Privacy Policy
Introduction
Toilet Panic ("we," "our," or "the app") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, and safeguard your information when you use our mobile application.
Toilet Panic helps you find nearby public toilets quickly. We designed the app with privacy in mind — we collect only what is necessary to provide the service, and we never sell your personal data.
Information We Collect
Location Data
- What we collect: Your device's GPS coordinates while the app is in use.
- Why we collect it: To find public toilets near your current location and provide navigation directions.
- How long we keep it: Location data is used in real time and is not permanently stored on our servers. Approximate location zones (not precise coordinates) may be retained temporarily for up to 24 hours to support emergency search session analytics.
- Your control: You can revoke location permissions at any time through your device settings. The app requires location access to function but does not track your location in the background.
Device Information
- What we collect: Anonymous device identifiers and fingerprinting data (device type, OS version, app version).
- Why we collect it: Solely for rate limiting and abuse detection to protect our services from misuse.
- How long we keep it: Device fingerprint hashes are retained for up to 30 days and then automatically deleted.
Emergency Search Session Analytics
- What we collect: Anonymous, aggregated data about search sessions, including search radius, number of results returned, and transport mode selected.
- Why we collect it: To improve the app experience, optimise search performance, and understand usage patterns.
- Storage: This data is stored in our Supabase backend infrastructure and is not linked to any personally identifiable information.
Crash Reports and Performance Data
- What we collect: Crash logs, performance metrics, and error reports through Sentry, our crash reporting service.
- Why we collect it: To identify and fix bugs, improve app stability, and ensure a reliable experience.
- What it includes: Stack traces, device model, OS version, app version, and general device state at the time of a crash. No personally identifiable information is included in crash reports.
Subscription and Purchase Data
- What we collect: Subscription status and purchase validation data through RevenueCat, our subscription management provider.
- Why we collect it: To manage premium feature access and process subscription transactions.
- What we do NOT collect: We do not have access to your payment details (credit card numbers, billing address, etc.). All payment processing is handled by Apple through the App Store.
Information We Do NOT Collect
- No user accounts required: You can use Toilet Panic without creating an account or providing any personal information such as your name, email address, or phone number.
- No contacts or address book access: We never access your contacts.
- No photos, camera, or microphone access: We never access your camera, photo library, or microphone.
- No browsing history: We do not track your web browsing activity.
- No advertising identifiers: We do not collect IDFA or use advertising tracking.
How We Use Your Information
We use the limited information we collect to:
- Provide core app functionality (finding nearby toilets and navigation).
- Detect and prevent abuse of our services.
- Improve app performance and fix crashes.
- Manage subscription access for premium features.
- Analyse anonymous usage patterns to improve the service.
Data Sharing and Third Parties
We work with the following third-party service providers:
| Provider | Purpose | Data Shared |
|---|---|---|
| Google Maps Platform | Toilet location search and map display | Anonymous location queries |
| Supabase | Backend infrastructure and data storage | Anonymous session analytics |
| Sentry | Crash reporting and performance monitoring | Anonymous crash and performance data |
| RevenueCat | Subscription management | Anonymous subscription status |
| Apple (App Store) | Payment processing | Managed entirely by Apple |
We do not sell, rent, or trade your personal data to any third party for marketing, advertising, or any other purpose.
Data Security
We implement industry-standard security measures to protect your data, including:
- Encrypted data transmission (TLS/HTTPS) for all network communications.
- Row-level security policies on our database to restrict data access.
- Regular security reviews of our infrastructure.
While we strive to protect your information, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security.
Data Retention
- Location data: Used in real time; not permanently stored.
- Device fingerprints: Retained for up to 30 days.
- Session analytics: Retained for up to 12 months in aggregated, anonymous form.
- Crash reports: Retained for up to 90 days.
- Subscription data: Retained for the duration of your subscription and up to 30 days after cancellation.
Your Rights
For All Users
You have the right to:
- Access: Request information about the data we hold related to your device.
- Deletion: Request deletion of any data associated with your device.
- Opt out: Disable location services or uninstall the app at any time.
GDPR Rights (European Economic Area Users)
If you are located in the European Economic Area (EEA), you have additional rights under the General Data Protection Regulation (GDPR):
- Right to access: You may request a copy of the data we process about you.
- Right to rectification: You may request correction of inaccurate data.
- Right to erasure: You may request deletion of your data ("right to be forgotten").
- Right to restrict processing: You may request that we limit how we use your data.
- Right to data portability: You may request your data in a machine-readable format.
- Right to object: You may object to our processing of your data.
- Right to withdraw consent: You may withdraw consent at any time where processing is based on consent.
Legal basis for processing: We process data based on legitimate interests (providing and improving our service) and, where applicable, your consent (location access).
To exercise any of these rights, contact us at hello@shabu.co.
CCPA Rights (California Users)
If you are a California resident, you have the following rights under the California Consumer Privacy Act (CCPA):
- Right to know: You may request disclosure of the categories and specific pieces of personal information we have collected.
- Right to delete: You may request deletion of your personal information.
- Right to opt out of sale: We do not sell personal information. No opt-out is necessary.
- Right to non-discrimination: We will not discriminate against you for exercising your CCPA rights.
To exercise any of these rights, contact us at hello@shabu.co.
Children's Privacy
Toilet Panic is rated 4+ and does not knowingly collect personal information from children under 13 (or under 16 in the EEA). The app does not require account creation and collects only anonymous, non-personal data as described in this policy. If you believe we have inadvertently collected information from a child, please contact us and we will delete it promptly.
Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of significant changes by updating the "Last Updated" date at the top of this policy and, where appropriate, through an in-app notification. We encourage you to review this policy periodically.
Contact Us
If you have any questions, concerns, or requests regarding this Privacy Policy, please contact us at:
Email: hello@shabu.co
Response time: We aim to respond to all privacy-related inquiries within 30 days.