The short version. Couple stores what you and your partner put into the app so you can both see it. We don't run ads, and we don't sell your data. Location sharing is off until you turn it on. The Community section is the one place other users can see what you post.
1. Who we are
Couple ("the app") is operated by Radkai Studio ("we", "us"). This policy explains what personal data the app collects, why, and what you can do about it.
For data-protection purposes, Radkai Studio is the controller of the personal data described here. You can reach us at info@radkai.studio.
2. What we collect
Everything below is data you give us or create in the app. We do not buy data about you from anyone else, and the app contains no third-party advertising or analytics trackers.
| Category | What it includes |
|---|---|
| Account | Email address, a display name, and a password (stored only as a salted bcrypt hash — we never see or store the password itself). If you sign in with Google, we receive your Google account's email address and basic profile details. |
| Profile | Optional: profile photo, short bio, country, interests, and your anniversary date. |
| Partner link | Which account you are linked to. Linking is what makes shared content visible to both of you. |
| Shared content | Photos and videos in Memories, fridge-magnet notes and drawings, chat messages and any media in them, moods, goals, calendar events and countdowns, wishlists, quiz and daily-question answers, Do's & Don'ts, and your shared pet's state. |
| Community posts | Posts, comments and likes you make in the Community section, along with the display name shown next to them. |
| Location | Only if you turn on location sharing: approximate latitude and longitude, your UTC offset, and when it was last updated. See section 6. |
| Notifications | A push notification token for your device, and your notification preferences (which categories you want, and any quiet hours). |
| Password resets | A hashed, short-lived reset code when you ask to reset your password. |
| Server logs | Our server and its hosting provider keep standard operational logs (such as IP address, timestamp and request path) for security and debugging. |
What we don't collect
- We don't track your location in the background.
- We don't read your contacts, calendar, SMS or call history.
- We don't use advertising IDs, ad networks, or third-party analytics SDKs.
- We don't ask for payment details — the app is free and has no purchases.
3. Why we use it
- To run the app. Storing and syncing your shared content between you and your partner is the entire product.
- To sign you in and keep your account secure.
- To send transactional email — password reset codes, and welcome or partner-invitation emails.
- To send the notifications you asked for, within the categories and quiet hours you set.
- To keep the service working and safe — debugging, preventing abuse, and dealing with security issues.
Where the GDPR applies, our legal bases are: performance of a contract (running the app you signed up for), consent (location sharing and push notifications, which you switch on yourself and can switch off), and legitimate interests (keeping the service secure and functioning).
5. Third-party services
Running the app means a small number of other companies process some of your data on our behalf:
| Service | What it receives | Why |
|---|---|---|
| Expo push notification service (and, in turn, Apple APNs / Google FCM) | Your device's push token and the contents of the notification | Delivering notifications to your phone |
| Google Sign-In | Your Google account email and basic profile, if you choose that sign-in method | Signing you in without a separate password |
| Titan Email | Your email address and the message content | Sending password reset codes and account emails |
| Open-Meteo | Your partner's approximate coordinates (no account details, no identifiers) | Showing the weather where your partner is |
| Our hosting provider | Everything stored by the app, as the underlying server and database host | Running the service |
Our servers are located in [HOSTING REGION — fill in]. If you are in the UK or EEA and data is transferred outside it, that transfer relies on the appropriate safeguards required by law.
6. Location
- Location sharing is off by default. Nothing is collected until you enable it and grant the permission your phone asks for.
- There is no background tracking. Your position is read only at the moment you tap to enable or refresh it.
- What your partner sees is therefore the last position you chose to share, and the time it was shared — not a live feed.
- It is used to show the distance between you, your time difference, and the weather where your partner is.
- You can revoke the location permission at any time in your phone's settings.
7. Notifications
If you allow notifications, we store a push token for your device so we can send them. In the app's Notification settings you can turn off all notifications, switch off individual categories (messages, magnets, moods, memories, dates, countdowns, goals), and set quiet hours during which nothing is delivered. Notification content may include a short preview of what your partner sent, so consider your lock-screen settings.
8. Photos and videos
Photos and videos you add — to Memories, chat, your profile, Community posts, or via Photobox and the photo editor — are uploaded to our server and stored there.
Each file is given a long random filename and served from a unique link. That link is not published anywhere and is effectively impossible to guess, but it is not individually password-protected: anyone who obtains the exact link could open the file. Please bear that in mind before sharing a link outside the app.
The app asks for camera and photo-library permission only when you use a feature that needs it, and only the specific files you pick are uploaded.
9. How long we keep it
- Your account and content are kept for as long as your account exists.
- Content you delete in the app (a memory, a note, a goal) is removed from our database when you delete it.
- Password reset codes expire shortly after they are issued.
- Operational server logs are kept for a limited period for security and debugging, then rotated out.
- Backups may retain copies for a short period after deletion before they are overwritten.
10. Your rights
Depending on where you live, you may have the right to:
- access the personal data we hold about you, and get a copy of it;
- correct data that is wrong or incomplete — most of it you can edit yourself in the app;
- delete your data (see section 11);
- object to or restrict certain processing;
- withdraw consent for location sharing or notifications at any time, without affecting anything done before you withdrew it;
- complain to your local data protection authority.
To exercise any of these, email info@radkai.studio. We will respond within 30 days.
11. Deleting your account
To delete your account and the content attached to it, email info@radkai.studio from the address on your account and ask us to delete it. We will confirm and complete the deletion within 30 days.
Two things worth knowing before you do:
- Shared content is shared. Where something belongs to the pair of you — a conversation, a shared memory, a joint goal — deleting your account does not automatically remove your partner's copy of it. Ask us if you want it removed for both of you, and we will explain what we can do.
- Community posts may remain visible with the author detached, unless you ask us to remove them too.
12. Security
Passwords are stored only as salted bcrypt hashes. Traffic between the app and our server is encrypted with HTTPS. Access to shared content requires a signed authentication token tied to your account, and the server checks on every request that you are the owner or the linked partner.
No system is perfectly secure, and we can't guarantee absolute security. Your content is not end-to-end encrypted, which means it is technically readable on our server (see section 4). If we ever become aware of a breach affecting your personal data, we will notify you and the relevant authority as required by law.
13. Children
Couple is not intended for anyone under 13, and we do not knowingly collect data from children under 13. If you believe a child has given us personal data, email us and we will delete it. Some jurisdictions set a higher minimum age for consent to data processing; where that applies, that higher age governs.
14. Changes to this policy
If we change this policy we will update the date at the top of this page. If a change materially affects how we handle your data, we will tell you in the app or by email before it takes effect.
15. Contact
Questions, requests, or anything that doesn't look right:
Radkai Studio
Email: info@radkai.studio
Postal address: [POSTAL ADDRESS — fill in]