Privacy Policy
Effective Date: November 25, 2024
Crocheteer ("we," "us," or "our") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use our mobile application and related services (collectively, the "Service").
By using the Service, you agree to the collection and use of information in accordance with this Privacy Policy. If you do not agree with the terms of this Privacy Policy, please do not access or use the Service.
Information We Collect
Account Data
When you create an account, we collect:
- Email address
- Password (stored securely as a hash, never in plain text)
- If you sign in with Google: your name, email address, and profile picture from your Google account
User Content
Content you create and store within the app:
- Crochet projects and patterns
- Instructions and notes
- Images you upload (project photos, visual notes)
- PDF pattern files you upload for processing
Onboarding Data
Information you provide during setup to personalize your experience:
- Crochet experience level
- Your goals and challenges
- How you discovered Crocheteer
Usage Data
Information about how you use the app:
- Time spent on rounds and projects
- Project completion status and progress
- Last opened timestamps
- Feature usage patterns
Device Data
Technical information collected automatically:
- Device type and model
- Operating system and version
- App version
- Unique device identifiers
Payment Data
If you subscribe to premium features:
- Subscription status and type
- Purchase history and transaction dates
- Payment processing is handled by RevenueCat and Apple/Google — we never receive or store your credit card numbers or payment details
How We Use Your Information
We use the information we collect to:
- Provide the Service: Operate the app, maintain your account, and enable core features like project tracking and pattern management
- Sync Your Data: Keep your projects and progress synchronized across your devices
- Process Subscriptions: Manage your subscription status and provide access to premium features
- Send Notifications: Deliver push notifications you've opted into, such as reminders and updates
- Improve the Service: Analyze usage patterns to fix bugs, develop new features, and enhance user experience
- Personalize Experience: Use your onboarding preferences to tailor the app to your skill level and goals
- Provide Support: Respond to your inquiries and resolve issues
- Comply with Legal Obligations: Meet legal requirements and protect our rights
Third-Party Services
We use trusted third-party services to operate the app:
Firebase (Google)
We use Firebase for authentication, database storage, and file storage. Firebase processes your account data, user content, and usage data. For more information, see Firebase Privacy Policy.
RevenueCat
We use RevenueCat to manage subscriptions and in-app purchases. RevenueCat processes subscription status and purchase data. For more information, see RevenueCat Privacy Policy.
Legal Bases for Processing (GDPR)
If you are in the European Economic Area (EEA) or UK, we process your data based on:
- Contract Performance: Processing necessary to provide you with the Service you requested
- Legitimate Interests: Processing for our legitimate business purposes, such as improving the app and preventing fraud
- Consent: Processing based on your explicit consent, such as marketing communications or optional features
- Legal Obligation: Processing necessary to comply with applicable laws
Data Sharing and Disclosure
We may share your information in the following circumstances:
- Service Providers: With third-party vendors who help us operate the Service (Firebase, RevenueCat), bound by contractual obligations to protect your data
- Legal Requirements: When required by law, subpoena, or legal process, or to protect our rights, property, or safety
- Business Transfers: In connection with a merger, acquisition, or sale of assets, with appropriate notice to users
We do not sell your personal information to third parties.
Data Retention
We retain your data as follows:
- Account Data: Retained until you delete your account
- User Content: Retained until you delete the content or your account
- Usage Data: Retained in aggregated, anonymized form for analytics purposes
- Payment Data: Retained as required for tax and legal compliance (typically 7 years)
When you delete your account, we will delete your personal data within 30 days, except where retention is required by law.
Your Rights
Depending on your location, you may have the following rights:
- Access: Request a copy of the personal data we hold about you
- Correction: Request that we correct inaccurate or incomplete data
- Deletion: Request that we delete your personal data
- Export: Request a copy of your data in a portable format
- Withdraw Consent: Withdraw consent where processing is based on consent
- Object: Object to processing based on legitimate interests
- Restrict: Request that we limit how we use your data
How to Delete Your Account
You can delete your account and all associated data by contacting us at the email below to request account deletion.
California Residents (CCPA)
If you are a California resident, you have additional rights under the California Consumer Privacy Act (CCPA), including the right to know what personal information we collect and the right to request deletion. We do not sell personal information. To exercise your rights, contact us using the information below.
Security
We implement appropriate technical and organizational measures to protect your data, including:
- HTTPS encryption for all data in transit
- Secure password hashing (passwords are never stored in plain text)
- Firebase security rules to restrict data access
- Regular security reviews and updates
However, no method of transmission over the internet or electronic storage is 100% secure. While we strive to protect your personal data, we cannot guarantee absolute security.
Children's Privacy
The Service is not directed to children under 13 years of age. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child has provided us with personal information, please contact us and we will delete such information from our systems.
International Data Transfers
Your data is stored on servers operated by Google Cloud (Firebase), primarily located in the United States. If you are accessing the Service from outside the United States, please be aware that your data may be transferred to, stored, and processed in the United States or other countries where our service providers operate.
By using the Service, you consent to the transfer of your information to countries outside your country of residence, which may have different data protection rules than your country.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make changes, we will update the "Effective Date" at the top of this page. For significant changes, we will notify you via email or through a notice within the app.
We encourage you to review this Privacy Policy periodically to stay informed about how we are protecting your information.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy or our data practices, please contact us:
- Email: support@crocheteer.com
We will respond to your inquiry within 30 days.
