Privacy Policy
Effective: May 28, 2026
Last updated: May 28, 2026
This Privacy Policy describes how Fitila ("we," "us," "the app") collects, uses, and protects information when you use the Fitila mobile application on iPhone or Android. Fitila is an indie app built and maintained by the Fitila Team, an independent developer based in the United States.
We've tried to write this in plain language rather than legalese. If anything is unclear, please email us at the address at the bottom of this page.
1. The short version
Fitila is a private, two-person space for couples to share small moments. We collect only what's needed to make the app work between you and your partner. We do not sell your data, share it with advertisers, or use it to train AI models. Your messages, voice notes, photos, and videos are shared only with the partner you pair with. They are also encrypted before we store them, so a copy of our database or file storage does not, on its own, reveal what you sent.
You can delete your account and everything in it at any time, from Settings.
2. Information we collect
We collect three kinds of information:
a) Account information you give us when you sign up:
- Email address (used to sign you in)
- Password (stored hashed and salted by our authentication provider; we never see or store the plaintext)
- Display name (chosen during onboarding so your partner sees who you are)
- Profile photo (optional, chosen during onboarding)
b) Content you create inside the app:
- Text messages, voice notes, photos, and videos you send your partner ("tend acts")
- Sit-together requests you send or accept, with their dates and any notes
- Any history of activity between you and your partner
c) Information needed for the app to function:
- A unique account identifier
- Push notification tokens, so we can send you alerts about your partner's activity
- Approximate device type and operating system version
- Timestamps for when activity occurs
We do not collect:
- Your phone number, address, or other contact details beyond email
- Your precise location
- Your browsing or device activity outside Fitila
- Biometric data, health data, financial data, or other special categories
- Information from third-party social networks
We don't use third-party analytics services, advertising SDKs, or cross-app tracking. We don't sell, rent, or trade any of the above to anyone.
3. How we use this information
We use your information only to:
- Authenticate you and keep your account secure
- Deliver your tend acts and presence requests to your paired partner
- Send you push notifications about activity from your partner
- Generate weekly, monthly, and yearly reflections summarizing your shared activity
- Provide customer support if you contact us
- Comply with legal obligations if they arise
We do not use your information to train AI models, profile you for advertising, build third-party datasets, or any purpose unrelated to operating Fitila.
4. Who can see your data
Your paired partner can see:
- Everything you send through tend acts
- Everything you respond to or send presence requests for
- Your display name and profile photo
- Activity summaries (reflections) covering the period you've been paired
We do not share your content with anyone else. Specifically:
- We do not sell, share, or license your content to advertisers, data brokers, or any third party
- We do not have human staff who can routinely view your messages or media, though our developer may access logs containing your account ID and activity timestamps for debugging
- We do not share your data with social networks, AI companies, or analytics providers
Your content is encrypted before it is stored. Message text, voice notes,
photos, and videos are encrypted with a key belonging to your pairing, held in a
dedicated key management service. A copy of our database or file storage, on its
own, does not reveal your content.
We are honest about the limit of that. Fitila is not end-to-end encrypted.
The keys are held by our infrastructure rather than only on your phones, which
means that we — as the operator of the service — retain the technical ability to
decrypt your content, and would do so if compelled by law or when investigating a
report of serious harm. We do not do it otherwise. If that distinction matters to
you, it is the honest answer, and end-to-end encryption is something we would like
to offer in future.
Service providers we rely on (data processors):
- Google Firebase / Google Cloud: stores your account data, content, and media files; sends push notifications via Apple's APNs on iPhone and Google's Firebase Cloud Messaging on Android. Google's processing of this data is governed by their data processing terms. We choose Firebase because of its security posture; we don't otherwise share data with Google for their own purposes.
- Apple: delivers push notifications to your iPhone. Apple sees only the notification payload, not your account contents.
- Google: delivers push notifications to your Android phone, and distributes the app through Google Play. Google sees only the notification payload, not your account contents.
These providers act only on our instructions and may not use your data for their own purposes.
Law enforcement: if we receive a valid legal order (such as a court-issued subpoena), we may be required to provide certain information. We will require an order be valid before complying, and where legally permitted, we will notify you so you can challenge the request.
5. Where your data is stored
Your account data, content, and media are stored on Google Cloud servers in the United States. By using Fitila from outside the U.S., you understand and consent to your information being transferred to and processed there.
6. Security
We protect your data with:
- Encryption in transit (TLS 1.2+) for all network traffic between the app and our servers
- Encryption at rest on Google Cloud's storage layer
- Strict Firestore security rules that prevent anyone from reading another couple's data, even via the API
- Password hashing handled by Firebase Authentication, which we never see in plaintext
No system is perfectly secure. We will notify you promptly (and as required by applicable law) if we become aware of a security incident affecting your data.
7. How long we keep your data
- Account information and content: kept for as long as your account is active. When you delete your account, we permanently delete your account data, content, and media within 30 days (some backups may persist for up to 60 days before they expire).
- Push notification tokens: kept until they're rotated or invalidated by the device.
- Server logs: retained for up to 90 days for debugging and abuse prevention, then deleted.
- If your partner deletes their account but you do not: content you created remains in your account; content they created may be removed.
8. Your rights
You can, at any time:
- Access your data — much of it is visible in the app itself; for anything else, email us.
- Correct your display name or photo from Settings.
- Delete your account and all associated data from Settings → Account → Delete Account.
- Export your data — email us and we'll send you a copy in a portable format within 30 days.
- Withdraw consent — uninstalling the app does not delete your data, but you can request deletion at any time.
If you live in California (CCPA / CPRA): you have the rights above, plus the right to know what categories of personal information we have collected (see Section 2), the right not to be discriminated against for exercising your rights, and the right to opt out of any "sale" or "sharing" of personal information (note: we do neither).
If you live in the European Economic Area, United Kingdom, or Switzerland (GDPR / UK-GDPR): you have the rights above, plus the right to restrict or object to processing, the right to data portability, and the right to lodge a complaint with your local data protection authority. Our lawful basis for processing your data is contract (we need it to provide the service you signed up for) and, where applicable, your consent.
To exercise any of these rights, contact us at the email address below.
9. Children
Fitila is intended for users 18 years of age and older. We do not knowingly collect personal information from anyone under 18. If you believe a minor has provided us information, contact us and we will delete it.
10. Cookies and tracking
Fitila is a mobile app on iPhone and Android and does not use cookies. We do not use third-party analytics, advertising SDKs, or cross-app tracking. Alerts are delivered through the standard push-notification systems provided by Apple and Google.
11. Changes to this policy
If we make material changes to this policy, we will notify you in the app and update the "Last updated" date above. For significant changes, we may also require you to re-accept an updated version before continuing to use the app.
12. Contact us
Questions, requests, or complaints about your data:
Fitila Team
Email: support@fitila.app
We aim to respond to all requests within 30 days.
This Privacy Policy is provided in good faith to describe Fitila's actual practices. It is not legal advice. If you operate or evaluate Fitila in a regulated context (workplace, healthcare, finance, etc.), please consult a qualified attorney.