Privacy Policy
Last Updated: January 1, 2025
Introduction
Stake Squad ("we," "our," or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application.
Information We Collect
Personal Information
- Account Information: Email address, display name, profile photo
- Authentication Data: Secure authentication tokens, login credentials
- Device Information: Device type, operating system, push notification tokens
Habit Tracking Data
- Habits: Habit titles, descriptions, frequencies, triggers, icons
- Check-ins: Completion dates, notes, timestamps
- Photos: Optional photo uploads for habit verification
- Streaks: Calculated based on your check-in history
Squad & Social Data
- Squad Membership: Squads you've joined, your role in each squad
- Social Interactions: Reactions, comments on squad activities
- Invite Codes: Codes you've generated or used
Payment Information (Money Stakes)
- Payment Processing: Handled securely by Stripe (we do not store full credit card numbers)
- Transaction Records: Stake amounts, dates, contract status, refund history
- Payment Intent IDs: For tracking transactions with Stripe
Accountability Data
- Forfeit Settings: Accountability buddy information (name, phone number with consent)
- SMS Logs: Delivery records for accountability notifications
How We Use Your Information
We use your information to:
Provide Core Services
- Create and manage your account
- Track your habit progress and streaks
- Enable squad features and social accountability
- Process check-ins and calculate completion rates
- Send push notifications for reminders and squad activities
Process Payments
- Charge money stakes through Stripe
- Evaluate completion rates and process refunds
- Maintain transaction records for accountability
Send Communications
- Push notifications for habit reminders
- Squad activity updates
- Account and security notifications
- SMS to accountability buddies (with consent)
Improve Our Service
- Analyze usage patterns (aggregated, anonymized)
- Fix bugs and improve performance
- Develop new features based on user needs
Data Storage & Security
Infrastructure
- Database: Supabase (PostgreSQL) - encrypted at rest and in transit
- File Storage: Supabase Storage for photos (access-controlled)
- Authentication: Supabase Auth with industry-standard security
Security Measures
- All data transmitted via HTTPS/TLS encryption
- Row-level security policies on database
- Regular security audits and updates
- Secure password hashing (bcrypt)
Data Retention
- Active Accounts: Data retained while your account is active
- Soft Deletes: Some data is deactivated rather than deleted for audit trails
- Deleted Accounts: Data permanently deleted within 30 days of account deletion
Third-Party Services
- Payment Processing (Stripe): Processes all payment transactions for money stakes.View Privacy Policy
- Backend Infrastructure (Supabase): Provides database, authentication, and storage.View Privacy Policy
- Error Monitoring (Sentry): Collects crash reports and error logs (if enabled). No personally identifiable information is sent.
Data Sharing
We DO NOT sell your personal information.
We MAY share data in these limited circumstances:
- Squad Members: Your display name, profile photo, and check-ins are visible to squad members
- Public Squads: If you join a public squad, your participation may be visible to other users
- Service Providers: Supabase, Stripe, and other essential service providers (under strict privacy agreements)
- Legal Requirements: If required by law or to protect our rights
Your Privacy Rights
Access & Export
- View all your data within the app
- Request a copy of your data via email
Modification
- Update your profile, display name, and photo anytime
- Modify or delete habits, check-ins, and squad memberships
Deletion
- Account Deletion: Delete your account and all associated data from Settings
- Data Removal: Most data is permanently deleted within 30 days
- Exceptions: Transaction records may be retained for 7 years for legal compliance
Opt-Out Options
- Push Notifications: Disable in device settings or app preferences
- Squad Visibility: Leave squads or make habits private
- SMS Notifications: Revoke accountability buddy consent anytime
Children's Privacy
Stake Squad is not intended for users under 13 years of age. We do not knowingly collect information from children under 13. If we discover we have collected data from a child under 13, we will delete it immediately.
Contact Us
If you have questions about this Privacy Policy or your data:
Email: hello@stakesquad.app
Data Protection Requests: Include "Privacy Request" in the subject line