In the years since the US Supreme Court dismantled federal abortion protections, the intimate data quietly gathered by period tracking apps has taken on a gravity their designers may never have intended. Mozilla Foundation research reveals that the six most popular trackers vary wildly in how they guard reproductive health information — some sharing it with advertising giants and data brokers, others keeping it sealed on the user's own device. The gap between a company's privacy promises and its actual practices has always carried consequences; in a landscape where menstrual data can become cr
Period tracker apps expose intimate health data to advertisers, Mozilla warns
People deserve better. At the very least, you should know what's happening.
Why does it matter that Stardust sends data to RudderStack if the data doesn't include your name?
Because data is like a puzzle. Even without your name attached, if RudderStack has your pregnancy status, your birth control use, your mood patterns, and your symptoms, someone with access to that data—through a breach, a legal request, or a sale—could piece together who you are. And more importantly, they'd know intimate things about your body and choices.
But Stardust says RudderStack is contractually prohibited from selling it. Doesn't that protect people?
A contract is only as good as the company's ability and willingness to enforce it. Contracts get breached. Companies get hacked. And in the case of law enforcement, a contract doesn't stop a subpoena. The real protection would be if the data never left your device in the first place.
So Euki is the answer?
Euki shows what's possible. It proves you can build a period tracker that works without collecting data on servers, without accounts, without any of the infrastructure that creates risk. But most people use Flo or Clue because they're more popular, more polished. Euki exists in a different market.
Why would Flo and Clue collect more data than they need if they're not sharing it?
Because data is valuable for building better products, for understanding user behavior, for training algorithms. The companies argue they need it. But the question is: do they need to keep copies of it? That's where the real risk lives.
What happens if law enforcement asks for period tracker data?
That's the fear keeping people up at night. We don't know yet because it hasn't happened at scale. But we know police have used other tech company data to prosecute women. The infrastructure is already there. Period trackers would just be another door.
Is there anything users can actually do right now?
You can switch to Euki. You can use Flo or Clue's privacy settings to disable advertising tracking. You can use Anonymous Mode on Flo. But the real answer is regulation. Europe has it. America doesn't. Until that changes, you're choosing between imperfect options.
Il Polso
- Stardust, which markets itself with the tagline 'Your data is private. Period.', was found to be quietly routing pregnancy status, mood patterns, and physical symptoms to a third-party data company not mentioned in its privacy policy.
- Even Spot On, built by Planned Parenthood, exposes users when they access its AI chatbot or provider search — triggering a website that shares health-seeking behavior with Google, TikTok, Microsoft, and Pinterest.
- The 2022 overturning of Roe v. Wade transformed this from a consumer inconvenience into a legal threat: law enforcement could subpoena period tracker data to build criminal cases against women in states where abortion is banned.
- Euki stands as proof that a safer model exists — storing all data locally, requiring no account, and even offering a decoy mode to display false information if a phone is seized.
- Flo and Clue offer stronger protections than most but still collect more data than necessary and store it on servers vulnerable to breaches or government requests — and Flo's history includes a 2021 FTC settlement over sharing data it had promised to protect.
- Privacy experts and researchers are calling for US national legislation to match European standards, warning that without it, choosing an app becomes a high-stakes calculation about which company you trust with data that could alter your life.
In the years since the US Supreme Court dismantled federal abortion protections, the intimate data quietly gathered by period tracking apps has taken on a gravity their designers may never have intended. Mozilla Foundation research reveals that the six most popular trackers vary wildly in how they guard reproductive health information — some sharing it with advertising giants and data brokers, others keeping it sealed on the user's own device. The gap between a company's privacy promises and its actual practices has always carried consequences; in a landscape where menstrual data can become criminal evidence, that gap now carries the weight of a woman's freedom.
A period tracking app called Stardust promises users that their data is private — its website says so plainly. But new research from the Mozilla Foundation tells a more complicated story. Mozilla examined six popular period trackers and found a landscape of wildly inconsistent privacy practices, some apps quietly funneling intimate health information to Google, Meta, TikTok, and companies most users have never heard of. None of it is necessarily illegal. But since the US Supreme Court overturned federal abortion protections in 2022, privacy experts have grown increasingly alarmed that the detailed reproductive data these apps collect could reach law enforcement and be used against women in criminal cases.
Stardust drew the sharpest scrutiny. Mozilla found the app sending users' health data — including pregnancy status, birth control use, mood, alcohol consumption, and specific physical symptoms — to a data management company called RudderStack, a detail absent from Stardust's privacy policy. The company defended the arrangement, saying RudderStack acts only as a technical pipeline and is contractually barred from selling the data. But Mozilla researcher Shoshana Wodinsky argued the core problem remains: users simply don't know what's happening to their most intimate information.
Spot On, created by Planned Parenthood, presented a different vulnerability. The app itself doesn't share data externally, but when users access its AI chatbot or provider search tool, it opens Planned Parenthood's website — which shares health-seeking behavior with AB Tasty, Google, Microsoft, TikTok, and Pinterest, with no way for users to opt out.
Not every app failed the test. Euki emerged as what Mozilla called squeaky clean: it stores all data locally on the user's device, requires no account, and even includes a decoy mode that displays fake information if someone else gains access to the phone. Its existence proves a more protective model is achievable.
Flo and Clue landed in the middle — neither shares health data with third parties, and both offer meaningful privacy controls. But both collect more data than necessary and store it on their own servers, creating exposure to breaches or legal requests. Flo pointed to an Anonymous Mode that separates identity from health data, and noted it has never received a subpoena it would not fight. Clue's chief executive stated the company has never disclosed private health data to any authority. Yet Flo's record includes a 2021 FTC settlement over sharing sensitive user data with Meta and Google despite promising otherwise — and the company later expanded its advertising partnerships, suggesting the commercial pull toward looser data practices is persistent.
