Do Screen Time Apps Sell Your Data? (2026)

Richard Andrews
Richard Andrews ·9 min read
XX LinkedInLinkedIn
X LinkedIn
Smartphone with a glowing shield on screen and a data trail fading out before it leaves the device, tagged PRIVATE

An app blocker sits on top of unusually intimate data. It knows which apps you reach for, how often you fail, and what time of night you keep reaching. That is a sharper portrait of a person than most analytics ever get, which makes the question fair: are these companies selling it?

The answer, after reading five published privacy policies in full on 30 July 2026, is no. Not one of them says it sells personal data, and three commit to it in writing. That result is duller than the question implies, so this piece covers the more useful part: what these apps actually collect, where the differences really are, and how to check any of this yourself.

The ceiling is set by Apple, not by promises

Before any individual policy matters, one structural fact does.

Every third-party app blocker on iPhone is built on Apple's Screen Time API, the framework Apple calls FamilyControls. That framework is deliberately narrow. It lets an app shield apps and categories you have selected, and unshield them. It does not expose browsing history, keystrokes, messages, photos, or anything you view inside another app. A developer building on it cannot see your content, because iOS never hands it over.

This matters more than any promise in a policy document, because it is enforced by the operating system rather than by a company's good intentions. The practical implication: the worst realistic privacy outcome in this category is a company knowing that you blocked Instagram and unlocked it at 11pm, not a company reading your messages. Anyone building on this API runs into its limits fast, as covered in Apple's Screen Time API and where it breaks.

That is the floor. Everything below is about where each company chose to sit above it.

What each policy actually says

Checked 30 July 2026 against each company's published privacy policy.

App Account required Blocking data location Explicit no-sale commitment Third-party services named
Habit Doom No On device only Yes PostHog (anonymous, opt-out)
Opal Not to start On device Yes, unusually strong Service providers, not named individually
Freedom Yes, for purchase Account and server based Yes Google Analytics, Microsoft Clarity, Meta Pixel
ScreenZen No, for core blocking On device Yes, no sharing at all Firebase (optional social), OpenPanel
One Sec No, offline by default Offline by default Not stated directly TelemetryDeck, Paddle, Hetzner, Sendgrid, Typeform

Opal

Opal's policy carries the strongest single sentence of the five. It promises not to disclose or sell personal data to unrelated third parties, and adds the phrase "under any circumstances, ever."

What it does collect is real, though. Opal lists contact information and user identifiers as data linked to you, plus a phone number if you use its social features. Crash reports, most-used features, install date, and open counts are collected as data not linked to you. Its social features, which are opt-in, involve daily aggregate screen time, hashed phone numbers, and friend connections. The company states that private app-usage data stays on the device rather than on its servers.

Freedom

Freedom is the most data-collecting of the five, and the reason is architectural rather than sinister. It syncs blocks across phone, laptop, and tablet, and cross-device sync requires an account and a server. So the policy covers name, billing address, credit card details, and log data including IP address.

On selling, it is unambiguous: it does not sell or trade personally identifiable information. It also states that it does not track, store, retain, or transmit your app or website use, with local analytics being opt-in.

The detail worth flagging is the third-party list. Freedom shares depersonalised data with Google Analytics, Microsoft Clarity, and Meta Pixel. Meta Pixel is an advertising and attribution tool, and its presence in the stack of a digital-wellbeing company is at minimum an interesting choice. To be precise about what this is and is not: this is website and marketing analytics receiving depersonalised data, not the app shipping your blocklist to Facebook. It is still the only advertising-adjacent service named by any of the five.

ScreenZen

ScreenZen states that settings and data relating to core blocking functionality are stored only on your device, and that it does not share its collected information with third parties.

Its optional features are where data leaves. Social accountability and its halo hardware store an email address, username, and profile picture in Google's Firebase, along with aggregate daily screen time, chosen shared interactions, daily app opens, streaks, and friend information. Analytics run on a self-hosted instance of OpenPanel, which is a meaningfully different posture from handing the same events to a large ad-tech platform. More on how the free tier works in our ScreenZen breakdown.

One Sec

One Sec's stated default is that your data stays offline, with processing only when you opt into support, feedback, subscriptions, or iCloud sync.

Its policy names its partners rather than describing them in the abstract, which is good practice: TelemetryDeck for analytics, Paddle for payments, Hetzner for hosting, Sendgrid for email, Typeform for surveys, and Apple HealthKit for sleep data if you connect it. TelemetryDeck is itself a privacy-oriented analytics product, and Hetzner is EU-hosted. No advertising or profiling service appears anywhere in the list.

The one gap: unlike the other three, One Sec's policy does not directly address selling data. Nothing suggests it does, and its partner list is clean, but the explicit sentence is absent where competitors chose to include one.

