Privacy Policy for 37 Days of Change
Effective Date: March 3, 2026
Last Updated: March 3, 2026
37 Days of Change ("we," "us," or "our") provides the 37 Days of Change mobile app, website, and related services (the "Service").
By using the Service, you agree to this Privacy Policy.
1. Information We Collect
A. Information you provide
- Account information: email address, password (handled by Firebase Authentication), and display name.
- Session information: guest session and account identifiers used to operate your profile and progress.
- Profile information: profile photo (if uploaded).
- Challenge data: goals/rules, check-ins, streak/progress data, and leaderboard entries.
- Community content: chat messages, reactions, reports, block actions, and moderation-related data.
- Invite/referral data: invite code, invite link usage, and referral status.
- Support requests: information you submit in the Support form.
B. Information collected automatically
- Device/app and operational data needed to run and secure the Service.
- Technical and operational logs (for example timestamps, request metadata, and error events).
- Notification settings, reminder preferences, and push token (if notifications are enabled).
C. Purchase information
- If you purchase Plus, payment processing is handled by Apple App Store or Google Play.
- We receive purchase-related metadata (for example product ID, transaction identifiers, platform/store, and entitlement status) to grant and manage access.
- We do not receive full payment card details.
2. How We Collect Information
We collect information:
- Directly from you (for example, when you create an account, upload a photo, post in chat, or submit support).
- Automatically from app/device usage (for example technical metadata and notification token if enabled).
- From platform and service providers involved in app distribution and purchases (for example Apple App Store and Google Play metadata required to validate access).
3. How We Use Information
We use information to:
- Create and maintain your account or guest session.
- Operate challenge features, check-ins, leaderboard, chat, and referral features.
- Provide Plus entitlements and purchase support.
- Send reminders and notifications you opt into.
- Moderate safety, investigate reports, and prevent abuse.
- Review and moderate profile photos before public display.
- Respond to support requests and troubleshoot account issues.
- Comply with legal obligations and enforce our policies.
4. Community and Public Content
Some parts of the Service are community-based. Information you choose to post in community features (for example chat messages, display name, profile photo, and reactions) may be visible to other users based on how the feature works.
Please use care when sharing personal information in community spaces.
5. Notifications and Permissions
The app may request permissions such as:
- Notifications (for reminders and service notifications you enable).
- Photo library access (for profile photo upload).
You can deny permissions, and many core features will still work. You can also change permissions later in device settings.
If you enable reminders, we may store your reminder settings and push token to send requested notifications.
6. How We Share Information
We may share information with:
- Service providers that operate our backend and app infrastructure, including Firebase/Google Cloud and Expo services.
- Platform providers (Apple and Google) for app distribution and in-app purchase operations.
- Law enforcement or regulators when required by law or to protect rights and safety.
- Successors in a merger, acquisition, or asset sale.
We may also disclose information when necessary to enforce our Terms, investigate fraud or abuse, comply with legal process, or protect users and the public.
We require service providers that process personal information on our behalf to provide protections consistent with this Privacy Policy and applicable law.
We do not sell your personal information.
7. Data Retention
We retain personal information for as long as needed to provide the Service and for legitimate business, legal, security, accounting, abuse-prevention, and platform-compliance purposes.
If you delete your account or guest session in-app, we delete or de-identify related account data, except where retention is required for legal, security, fraud-prevention, moderation audit, transaction, or backup/recovery purposes.
Retention periods can vary depending on the type of information and why it was collected.
8. Security
We use reasonable administrative, technical, and organizational safeguards designed to protect personal information. No method of transmission or storage is 100% secure.
9. Your Choices and Rights
You can:
- Update profile information in the app.
- Change password in Settings > Account Security.
- Delete a claimed account in Settings > Account Security > Delete Account.
- Delete a guest session in Profile > Delete guest session.
- Manage push notifications in app settings and device settings.
Depending on where you live, you may have rights to request access, correction, deletion, portability, or objection/restriction for certain processing. To exercise rights, contact us using the details below or through in-app support.
10. Children's Privacy
The Service is not directed to children under 13 (or older minimum age required by local law). We do not knowingly collect personal information from children under the applicable age threshold.
If you believe a child has provided personal information in violation of this policy, contact us and we will review and take appropriate action.
11. International Processing
Your information may be processed in countries other than where you live. We take steps designed to protect information consistent with applicable law.
12. Third-Party Services
The Service may rely on third-party services (such as Firebase/Google Cloud, Expo, Apple, and Google Play). Their privacy practices are governed by their own policies.
As of the current app implementation, we do not use third-party ad SDKs or cross-app tracking (ATT) for advertising.
13. Changes to This Policy
We may update this Privacy Policy from time to time. We will update the "Last Updated" date above and, when required, provide additional notice.
14. Contact Us
If you have privacy questions, support requests, or account-related requests, contact us:
Email: hunt37days@gmail.com
Website: https://37daysofchange.com
Support Page: https://37daysofchange.com/contact