Your privacy matters to us. This policy explains what data SnapO collects, why we collect it, how it is stored, and the rights you have over your information. By using SnapO you agree to the terms described here.
1. Who We Are
SnapO ("we", "us", "our") is a daily photo challenge application available on iOS and Android. If you have any questions about this policy, contact us at support@snapoapp.com.
2. Information We Collect
We collect information you provide directly, as well as some information generated automatically when you use the app.
Account information
- Email address (used to create and secure your account)
- Display name and username
- Profile avatar (emoji, color, or uploaded photo)
- Date of birth (optional, used for age-appropriate content)
- Biography / profile bio (optional)
Content you create
- Photos and videos you post in response to daily challenges
- Moments (additional photo/video slides attached to your post)
- Captions and text overlays on your Moments
- Private messages between you and friends
Activity data
- Votes cast (Yay / Boo) on other users' posts
- Friend requests sent and received
- Follow relationships
- Streak count and posting history
- Challenge participation dates
Location data (optional)
- Approximate location, only if you explicitly grant location permission
- Used to show your post on the in-app world map feature
- Never collected in the background; only when you actively use the map
Device and technical data
- Device type and operating system version
- App version
- IP address (collected automatically by our infrastructure)
3. How We Use Your Information
- To create and maintain your account
- To display your posts, profile, and activity to other users according to your privacy settings
- To calculate and display streaks, leaderboards, and badges
- To deliver private messages between friends
- To send push notifications about new challenges, votes, and friend activity (you can disable these in device settings)
- To enforce our community guidelines and investigate reports of abuse
- To improve the app through anonymised, aggregated usage analytics
- To respond to your support requests
We do not sell your personal data to third parties. We do not use your data for advertising targeting.
4. How We Store Your Data
SnapO is built on Supabase, a secure cloud infrastructure provider. Your data is stored on Supabase servers. Supabase is SOC 2 compliant and uses industry-standard encryption in transit (TLS) and at rest.
Photos and videos you upload are stored in Supabase Storage (backed by AWS S3) and are accessible via secure public URLs. Posts that are set to private are restricted by row-level security policies in our database.
Private messages are stored in our database and are only accessible to the participants of each conversation.
5. Data Sharing
We share your information only in these limited circumstances:
- With other SnapO users — your posts, profile, and public activity are visible to other users according to your privacy settings (public or private profile)
- With service providers — Supabase (database and storage infrastructure). They process data only on our behalf and under strict data protection terms
- For legal reasons — if required by law, court order, or to protect the safety of our users or the public
We never share your email address with other users.
6. Your Privacy Controls
You have meaningful control over your data within the app:
- Private profile — set your profile to private so only approved friends can see your posts and Moments
- Block users — block any user to prevent them from seeing your profile or messaging you
- Delete posts — delete any of your posts at any time from within the app
- Delete Moments — remove your Moments from within the viewer or editor
- Delete account — permanently delete your account and all associated data from Settings → Account → Delete Account. Deletion is immediate and cannot be undone
- Location — location access is optional and controlled entirely by your device's permission settings
7. Data Retention
We retain your data for as long as your account is active. When you delete your account, your profile, posts, messages, votes, and all other personal data are permanently deleted from our systems. Some anonymised, aggregated statistics (e.g. total challenge participation counts) may be retained for internal analytics.
Uploaded media files are deleted from storage as part of account deletion.
8. Children's Privacy
SnapO is not intended for children under the age of 13. We do not knowingly collect personal information from children under 13. If we become aware that a child under 13 has provided us with personal information, we will delete that account immediately. If you believe a child has created an account, please contact us at support@snapoapp.com.
9. Security
We take reasonable technical and organisational measures to protect your personal data, including:
- All data transmitted between the app and our servers is encrypted using TLS
- Database access is controlled by row-level security (RLS) policies that ensure users can only access data they are permitted to see
- Authentication is handled by Supabase Auth with secure session management
- Storage files use signed or public URLs depending on content sensitivity
No method of transmission over the internet is 100% secure. We encourage you to use a strong, unique password for your account.
10. Changes to This Policy
We may update this privacy policy from time to time. We will notify you of material changes by updating the "Last updated" date at the top of this page and, where appropriate, by sending a notification through the app. Continued use of SnapO after changes are posted constitutes your acceptance of the updated policy.
11. Your Rights
Depending on where you are located, you may have the following rights regarding your personal data:
- Access — request a copy of the data we hold about you
- Correction — update inaccurate or incomplete data (most fields are editable directly in the app)
- Deletion — request deletion of your data (or use the in-app delete account feature)
- Portability — request your data in a portable format
- Objection — object to certain processing of your data
To exercise any of these rights, contact us at the address below.