questionnaires

Published by Floriva · Updated 2026-05-01 · How Floriva checks its guides

Cloud vs. Local Storage: Where Should Your Cycle Data Live?

Assess whether cloud-synced or on-device storage is the right fit for your period tracking based on your privacy needs, device habits, and risk tolerance.

Cloud and local storage offer fundamentally different tradeoffs for cycle data. This assessment helps you decide which tradeoffs you can accept.

Every period tracker stores your data somewhere. That "somewhere" determines who can access it, what happens if the company gets hacked, and whether a court order can force them to hand it over. Cloud and local storage sit at opposite ends of a tradeoff between convenience and control.

This assessment helps you figure out which end fits you.

Question 1: How Many Devices Do You Use?

Where do you want to access your cycle data?

  • Option A: One phone. That's it. On-device storage works perfectly. You don't need sync because there's nothing to sync to.

  • Option B: Phone and tablet, or phone and computer. Cross-device access requires either cloud sync or manual export and import. This is where cloud storage becomes genuinely useful.

  • Option C: I switch phones often or use work and personal devices. Cloud storage makes device transitions easier. On-device storage means moving data manually each time.

Multi-device use is the strongest argument for cloud storage. If you only use one phone, there's no convenience benefit to the cloud.

Question 2: How Do You Feel About Data Loss Risk?

On-device data can be lost if your phone is lost, stolen, or destroyed.

  • Option A: I'd be annoyed but I could rebuild. Cycle history is recoverable from memory for the basics (approximate period dates). You're okay with the risk.

  • Option B: Losing years of data would be a real problem. You need a backup strategy. This could be cloud sync, encrypted local backups, or periodic manual exports.

  • Option C: I already back up my phone regularly. Device-level backups (iCloud backup, Google backup) may include app data. Check whether your tracker's data is included in those backups.

Data loss risk is real but manageable. Encrypted local exports, device-level backups, or periodic screenshots of your cycle calendar are all alternatives to trusting a company's servers.

Question 3: What's Your Primary Concern?

What worries you more?

  • Option A: Losing my data. You're prioritizing durability. Cloud storage is more durable because it exists independently of any single device.

  • Option B: Someone else accessing my data. You're prioritizing privacy. On-device storage is more private because the data exists in one place that you physically control.

  • Option C: Both equally. End-to-end encrypted cloud storage tries to solve both, but implementations vary in quality and auditability.

This is the core tradeoff. Every other question in this assessment is a variation of it.

Question 4: Do You Live in a State with Reproductive Health Restrictions?

Your legal context affects the risk level of cloud storage.

  • Option A: Yes. Cloud-stored cycle data can be reached by subpoena. This turns a privacy preference into a legal consideration. On-device storage puts a warrant requirement between your data and law enforcement.

  • Option B: No. Lower legal risk, but data breaches and company policy changes apply everywhere.

  • Option C: I'm not sure or the situation is changing. Choose an architecture that protects you regardless of jurisdiction. Laws change faster than data architecture does.

In restrictive states, the question isn't whether cloud storage is convenient. It's whether that convenience is worth the legal exposure. For specifics, see the state privacy assessment.

Question 5: How Much Do You Trust App Companies?

How much faith do you put in privacy promises?

  • Option A: I trust established companies with good track records. Policy-based trust. It works until it doesn't. Flo's privacy promises came before their 2021 FTC consent order.

  • Option B: I trust the technology, not the company. Architecture-based trust. End-to-end encryption or on-device storage don't require trusting the company's intentions.

  • Option C: I don't trust any of them. On-device storage with no analytics SDKs is your only option. The company can't violate your trust if it never has your data.

Trust should be structural, not faith-based. A company that cannot access your data is trustworthy by design, not by promise.

Question 6: Would You Pay for Privacy Architecture?

Better storage models sometimes cost more.

  • Option A: I expect free apps to be private. They rarely are. Free cloud-stored apps often use data practices that undermine the privacy you expect.

  • Option B: I'd pay a reasonable amount for on-device or encrypted storage. Privacy architecture has development costs. Paying for a privacy-focused app aligns the business model with your interests.

  • Option C: I'd rather manage my own backups than pay for cloud sync. Self-managed privacy costs the least money and the most effort.

When the product is free and the storage is cloud-based, your data is part of the business model. Payment doesn't guarantee privacy, but it removes the incentive to monetize your data.

Your Results

Your storage recommendation:

On-device storage (mostly B answers on Q3/Q5, A on Q1, A or B on Q2): You prioritize privacy over convenience, use one device, and are willing to accept or manage data loss risk. Choose a tracker with on-device storage. Set up periodic exports as your backup strategy.

End-to-end encrypted cloud (C on Q3, B on Q1, B on Q2): You want both durability and privacy. Look for apps with E2EE, but verify the implementation. Read the zero-knowledge explainer to understand what makes E2EE meaningful versus cosmetic.

Standard cloud with caution (A on Q3, B on Q1, B on Q4): You're prioritizing convenience in a low-risk jurisdiction. This is the most common setup and the least private. Read the privacy policy, minimize optional data inputs, and understand that your data is on someone else's computer.

On-device, non-negotiable (A on Q4 or C on Q5): Your legal context or trust level makes cloud storage an unacceptable risk. On-device storage is your only option. Accept the data loss tradeoff and implement your own backup strategy through encrypted exports or device-level backups.

Where your data lives is not a feature. It's an architecture decision that sets your privacy floor. Choose the floor before choosing the app.

Definitions

Cloud storage
Data stored on servers operated by the app company or a cloud provider (AWS, Google Cloud). Accessible from multiple devices but also accessible to the company and potentially to legal orders.
Local/on-device storage
Data stored exclusively on your physical phone. The app company has no copy. Data loss risk if the device is lost or damaged.
End-to-end encryption (E2EE)
Encryption where only you hold the key. The server stores your data in encrypted form but cannot decrypt it. A legal order targeting the company produces only encrypted, unreadable data.

Quick answers to the obvious questions.

Is cloud storage or local storage better for period tracking?

Cloud storage offers convenience (cross-device sync, backup). Local storage offers privacy (no readable central copy, no subpoena target). The right choice depends on whether convenience or privacy is your priority.

Questions people ask before they switch.

What happens to my local data if I lose my phone?

If your data is only on-device with no backup, it's gone. Some on-device apps support encrypted local backups that you control, but this varies by app.

Is end-to-end encrypted cloud storage safe?

End-to-end encryption means the company cannot read your data. It's structurally stronger than standard cloud storage. However, implementation quality varies, and metadata (when you sync, how much data) may still be visible.