Privacy Policy
Effective date: 12 April 2026
1. Introduction
Sweaty (“we”, “us”, “our”) operates the Sweaty mobile application and the website at sweaty-v1.vercel.app (together, the “Service”). This Privacy Policy explains what information we collect, how we use it, and your rights regarding that information.
2. Information We Collect
a) Information you provide
- Account details: email address, username, display name, bio, and avatar image.
- Gaming profile: gaming platforms (PlayStation, Xbox, PC, Nintendo), favourite games, and profile banner.
- Game logs: games you add to your library, including status, rating, review text, platform, hours played, and dates.
- Social activity: users you follow, review likes, and comments.
- Custom lists: game lists you create, including titles, descriptions, and ordering.
b) Information from third-party platforms
- Apple Sign-In: if you sign in with Apple, we receive your Apple-provided user identifier and, if you choose to share it, your email address.
- Platform imports: if you connect your Steam or PlayStation account, we import your game library (titles, playtime, achievements) to match against our catalogue. OAuth tokens are stored securely and used only to sync your library.
c) Information collected automatically
- Push notification tokens: if you enable notifications, we store your Expo push token to deliver alerts about new followers, friend activity, and streak reminders.
- Usage analytics: we use Vercel Speed Insights on the web to collect anonymous performance metrics. No personally identifiable information is included.
3. How We Use Your Information
- To provide and maintain the Service.
- To personalise your experience, including game recommendations and activity feeds.
- To send push notifications you have opted into (new followers, friend activity, streak reminders).
- To process subscription payments through Apple App Store or Google Play (we do not handle payment card details directly).
- To detect and prevent fraud or abuse.
- To respond to support requests.
4. Subscription Data
Subscription purchases are processed by Apple or Google. We use RevenueCat to manage subscription state. RevenueCat receives your anonymous app user identifier and purchase receipts to verify entitlements. We store your subscription tier and expiry date in our database. We do not have access to your payment card or billing details.
5. Data Sharing
We do not sell your personal information. We share data only with:
- Supabase (database and authentication hosting).
- RevenueCat (subscription management).
- Expo / EAS (push notification delivery and app builds).
- Vercel (web hosting and serverless API functions).
- Apple / Google (authentication and in-app purchases).
Game metadata is fetched from IGDB, OpenCritic, Twitch, and YouTube. These services receive API requests from our servers, not from your device, and no personal user data is sent to them.
6. Data Storage and Security
Your data is stored in a Supabase-managed PostgreSQL database with row-level security (RLS) enabled. All connections use TLS encryption. OAuth tokens for platform imports are stored securely and are never exposed to client applications.
7. Your Rights
You may at any time:
- Access and edit your profile, game logs, reviews, and lists through the app settings.
- Delete your account through the app. This permanently removes your profile, game logs, reviews, lists, follows, comments, and notification tokens.
- Manage notifications by toggling individual categories in the app settings or by disabling notifications at the device level.
- Disconnect platforms (Steam, PlayStation) which revokes stored tokens and removes imported data.
- Request a data export by contacting us at the address below.
8. Data Retention
We retain your data for as long as your account is active. If you delete your account, all associated data is permanently removed within 30 days. Anonymous, aggregated statistics (such as community game ratings) may be retained indefinitely.
9. Children’s Privacy
The Service is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.
10. Changes to This Policy
We may update this Privacy Policy from time to time. Material changes will be communicated through the app or via email. The effective date at the top of this page will be updated accordingly.
11. Contact
If you have questions about this Privacy Policy or wish to exercise your data rights, contact us at support@sweaty.gg.