore
Automatic cloud sync is not part of Orbit’s local-first default. The app includes an advanced manual workflow that can upload a JSON backup to Orbit’s configured Supabase storage bucket after a service role key is entered on the device. That key is kept in the device’s secure storage.
A backup can contain contacts, tags, interaction history, feedback, import markers, and cadence settings. Treat both backup files and service role keys as sensitive. Restoring replaces the local database; notification consent remains specific to the device.
This website and beta requests
This static website has no account flow, analytics, cookies, or submission form. The beta request channel is not connected, so this site does not collect beta-request personal information.
Retention, deletion, and questions
Local records remain on your device until you edit or delete them, remove the app and its local data, or replace them through restore. Backups remain in the configured storage until they are removed there. Orbit cannot delete a backup it cannot access.
A public support contact has not been announced. Until it is, use the support guide and do not send private contact details, backup files, passwords, or service keys through unverified channels.
Effective: August 24, 2026