Legal
Privacy Policy
Last updated: June 3, 2026
This Privacy Policy explains how LockIn ("we", "us", "our") collects, uses, shares, and protects your personal data when you use the LockIn mobile application (the "App"). We've tried to keep it plain and honest.
The App is operated by Sanjiv Gautam ([Your country]), the data controller responsible for your personal data. If you have any questions, contact us at sanjivgautamdev@gmail.com.
1. Information we collect
Information you give us
- Account details: your name, username, email address, and password. Passwords are handled securely by our authentication provider and are never stored by us in plain text.
- Onboarding answers: your goal, your biggest struggle, your commitment level, and your reminder preference. You provide these to personalize your experience.
- Your content: the habits and tasks you create (including titles, colors, and schedules), your completions, streaks, and the focus groups you create or join.
- Support communications: if you email us, we keep that correspondence to help you.
Information collected automatically
- Usage and device data: basic technical information such as device model, operating system version, app version, and general usage events needed to run and maintain the App.
- Purchase data: when you subscribe or buy a lifetime plan, our payments partner records your subscription status and transaction identifiers. Apple processes the actual payment — we never see or store your full card details.
Notifications: reminders are scheduled locally on your device. We store your reminder preferences, but we do not send your habit data to a server to power push notifications.
2. How we use your information
- To create and manage your account and provide the App's features.
- To track your habits, streaks, completions, and group activity.
- To personalize reminders and your onboarding experience.
- To process subscriptions and purchases and grant access to paid features.
- To keep the App secure, prevent abuse, and fix bugs.
- To respond to your support requests.
- To comply with our legal obligations.
3. Legal bases for processing (EU/EEA & UK)
If you are in the European Economic Area or the United Kingdom, we rely on the following legal bases under the GDPR / UK GDPR:
- Performance of a contract — to provide the account and features you sign up for.
- Legitimate interests — to secure, maintain, and improve the App, where not overridden by your rights.
- Consent — for optional notifications and any optional features that ask for it. You can withdraw consent at any time.
- Legal obligation — where we must process data to comply with the law.
4. How we share your information
We do not sell your personal data. We share it only with service providers ("processors") who help us run the App, under contracts that require them to protect it:
- Supabase — backend hosting, database, and authentication.
- RevenueCat — subscription and purchase management.
- Apple — app distribution, payment processing, and in-app review prompts.
Within focus groups, limited information you choose to share — such as your username and progress on a leaderboard — is visible to other members of that group. We may also disclose information if required by law or to protect our rights and users.
5. International data transfers
Our service providers may process and store data in the United States and other countries. Where data is transferred out of the EEA or UK, we rely on appropriate safeguards such as the European Commission's Standard Contractual Clauses.
6. Data retention
We keep your personal data for as long as your account is active. If you delete your account, we delete or anonymize your personal data within a reasonable period, except where we must retain it to comply with legal obligations or resolve disputes.
7. Your rights
Depending on where you live, you may have some or all of the following rights:
If you are in the EU/EEA or UK (GDPR)
- Access the personal data we hold about you.
- Request correction of inaccurate data.
- Request erasure ("right to be forgotten").
- Restrict or object to certain processing.
- Request portability of your data.
- Withdraw consent at any time.
- Lodge a complaint with your local data protection authority.
If you are in California (CCPA/CPRA)
- Know what personal information we collect and how we use it.
- Request deletion of your personal information.
- Request correction of inaccurate personal information.
- Opt out of the "sale" or "sharing" of personal information — note we do not sell or share your data.
- Not be discriminated against for exercising your rights.
To exercise any of these rights, email sanjivgautamdev@gmail.com. You can also delete your account directly within the App. We will respond within the timeframes required by applicable law.
8. Security
We use industry-standard measures to protect your data, including encryption in transit and database-level access controls that ensure you can only access your own data. No method of transmission or storage is 100% secure, but we work to protect your information.
9. Children's privacy
The App is not directed to children under 13 (or under 16 in the EEA/UK), and we do not knowingly collect their personal data. If you believe a child has provided us personal data, contact us and we will delete it.
10. Changes to this policy
We may update this Privacy Policy from time to time. When we do, we'll revise the "Last updated" date above and, for material changes, provide a more prominent notice. Your continued use of the App after changes take effect means you accept the updated policy.
11. Contact us
Questions or requests? Email sanjivgautamdev@gmail.com.