Fitbit
What syncs: steps, activity, sleep, and heart-rate data from your Fitbit account into Health Center.
Data flow: Fitbit's servers → the app's secure token proxy (tokens stay server-side, your phone holds only a session reference) → your device.
Disconnect: revoke access from the app\u2019s device settings or your Fitbit account. Tokens live server-side and are discarded on disconnect.
Strava
What syncs: recent activities and workout stats from your Strava account into Health Center.
Data flow: you log in at strava.com (OAuth2 — the app never sees your Strava password); the authorization code is exchanged for tokens through the app's server-side token proxy (tokens stay server-side, your phone holds only a session reference) → your device.
Disconnect: revoke access from the app's device settings or your Strava account at strava.com/settings/apps. Tokens live server-side and are discarded on disconnect.
Oura
What syncs: readiness, sleep, and activity data from your Oura Ring into Health Center.
Data flow: Oura app → Apple Health → your device. There is no direct Oura connection; the Oura app writes to Apple Health and the app reads it from there.
Disconnect: turn off the Oura → Apple Health sync in the Oura app, or revoke Health access in iOS Settings.
Apple Health
What syncs: workouts, steps, sleep, heart rate, and any other HealthKit data you approve, per-category.
Data flow: entirely on your iPhone — HealthKit never leaves the device, and the app reads only the categories you grant.
Disconnect: iPhone Settings → Privacy → Health → My Daily Tool, or revoke per-category.
Calendar feeds (ICS)
What syncs: events from any ICS calendar URL you add — Google Calendar exports, Outlook, team schedules.
Data flow: your calendar URL is fetched through the app's ICS proxy (so the feed URL itself stays private) and merged into the Planner.
Disconnect: Planner → calendar feeds → remove the feed. Events from that feed disappear with it.
Weather (Open-Meteo)
What syncs: forecasts for your routes and day plan — no account, no key.
Data flow: your approximate location goes to Open-Meteo's public API for the forecast you requested; nothing is stored server-side.
Disconnect: nothing to disconnect — weather is fetched only when you open a route or the forecast card.
News (World News API)
What syncs: headlines for the News card, fetched on demand.
Data flow: the app's server proxy calls the World News API and returns headlines; your reading list never leaves your phone.
Disconnect: remove the News card from Home. No fetch, no data.
Markets (CoinGecko)
What syncs: crypto prices for the Finance watchlist, fetched on demand.
Data flow: the app's server proxy calls CoinGecko and returns prices; your watchlist and holdings stay on your device.
Disconnect: remove the Finance card or clear the watchlist.