Privacy Policy
Last Updated: November 11, 2024
Welcome to Resist & Rise. Your privacy is important to us. This Privacy Policy explains how we collect, use, protect, and share your personal information when you use our mobile application.
Summary: We collect minimal data necessary to provide our AI-powered habit coaching service. We don't sell your data, show ads, or track you across other apps.
1. Information We Collect
1.1 Account Information
- Email Address: Used for account creation and authentication via Firebase Auth
- User ID: A unique identifier for your account
1.2 User Preferences
- Resist Targets: Habits you want to break (e.g., social media, alcohol)
- Rise Targets: Habits you want to build (e.g., exercise, reading)
- Intensity Level: Your preferred message tone
- Toxic Mode Setting: Your preference for brutally honest messaging
- Vision Statement: Your personalized future goals
1.3 Message History
- AI-Generated Messages: Text content of motivation messages
- Audio Files: Text-to-speech recordings stored in Firebase Storage
- Word Timestamps: For synchronized audio playback
- Metadata: Creation date, mode (resist/rise), target, latency
1.4 Usage Analytics
- AI Interaction Logs: API usage, latency, success/failure rates
- Feature Usage: Which features you use and when
1.5 Subscription Data
- Purchase Information: Managed by RevenueCat and Apple
- Subscription Status: Active, expired, trial status
1.6 Information We DO NOT Collect
- ❌ Location data
- ❌ Device contacts
- ❌ Photos or camera access
- ❌ Browsing history
- ❌ Data from other apps
2. How We Use Your Information
We use your information to:
- Generate personalized AI coaching messages
- Store and replay your message history
- Manage your subscription and account
- Send follow-up notifications (if enabled)
- Improve our AI models and service quality
- Prevent fraud and ensure security
- Comply with legal obligations
3. Third-Party Services
We use the following third-party services that may process your data:
3.1 Firebase (Google)
- Services: Authentication, Firestore Database, Cloud Storage, Cloud Functions
- Data Processed: Account data, preferences, message history
- Privacy Policy: firebase.google.com/support/privacy
3.2 Google Gemini AI
3.3 Inworld AI
3.4 RevenueCat
- Service: Subscription management
- Data Processed: User ID, subscription status, purchase events
- Privacy Policy: revenuecat.com/privacy
3.5 Apple App Store
- Service: Payment processing, subscription management
- Data Processed: Payment information (Apple handles this, not us)
- Privacy Policy: apple.com/legal/privacy
4. Data Storage & Security
- Storage Location: Google Cloud (Firebase) servers in the United States
- Encryption: All data transmitted using HTTPS/TLS encryption
- Database Security: Firestore with row-level security rules
- Audio Storage: Firebase Storage with access controls
- Authentication: Firebase Authentication with secure tokens
5. Data Retention
- Message History: Retained indefinitely until you delete your account
- Audio Files: Stored as long as the message exists
- Account Data: Retained while your account is active
- Analytics: Aggregated data retained for service improvement
6. Your Rights
6.1 GDPR Rights (EU Users)
If you're in the European Union, you have the right to:
- Access: Request a copy of your data
- Rectification: Correct inaccurate data
- Erasure: Request deletion of your data ("right to be forgotten")
- Portability: Receive your data in a machine-readable format
- Restriction: Request we limit processing of your data
- Object: Object to processing based on legitimate interests
- Withdraw Consent: Withdraw consent at any time
6.2 CCPA Rights (California Users)
If you're a California resident, you have the right to:
- Know: What personal information we collect and how it's used
- Delete: Request deletion of your personal information
- Opt-Out: We don't sell personal information, so no opt-out needed
- Non-Discrimination: We won't discriminate for exercising your rights
6.3 Account Deletion (Apple Requirement)
You can permanently delete your account at any time directly in the app:
- Open the app and go to Settings
- Scroll to the Account section
- Tap Delete Account
- Confirm deletion
What gets deleted:
- ✅ Your user profile and authentication data
- ✅ All messages and preferences
- ✅ All audio recordings from Firebase Storage
- ✅ All subcollections and commitments
- ✅ Your Firebase Auth account
Subscription: Your active subscription will be cancelled. Refunds are subject to Apple App Store policies.
⚠️ This action is permanent and cannot be undone.
6.4 How to Exercise Your Rights
For other data rights (access, portability, etc.), contact us at: destangokalp@gmail.com
We will respond within 30 days.
7. Children's Privacy
Resist & Rise is not intended for children under 13 years of age. We do not knowingly collect personal information from children under 13. If you believe we have collected information from a child under 13, please contact us immediately.
8. International Data Transfers
Your information may be transferred to and processed in the United States, where our servers (Firebase/Google Cloud) are located. By using Resist & Rise, you consent to this transfer. We ensure appropriate safeguards are in place for international transfers.
9. Changes to This Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by:
- Updating the "Last Updated" date
- Sending an in-app notification
- Requiring re-acceptance for material changes
10. Do Not Track
We do not track users across websites or apps. We do not respond to Do Not Track (DNT) signals because we don't track in the first place.
11. California Shine the Light Law
We do not share personal information with third parties for their direct marketing purposes.