What does "local-first" actually mean here?
Your food logs, weight, recipes, workouts, and protocol logs are stored in a SQLite database on your device. Core tracking works without a BodyDex account, and there is no centralized server-side database of user food entries. It's an architecture statement, not a slogan.
Do AI features break the privacy model?
AI features are the one place data leaves the device, and the scope is narrow: only the photo you scan or the question you ask is sent for processing. Photos aren't saved server-side and aren't used to train models. The result comes back and is stored locally like everything else.
Does BodyDex show ads or use ad SDKs?
No. There are zero advertising SDKs in the app. BodyDex is funded by Premium subscriptions, not by monetizing your eating data.
What happens to my data if I delete the app?
It's gone, irrecoverably. That's the honest flip side of no cloud copy: nothing survives an uninstall except what you exported. Run Profile → Export Data before deleting, reinstalling, or switching phones.
Can I use BodyDex on two devices?
Not with synced data today — multi-device sync is on the roadmap. Right now each install keeps its own local database, and exports are the way to move data between devices.
Is my data encrypted or immune to breaches?
We make architecture claims, not invincibility claims. Your data sits in a local database on your device and inherits your device's protections (passcode, device encryption, your OS backup settings). What we can say factually: a breach of BodyDex servers can't leak a food-entry database that doesn't exist there.