Privacy Policy
Last updated: August 9, 2026
Height Tracker is an Orangely project designed to keep child profiles and measurement histories on your device while clearly separating optional cloud processing.
1. Scope
This policy applies to Height Tracker at height-tracker.orangely.xyz. The service is intended for a parent, guardian, caregiver, or other responsible adult—not for children to use independently.
2. Data stored in your browser
The following information is stored in your browser's localStorage: child names, dates of birth, sex, parent heights, measurement dates, heights, weights, generated record IDs, language and unit preferences. Height Tracker has no accounts, database, advertising profile, or cloud-sync feature.
This local data remains on that browser profile unless you clear it, clear site data, use private browsing, or the browser removes it. Anyone with access to the same unlocked browser profile may be able to view it.
3. Optional AI processing
No AI request is made merely because you open the app, change language, switch children, or edit a record. AI runs only after you deliberately select an image or request an educational summary and complete the security check.
- Record image extraction: the selected JPEG, PNG, or WebP image is resized in the browser and sent to the Height Tracker Worker and Cloudflare Workers AI. The app does not save the image to D1, KV, R2, Durable Objects, Vectorize, or another application storage service.
- Growth summary: the request contains sex, completed age in months, a pre-calculated parent-based target range, language, and a date-free series of height and weight measurements. It excludes the child's name, date of birth, and individual measurement dates.
AI output can be inaccurate. Review extracted measurements before saving them and do not rely on generated summaries for medical decisions.
4. Security and operational data
Cloudflare provides hosting, HTTPS, rate limiting, bot protection, Turnstile, observability, and Workers AI. To prevent abuse, the Worker uses the connecting IP address together with the API route for rate limiting and sends the IP address with the Turnstile token to Cloudflare's Siteverify service.
Application logs are intentionally limited to operational metadata such as route, method, status, duration, event type, and a random request ID. They are designed not to contain child names, birth dates, measurements, images, AI prompts, or Turnstile tokens. Cloudflare may process network and service metadata under its applicable service terms and privacy policy.
5. Turnstile
Turnstile evaluates browser and network signals to distinguish people from bots. Cloudflare states that these signals can include IP address, TLS fingerprint, User-Agent, site key, and the associated origin. Cloudflare processes these signals for security and to improve bot detection. See Cloudflare's Turnstile Privacy Addendum.
6. Workers AI
Cloudflare treats prompts, images, and outputs as customer content. Cloudflare states that it does not use Workers AI customer content to train AI models or improve Cloudflare or third-party services without explicit consent. See Cloudflare's Workers AI data-usage documentation and Privacy Policy.
7. Cookies, analytics, sales, and advertising
Height Tracker's application code does not use advertising or behavioral-analytics cookies, sell personal information, or serve targeted advertising. Cloudflare security services, including Turnstile, may use strictly necessary signals or cookies as described in Cloudflare's policies.
8. Retention and deletion
You control the records stored in your browser. You can delete individual measurements in the app or remove all Height Tracker data through your browser's site-data controls. Clearing local data cannot delete copies that you exported or screenshots that you created.
The app does not maintain a server-side user profile that can be retrieved by name or email. Operational metadata processed by Cloudflare is retained according to Cloudflare account settings and applicable Cloudflare terms.
9. Children's privacy and your responsibilities
Adults should enter a child's information only when they are authorized to do so. Avoid uploading images that contain unnecessary names, addresses, identifiers, or unrelated people. Height Tracker is not intended to solicit information directly from children.
10. Your choices and questions
You may use the core manual tracker without invoking AI, but AI features require Turnstile. You may stop using the service and clear local site data at any time. Privacy questions or rights requests can be sent through the contact channel on the Orangely About page. Do not include child health information in an unencrypted message.
11. Changes to this policy
This policy may be updated when the service or its providers change. The date at the top identifies the current version. Material changes should be reviewed before continuing to use optional cloud features.