Habit Doom

For completeness, and with the obvious caveat that this is our own app.

Habit Doom requires no account. Habit names, check-in records, streaks, calendar data, app selections, reminders, and settings are stored on the device and are never transmitted to any server. Because there is no account, there is no server-side profile to sell even in principle. The trade-off is real and worth stating plainly: data stored only on device is permanently gone if you delete the app or lose the phone.

Analytics run through PostHog and exclude names, email addresses, habit names, check-in data, the names of apps you lock, and your IP address, which is anonymised before storage. Analytics can be switched off in app settings.

Where the real differences are

Selling data turns out to be the wrong question. Three differences actually separate these apps.

Whether an account is required. No account means no server-side profile. This is the single biggest structural difference, and it splits the field cleanly: Habit Doom, ScreenZen's core features, and One Sec's default mode need none, while Freedom needs one by design.

Whether blocking data leaves the device. Local-only storage means a breach at the company cannot expose your blocklist, because the company never had it.

Which third-party services the company chose. A self-hosted analytics instance, a privacy-focused analytics vendor, and Meta Pixel are three very different decisions, and they are the clearest signal of how a company thinks about this when nobody is watching.

Notice that none of these show up in App Store marketing. They only appear in the policy.

Habit Doom
Lock distracting apps until your habits are done. No sign-in required.
★★★★★ 5.0 on the App Store
AppleDownload Free

How to check any app in two minutes

This method works for any app, not just the ones above.

  1. Open the App Store listing and scroll to App Privacy. Apple requires developers to declare what they collect, split into data linked to you and data not linked to you. Declarations are self-reported, but misdeclaring is an App Review violation, so it is a reasonable starting point.
  2. Open the privacy policy and search the page for "sell". A company that does not sell data almost always says so directly, because it is a selling point. Vagueness here is itself informative.
  3. Search for "third part" and look for named vendors. Companies confident in their choices name them. A policy that only refers to unnamed "trusted partners" is telling you less.
  4. Check whether an account is required to use the core feature. If not, most of the question resolves itself.
  5. Check where deleted data goes. Local-only apps often cannot recover anything, which is a privacy benefit and a backup risk at the same time.

The honest conclusion

The screen time category comes out of this better than most software categories would. There is no evidence any of these companies sells personal data, and Apple's API prevents the worst outcomes structurally regardless.

The differences that remain are about architecture and choice of vendors, not about villainy. If you want the smallest possible footprint, pick an app that needs no account and keeps its data on the device. If you want blocks that follow you across a laptop and a phone, you are accepting an account and a server, and that is a reasonable trade rather than a red flag.

The rest of the category comparison, including what each app actually blocks and how easily each is bypassed, is in our iPhone app blocker comparison.

All findings above were read from each company's published privacy policy on 30 July 2026. Policies change. The two-minute method above is more durable than any snapshot, including this one.

Frequently Asked Questions

None of the five apps checked in July 2026 state that they sell personal data, and three of them (Opal, Freedom, and ScreenZen) commit to it explicitly in their published policies. Opal's policy promises never to disclose or sell personal data to unrelated third parties. Freedom states it does not sell or trade personally identifiable information. ScreenZen states it does not share its collected information with third parties. One Sec's policy does not address selling directly but names no advertising or profiling partners.
No. Third-party blockers on iPhone are built on Apple's Screen Time API, also called FamilyControls. That framework only lets an app block and unblock apps and categories you have selected. It exposes no browsing history, no keystrokes, no messages, and no in-app content to the developer. This is enforced by iOS itself, not by developer promises, which means it holds regardless of what any individual policy says.
On the narrow question of what leaves your device, the apps that require no account and keep blocking data local are the strongest: Habit Doom, ScreenZen for its core blocking, and One Sec by default. Opal keeps app usage on device but collects contact details and user identifiers. Freedom is account-based by design because it syncs blocks across devices, which is a real feature trade-off rather than a privacy failing.
Two quick steps. Open the App Store listing and scroll to App Privacy, which shows Apple's declared categories for data linked to you and data not linked to you. Then open the company's privacy policy and search the page for the words sell, share, and third party. If a policy is vague about selling, that silence is the answer worth noting.
No. Habit names, check-ins, streaks, and the list of apps you lock are stored only on your device and are never transmitted to any server. Analytics run through PostHog and are anonymous, excluding your habit names, your check-in data, the apps you lock, and your IP address. You can opt out of analytics entirely in the app settings.

Keep Reading

Try Habit Doom

Lock your distracting apps. Complete your habits. Earn your screen time. It takes 30 seconds to set up.

AppleDownload Free
Habit DoomNo sign-in required
AppleDownload Free