Legal

Privacy Policy

What Suppose collects, why, and how to get rid of it. Last updated July 2026.

The short version. We don't sell your data, we don't run ads, and we don't track you across other apps. We do store your training history, on your device and on our server so a lost phone doesn't mean lost progress. You can delete all of it from inside the app.

Suppose ("we", "us") is responsible for the practices described here. For any question or request about it, email support@supposeapp.com.

Your training history

Your answers, confidence ratings, streak, and calibration history are stored on your device in a local database, which is what the app reads from as you use it.

They are also backed up to our server, so a lost, broken, or replaced phone doesn't mean losing your history. This happens from first launch, whether or not you have created an account — the app registers an anonymous identifier with our authentication provider, Supabase, and your history is stored against that identifier. It contains your answers and scores. It does not contain your name, your email address, or anything identifying unless you later create an account and attach one.

Profile → Settings → Reset all progress erases that history from the device and from our server. Profile → Settings → Delete account removes the account and its server-side records entirely.

What else we collect

Account details, if you make an account

Signing in works three ways: Apple, Google, or a 6-digit code sent to your email — there are no passwords, so we never store one. With email, we get the address you typed. With Apple or Google, we get the identifier and email address the provider returns, and if the provider shares it, your name (Apple's Hide My Email is fully supported — we never need your real address either way). Accounts are handled by Supabase.

Usage analytics

Which screens you open and which features you use, tied to a random identifier rather than your name. This is processed by Mixpanel. We use it to see which features help people improve. We do not send the content of your answers to it.

Purchase status

Whether you hold a Pro entitlement, processed by RevenueCat via the App Store. Payment is handled entirely by Apple — we never see your card details.

Things you send us

If you report a question, we receive the question's id, the reason you chose, and any note you add. If you email support, we keep the message so we can reply.

Who else handles your data

Only the processors named above, each doing one job: Supabase (accounts and history backup), Mixpanel (usage analytics), RevenueCat and Apple (purchases). We don't share your data with anyone else. All of them are based in the United States, so your data is processed there — if you're using Suppose from elsewhere, that means a transfer of your information to the U.S.

How long we keep it

Your training history and account details are kept as long as your account (or, if you never made one, your device's anonymous identity) is active. Deleting your account or resetting your progress removes them promptly, apart from processor backups, which take a little longer to clear. Analytics events are kept by Mixpanel under their standard retention window, not indefinitely.

Security

Connections to our server are encrypted in transit, and database access is restricted by row-level security so an account can only ever reach its own rows. There are no passwords to leak, because there are no passwords. No system is perfectly secure, but we hold as little as we can.

Your rights

Wherever you are, you can ask us to access, correct, or delete your personal information, or export a copy of it. Email support@supposeapp.com and we'll handle it. Most of it you can also do yourself from Settings, listed below.

If you're in the EEA, UK, or Switzerland: our basis for processing your training history and account details is that they're necessary to provide the service you're using; for analytics, it's our legitimate interest in understanding which features help people improve, which you can object to at any time by writing to us. You also have the right to lodge a complaint with your local data protection authority.

If you're in California: we do not sell or share your personal information as those terms are defined by the CCPA, so there is no "Do Not Sell" link to provide. You have the same access, deletion, and correction rights described above, and we won't treat you differently for using them.

What we never do

  • We do not sell your personal information.
  • We do not share it with advertisers or use it to build advertising profiles.
  • We do not track you across other apps or websites.
  • We do not show ads.

Deleting your data

  • Profile → Settings → Delete account — removes your account and its server-side records. Two confirmations, and it can't be undone.
  • Profile → Settings → Reset all progress — erases your training history from the device and from our server.
  • Deleting the app removes everything held on the device.
  • Or email support@supposeapp.com from the address on the account and we'll do it for you.

Children

Suppose is not directed at children under 13, and we do not knowingly collect their personal information. If you believe a child has given us personal information anyway, email support@supposeapp.com and we'll delete it.

Changes to this policy

If we change what we collect, we'll update this page and note the change in the app before it takes effect. The date at the top always reflects the current version.

Contact

Privacy questions or requests: support@supposeapp.com.