This page is not yet the final effective privacy policy. Legal entity, business address, launch territories and final retention periods are still awaiting founder confirmation and legal review.
The short version
Twovely uses account and relationship data to deliver a private shared experience. We do not sell personal data. Private answer text is not sent to analytics, advertising tools, crash breadcrumbs or push notifications, and it is not used to train AI models.
Data we expect to process
- Email and authentication identifiers for account access.
- Display name, locale and timezone for personalization.
- Pairing, daily assignment, answer and reaction data for the core experience.
- Optional push tokens and reminder preferences.
- Subscription status handled through app stores and RevenueCat.
- Anonymous product analytics only after explicit opt-in.
How private reveals work
Another participant cannot read your locked answer through the normal product flow until the round is ready to reveal. Access rules are enforced on the server, not only hidden in the interface.
Service providers
The planned production stack includes Supabase for account and database services, Expo for app delivery and notifications, RevenueCat and the app stores for subscriptions, and optional PostHog analytics after consent. The final policy will list active providers and applicable processing locations.
Retention and deletion
Account data is intended to remain until deletion unless a shorter operational period applies. Users can delete their account inside the app or begin an external request on the account deletion page. Store transaction records may be retained separately under Apple or Google obligations.
Contact
Privacy questions can be sent to privacy@twovely.com. This address must be activated before launch.