The broader stakes are clear. In a country where abortion is increasingly criminalized and police have already used tech company data to prosecute women, period tracker data represents a new and specific vulnerability. Mozilla researcher Geoghegan put it plainly: people live in a world that has combined ubiquitous surveillance with the criminalization of abortion. The United States, unlike Europe, has no national privacy law to protect this kind of sensitive information. Until it does, the choice of which app to use is not merely a matter of convenience — it is a question of which company a woman is willing to trust with data that could, in the wrong hands, change her life.
A period tracking app called Stardust promises users that their data is private. The company's website is blunt about it: "Your data is private. Period." But according to new research from the Mozilla Foundation, the creators of Firefox, that promise may mean something very different to Stardust than it does to the people using the app.
Mozilla investigated six popular period trackers—Flo, Clue, Stardust, Spot On, Period Calendar, and Euki—to understand how they handle intimate reproductive health information. What researchers found was a landscape of wildly inconsistent privacy practices. Some apps have built strong walls around user data. Others funnel information to Google, Meta, TikTok, and companies most users have never heard of. None of this is necessarily illegal. But it matters now in ways it didn't before. Since the US Supreme Court overturned federal abortion protections in 2022, privacy experts have grown increasingly worried that the detailed menstrual and reproductive information these apps collect could end up in the hands of law enforcement and be used against women in criminal cases.
Stardust emerged as the most troubling case in Mozilla's analysis. The app sends users' health information to a data management company called RudderStack—a detail that doesn't appear in Stardust's privacy policy. The data being transferred includes pregnancy status, birth control use, mood patterns, alcohol consumption, and specific physical symptoms like tender breasts and stomach cramps. A Stardust spokesperson defended the practice, saying RudderStack functions only as a technical pipeline to route data into the company's own analytics systems, and that the data shared doesn't include identifying information like names or contact details. The company also noted that RudderStack is contractually prohibited from selling the data or using it for its own purposes. Still, privacy researcher Shoshana Wodinsky, who conducted Mozilla's tests, argued that the fundamental problem remains: "People deserve better. At the very least, you should know what's happening."
Spot On, an app created by Planned Parenthood, presented a different kind of problem. The app itself doesn't share data with outside companies or attempt to track users. But when people use certain features—an AI chatbot called Roo or a tool to search for healthcare providers—the app opens Planned Parenthood's website in a browser. That website, Mozilla found, is less secure. It shares information about what kind of healthcare users are seeking with an analytics company called AB Tasty. This includes whether someone is looking for HIV testing or gender-affirming care. When users access Planned Parenthood's website through the Spot On app, the site also shares data with Google, Microsoft, TikTok, and Pinterest, with no way for users to prevent it.
Not all the apps studied performed equally poorly. Euki stood out as what Mozilla called "squeaky clean." Unlike the others, Euki stores all health information directly on users' devices, never sending it to company servers. Users don't even need to create an account, so they can remain completely anonymous. The app even includes a decoy feature that displays fake, harmless information if someone gains access to a phone and tries to look at the data. Euki's approach proves that a different model is possible.
Flo and Clue, two of the most widely used period trackers, fell somewhere in the middle. Neither app shares health information with third parties, and both offer granular privacy controls that users can adjust. But both apps collect far more health data than necessary and store it on their own servers rather than keeping it on users' devices. That creates vulnerability. Even if the companies never intentionally share the information, the mere fact that they maintain copies of it creates exposure to data breaches or legal requests from governments. Flo's chief spokesperson, Samantha Wannemacher, pointed to an "Anonymous Mode" feature that ensures no one—including Flo itself—holds both a user's identity and their health data simultaneously. She also noted that Flo has never received a subpoena for user data, which the company said it would fight. Clue's chief executive, Rhiannon White, stated flatly: "We have never disclosed private health data to any authority, and we never will."
But history matters. Flo settled a case with the US Federal Trade Commission in 2021 over allegations that it had shared sensitive user information with Meta, Google, and others despite promising to keep data private. While Flo's practices improved after that settlement, the company later expanded its privacy policy to include new advertising partnerships. The pattern suggests that even when companies tighten their practices, the pressure to monetize user data through advertising can pull them back toward looser standards. Other apps have faced similar scrutiny. A 2022 investigation found lists of individual devices using Clue, Period Calendar, and other period trackers being sold online, though Clue's leadership disputed the source of that data.
The stakes of these privacy failures have shifted dramatically. In a country where abortion is increasingly criminalized, where police have already obtained other kinds of data from tech companies and used it to prosecute women, the intimate details stored in period tracking apps represent a new kind of vulnerability. Mozilla researcher Geoghegan framed the larger issue: "People are rightfully concerned, because we live in a world that has combined ubiquitous surveillance with the criminalisation of abortion." She also noted that privacy fears themselves carry a cost—they cause anxiety that prevents people from using tools designed to improve their health. The research underscores a broader reality: the United States, unlike Europe, has no national privacy law to protect this kind of sensitive information. Without regulation, the choice of which app to use becomes a calculation about which company you're willing to trust with data that could, in the wrong hands, change your life.
Citazioni salienti
People are rightfully concerned, because we live in a world that has combined ubiquitous surveillance with the criminalisation of abortion.— Mozilla researcher Geoghegan
We have never disclosed private health data to any authority, and we never will.— Rhiannon White, Clue's chief executive