Privacy Policy
Effective Date: March 15, 2026
1. Who We Are
PickyEatrs ("we," "our," or "us") is a mobile application that helps couples decide where to eat by swiping on nearby restaurants and revealing mutual matches. This policy describes how we handle data when you use the PickyEatrs app.
2. Information We Collect
Anonymous device identifier: When you open the app, Firebase Authentication generates a random anonymous user ID tied to your device. This ID is not linked to your name, email, phone number, or any personal information. If you uninstall and reinstall the app, a new anonymous ID is generated.
Account information (optional): If you choose to create an account, we collect your name and email address. You can sign up with email and password, or sign in with Apple or Google. This information is used to identify your account, sync your data across devices, and enable features like dining history and partner pairing. If you sign up with email, your password is securely hashed by Firebase and is never stored in plain text or accessible to us. You can use the app fully without creating an account.
Location data: When you create a swiping session, the app requests your device's GPS location to find nearby restaurants. This location data is stored with your session and automatically deleted after 24 hours. We do not track your location in the background or when the app is closed.
Session and swipe data: Your swipe choices (right or left on each restaurant) are stored temporarily to compute matches with your partner. This data is tied to your anonymous or account ID and automatically deleted after 24 hours.
Account feature data (signed-in users): If you create an account, we store your dining history, favorite restaurants, saved preferences (search radius, price range, filters), partner pairing links, and dining streak data. This data is retained until you delete your account.
Subscription data: If you subscribe to PickyEatrs Premium, your subscription status is managed by RevenueCat, our subscription management provider. We store your subscription entitlement status (active or inactive) but do not directly process or store payment information — payments are handled by Apple (App Store) or Google (Play Store).
Push notification tokens: If you grant notification permissions, we store a device token to send you session updates (e.g., "your partner finished swiping"). This token is not linked to any personal identity.
3. Information We Do NOT Collect
- Contacts or address book data
- Photos, files, or media from your device
- Browsing history or data from other apps
- Payment or financial information (payments are handled by Apple or Google)
- Advertising identifiers or cross-app tracking data
If you use the app without signing in, we also do not collect your name, email address, or phone number.
4. How We Use Your Data
The data we collect is used solely to operate the app:
- Finding nearby restaurants based on your location
- Matching your swipe choices with your partner's
- Sending session-related push notifications
- Syncing your dining history, favorites, and preferences across devices (signed-in users)
- Enabling persistent partner pairing so you can skip the invite code (Premium subscribers)
- Managing your subscription status (Premium subscribers)
We do not use your data for advertising, profiling, or any purpose beyond making the app work.
5. Third-Party Services
Google Firebase: We use Firebase for authentication, data storage, and cloud functions. Firebase processes data under Google's privacy terms. For anonymous users, no personal data is shared. For signed-in users, your name and email are stored in Firebase.
Google Places API: Restaurant data (names, photos, ratings, locations) is fetched from Google's Places API. Your searches are routed through our server — Google does not receive your device information or identity.
RevenueCat: We use RevenueCat to manage Premium subscriptions. RevenueCat receives your anonymous app user ID and subscription transaction data from Apple or Google to verify your subscription status. RevenueCat does not receive your name or email. See RevenueCat's privacy policy for details.
Firebase Cloud Messaging (FCM): Push notifications are delivered through Google's Firebase Cloud Messaging service, which routes them to Apple (APNs) for iOS devices and directly to Android devices. Only anonymous device tokens are shared.
Apple and Google Sign-In: If you sign in with Apple or Google, the authentication is handled by the respective provider. We receive only the name and email you authorize during sign-in. We do not receive your Apple ID password or Google account password. If you sign up with email and password, your credentials are managed securely by Firebase Authentication.
6. Data Retention and Deletion
Session data (swipe choices, match results, and location) is automatically and permanently deleted 24 hours after the session is created.
Anonymous users: Anonymous user IDs persist on the device but contain no personal information and are not recoverable if the app is uninstalled.
Signed-in users: Your account data (name, email, dining history, favorites, preferences, and partner links) is retained until you delete your account. You can delete your account at any time from the app's settings. Deleting your account permanently removes all associated data from our servers, including your profile, history, favorites, and partner pairing links. This action cannot be undone.
Subscription data: If you delete your account, your subscription entitlement data is removed from our systems. However, your subscription with Apple or Google must be cancelled separately through your device's subscription settings to stop future charges.
7. Data Sharing
We do not sell, rent, or share your data with third parties for advertising or marketing purposes. Data is only shared with the third-party services listed above, solely to operate the app.
8. Children's Privacy
PickyEatrs is not directed at children under 13. We do not knowingly collect any data from children. If we learn that we have collected personal information from a child under 13, we will delete that data promptly.
9. Your Choices
- Location: You can deny or revoke location permissions at any time in your device settings. Without location access, you can still join sessions created by others.
- Notifications: You can disable push notifications at any time in your device settings.
- Account: Signing in is optional. You can use the app fully without an account. If you create an account, you can delete it at any time from the app's settings, which permanently removes all your data from our servers.
- Subscription: You can cancel your Premium subscription at any time through your device's subscription settings (Apple App Store or Google Play Store). Access continues until the end of your current billing period.
- Uninstall: Uninstalling the app removes all local data. For anonymous users, your data is automatically deleted within 24 hours. For signed-in users, your account data persists on our servers until you delete your account (you can reinstall and sign in to access it, or contact us to request deletion).
10. Security
We use Firebase security rules to ensure users can only access their own data. Swipe choices are private until both partners finish swiping, at which point only mutual matches are revealed. All data is transmitted over encrypted connections (HTTPS/TLS).
11. Changes to This Policy
If we make material changes to this policy, we will update the effective date at the top and notify users through the app. Your continued use of the app after changes constitutes acceptance of the updated policy.
12. Contact Us
Questions or concerns about this privacy policy? Contact us at [email protected]