Privacy Policy
What we keep, what we don't.
Anchor stores sensitive recovery data on your account. Here's exactly what we keep, who processes it, and what we never use for ads or AI training.
This Privacy Policy describes how Anchor ("we", "us", "our"), operated by Bautista Tancredi as a sole developer, collects, uses, and protects information about you when you use the Anchor mobile application (the "App").
Some information you choose to enter in Anchor may be sensitive, including information related to gambling behavior, urges, relapses, emotional state, triggers, and recovery progress. By using the App and entering this information, you consent to our processing of this data to provide the App's functionality.
1. Information we collect
When you sign in and use Anchor, we collect:
Account information
- Your email address.
- Your name, if you choose to share it through Apple Sign In or Google Sign In.
- Your profile picture, if provided by your sign-in provider.
- A unique user identifier.
- Authentication information provided by Clerk, Apple Sign In, or Google Sign In as needed to manage your account.
Recovery data entered by you in the App
- Urges you log, including timestamp and optional mood and trigger labels.
- Relapses you log, including timestamp and context.
- Journal entries you write.
- Reasons for quitting that you record.
- Trusted person contact information, such as name, phone, or email, if you choose to add one.
- Estimated monthly betting amount, if you choose to share it.
- Triggers, gambling days, and risky time windows, as captured in onboarding.
- Progress within the recovery program, including days completed, reflections, and practices.
Subscription information
- Whether you have an active subscription.
- Subscription identifiers and purchase history, processed via Apple's In-App Purchase system and Superwall.
- Paywall interaction events and subscription entitlement status.
Technical and usage information
- Crash reports, error logs, diagnostics, and performance metrics, which may include technical information such as device type, operating system, app version, event timestamps, and limited identifiers.
- Usage analytics, collected in a privacy-conscious way and not used for advertising.
- Push notification tokens, if you grant notification permission.
- Notification interaction events, such as whether a notification was delivered or opened, where available.
We do not collect your precise location, contacts, photos, microphone data, camera data, or browsing history outside the App.
2. How we use your information
We use your information to:
- Provide the core App functionality, including urge intervention, progress tracking, journaling, recovery program progress, and trusted person quick access.
- Authenticate you across sign-ins and devices.
- Store and display your recovery data inside your account.
- Send notifications you have opted into, such as urge reminders, milestones, daily check-ins, and subscription-related messages.
- Process subscription payments and verify entitlement to paid features.
- Diagnose crashes, fix bugs, and improve App reliability.
- Understand aggregate usage patterns to improve the product.
- Prevent misuse, protect the App, and comply with legal obligations.
We do not sell your personal information. We do not rent your personal information. We do not share your personal information with third parties for marketing or advertising purposes.
We do not use your journal entries, urges, relapses, reasons for quitting, trusted person contacts, or recovery data for advertising.
We do not use your journal entries, urges, relapses, reasons for quitting, trusted person contacts, or recovery data to train artificial intelligence models.
3. Third-party services
We rely on the following providers to operate the App. These providers may process your information only as needed to provide their services to us, subject to their own privacy policies and data protection terms:
- Clerk — authentication and account management. Clerk may receive your email, name, user identifier, and authentication-related information.
- Convex — database and backend infrastructure. Convex stores your account state and recovery data.
- Apple Sign In — authentication when you choose Apple as your sign-in method.
- Google Sign In — authentication when you choose Google as your sign-in method.
- Apple In-App Purchase — subscription payment processing.
- Superwall — paywall presentation, subscription state, entitlement status, and paywall analytics.
- Sentry — crash reporting, error monitoring, diagnostics, and app reliability.
- TelemetryDeck — privacy-conscious usage analytics.
- Expo — push notification delivery and app infrastructure.
We do not allow these providers to use your recovery data for their own advertising purposes.
4. Push notifications
If you enable push notifications, Anchor may send you reminders, check-ins, milestone messages, urge-related prompts, subscription-related messages, and special offers.
You can disable push notifications at any time in your device settings.
Push notification delivery may require Expo and Apple Push Notification service to process technical identifiers, such as push tokens, in order to deliver notifications to your device.
5. Trusted person information
If you add a trusted person in Anchor, we store the contact details you provide only so you can access them easily inside the App.
Anchor does not contact your trusted person. Anchor does not send messages, calls, emails, or alerts to your trusted person.
You should only add another person's contact details if you have their permission or a reasonable basis to store that information for your own personal support use.
6. Data retention
We keep your personal data while your account is active or as needed to provide the App.
When you delete your account from the App (Profile → Delete account), we immediately and permanently delete the recovery data associated with your account from our active systems, including urges, relapses, journal entries, reasons for quitting, milestones, recovery program progress, trusted person contacts, onboarding answers, and account identifiers.
Some technical, crash, diagnostic, subscription, and analytics data may remain in aggregated, de-identified, provider-retained, or legally required records for a limited period, where it is not reasonably linked to your deleted account.
Subscription and purchase records may also remain available through Apple according to Apple's own policies.
7. Your rights and choices
You can:
- Access much of the data we hold about you by viewing the App's Profile section and related App screens.
- Edit editable fields, such as monthly betting amount, quit date, trusted person, triggers, gambling days, and risky time windows, where supported by the App.
- Delete your account and associated recovery data via Profile → Delete account. This is immediate and irreversible.
- Disable push notifications through your device settings.
- Request a copy of your data by emailing us at the address below. We will respond within 30 days.
Depending on where you live, including if you are in the European Union, the United Kingdom, or California, you may have additional rights under applicable privacy laws. These may include the right to access, correct, delete, restrict, object to certain processing, withdraw consent where processing is based on consent, data portability, and lodge a complaint with your local data protection authority.
8. International data transfers
Your information may be processed in countries other than the country where you live, including the United States and countries where our service providers operate.
Where required by applicable law, we rely on appropriate safeguards for international data transfers, such as contractual protections or other legally recognized transfer mechanisms.
9. Children's privacy
Anchor is not intended for users under 18. We do not knowingly collect information from anyone under 18.
If you believe a minor has provided information to us, contact us and we will delete it.
10. Security
We use security practices designed to protect your data, including encryption in transit and encrypted storage at rest where supported by our infrastructure providers.
No system is perfectly secure. Because Anchor may contain sensitive personal information, you should protect access to your device and sign-in account.
11. Changes to this policy
We may update this policy when we add features, change vendors, change data practices, or respond to legal changes.
When we make material changes, we will notify you in the App and update the effective date at the top of this page.
Continued use of the App after changes means you accept the updated policy. If you do not agree to the updated policy, you should stop using the App and may delete your account.
12. Contact us
For privacy questions, data export requests, data deletion requests, or anything else related to this policy, email us at hello@anchornow.app.