> For the complete documentation index, see [llms.txt](https://hoftware.gitbook.io/birdr/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://hoftware.gitbook.io/birdr/legal/privacy-policy.md).

# Privacy Policy

**Effective Date:** June 2, 2026

**Last Updated:** June 2, 2026

Hoftware LLC ("we," "us," or "our") operates the birdr mobile application ("the App"). This Privacy Policy describes how we collect, use, and protect your information when you use birdr.

By using birdr, you agree to the collection and use of information as described in this policy.

***

### 1. Information We Collect

#### Information you provide

* **Account information.** When you sign in with Apple or Google, we receive your name and, if available, your profile image from the authentication provider. We do not collect email/password credentials.
* **Photos.** When you capture and confirm a bird sighting, the photo is uploaded and stored in your account. Photos from unconfirmed identifications are not stored.
* **Location.** With your consent, we collect your device's precise location. Location is collected when you take a photo for bird identification and when you use the Explore feature to view species in your area. Location is stored alongside each sighting to record where you spotted the bird. Location permission is required for the App to function, but you must opt in during onboarding.

#### Information collected automatically

* **Usage data.** We collect anonymous analytics about how you use the App, including retention metrics, capture frequency, and feature engagement. This data helps us improve the product. We do not track you across other apps or websites.
* **Subscription status.** We record your current subscription tier (free or paid) and renewal date to manage access to features.
* **Streak and achievement data.** We track your capture activity to calculate streaks and achievement progress within the App.

#### Information collected by third parties on our behalf

* **Analytics.** We use PostHog (US-hosted) to collect anonymous product analytics. PostHog does not receive your name, photos, or precise location.
* **Subscriptions.** We use RevenueCat to manage in-app subscriptions. RevenueCat receives your name, subscription status, and purchase history. Payment details (credit card numbers, billing address) are handled entirely by Apple or Google and are never sent to us.

***

### 2. How We Use Your Information

We use the information we collect to:

* **Identify birds.** Your photos and location context are sent to our bird identification service to determine the species in your photo.
* **Build your collection.** Confirmed sightings, including photos, location, and timestamps, are stored to create your personal bird collection.
* **Track your progress.** Streak calculations, achievement evaluations, and collection statistics are derived from your sighting history.
* **Power the Explore feature.** Your location is used to show you bird species expected in your area.
* **Send notifications.** If you opt in, we send streak reminders and achievement alerts via push notifications.
* **Improve the App.** Anonymous analytics help us understand usage patterns and improve the experience.
* **Manage subscriptions.** Subscription status determines your daily identification limit and access to features.

***

### 3. Third-Party Services

We share data with the following third-party services, only as necessary to operate the App:

| Service            | Data Shared                                 | Purpose                                                                                                                               |
| ------------------ | ------------------------------------------- | ------------------------------------------------------------------------------------------------------------------------------------- |
| **Supabase**       | Account data, photos, sightings, location   | Cloud database, authentication, file storage                                                                                          |
| **OpenAI**         | Photos, approximate location context        | Bird species identification via vision AI. Photos are processed in real time and are **not retained** by OpenAI after identification. |
| **RevenueCat**     | Name, subscription status, purchase history | Subscription and purchase management                                                                                                  |
| **PostHog**        | Anonymous usage events                      | Product analytics                                                                                                                     |
| **Apple / Google** | Authentication tokens                       | Sign-in via OAuth                                                                                                                     |

We do not sell your personal information to anyone.

***

### 4. Data Storage and Security

Your data is stored on servers in the United States via Supabase. We use industry-standard security practices, including:

* All API communication is encrypted in transit (HTTPS/TLS).
* Authentication is handled via secure JWT tokens.
* Server-side functions validate user identity from tokens — we never trust client-sent user IDs.
* Photo storage is scoped to your account.

While we take reasonable measures to protect your data, no method of electronic storage or transmission is 100% secure.

***

### 5. Data Retention

We retain your data for as long as your account is active. Specifically:

* **Sightings, photos, streaks, and achievements** are retained indefinitely while your account exists.
* **Analytics data** is aggregated and anonymous — it does not contain personally identifiable information.

***

### 6. Your Rights and Choices

#### Account deletion

You can delete your account at any time from the Profile screen in the App. Account deletion is **immediate and permanent**. When you delete your account, we remove:

* Your profile and account information
* All sightings and associated photos
* Streak and achievement data
* Your authentication record

This action cannot be undone.

#### Permissions

You control the following permissions through your device settings:

* **Camera** — required to photograph birds for identification.
* **Location** — required; used to record sighting locations and power Explore features. You must opt in during onboarding.
* **Notifications** — optional; used for streak reminders and achievement alerts. Disabled by default.
* **Photo Library** — optional; used to import existing photos.

You can revoke any permission at any time through your device's Settings app.

#### Managing your subscription

You can manage or cancel your subscription through the App Store (iOS) or Google Play Store (Android). You can also access subscription management from the Profile screen in birdr.

***

### 7. Children's Privacy

You must be at least 13 years of age to use birdr. We do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us with personal information, please contact us at the address below and we will delete the account and associated data.

***

### 8. Changes to This Policy

We may update this Privacy Policy from time to time. When we do, we will update the "Last Updated" date at the top of this page. We encourage you to review this policy periodically.

***

### 9. Contact Us

If you have questions about this Privacy Policy or your data, contact us at:

**Hoftware LLC**

4030 Wake Forest Road, Raleigh, NC 27609

<hello@hoftware.io>

\---
