Effective date
2026-07-23
Who operates Thynkr
Legal operator: Miguel Fierro Muñoz
Postal address: Canal de la Mancha 2800, Col. Francisco I. Madero, C.P. 52172, Metepec, Estado de México, Mexico
Privacy-request email: thynkrapp@gmail.com
Information Thynkr handles
When you use Thynkr without an account
The core ritual can be used as a guest. Ritual drafts, conclusions, private reflections, Journey progress, Realm progress, and preferences are stored on your device unless you connect an account. Deleting the app may remove device-only information.
When you connect an Apple account
Sign in with Apple may provide an account identifier, name, and email according to the choices you make with Apple. Thynkr and its infrastructure provider use this information to create and authenticate your account.
Account-backed sync stores a user identifier, profile name, settings, ritual sessions and drafts, conclusions, private reflections, Journey entries, Realm progress, and related timestamps or revision information. This provides recovery and consistency across your devices.
Progress and usage information
Realm progress, completion history, preferences, and prompt interactions support your Stats, Journeys, recommendations, and sync. They are used for app functionality and product personalization, not advertising or cross-app tracking.
Onboarding location and age eligibility
Onboarding asks you to select your country, enter your city, and confirm that you are at least 16. It does not require GPS, precise device location, or IP-derived location. The values stay on your device unless you connect an account, when they are also stored with your profile.
Analytics and crash diagnostics
Thynkr does not include a third-party advertising, session-replay, crash-reporting, or general-purpose product-analytics SDK. RevenueCat's subscription SDK records App Store purchase status and limited paywall interactions—including impressions, dismissals, purchase-flow cancellations, and paywall-control use—so Thynkr can measure and improve subscription conversion. These events may include the RevenueCat app-user identifier, paywall and Offering identifiers, session identifier, platform and SDK versions, locale, display settings, and the control used. They do not include ritual questions, conclusions, private reflections, Ether thoughts, or Shared Ritual content. Apple may provide the operator with aggregated App Store performance information and opt-in crash diagnostics through App Store Connect and Xcode Organizer. Those Apple reports are subject to user sharing choices and Apple's privacy thresholds.
Supabase authentication and API security logs may retain an account identifier, authentication event, IP address, user agent, request route and status, and timestamp. Thynkr uses these operational diagnostics for authentication, abuse prevention, security, troubleshooting, and service reliability—not advertising or cross-app tracking.
Reflective nudges
On supported devices, Thynkr can use an Apple on-device model. For a signed-in user whose on-device model is unavailable, Thynkr can request a cloud nudge through Supabase using Google's Gemini 3.5 Flash-Lite model.
The cloud request contains only the Thynkr-provided ritual question, Realm, difficulty, and canonical language. It does not contain your conclusion, private reflection, name, email, country, city, Supabase identifier, or Apple identifier. Supabase stores a user- and session-linked record of request status, the generated nudge, model and token counts, attempts, and timestamps for security, idempotency, quota, and cost monitoring. Those records are deleted with the account.
Purchases
For Release builds with subscriptions, Apple processes payment information. RevenueCat receives App Store purchase and subscription-status information to validate purchases, grant Deep Thynkr access, restore purchases, support subscription management, and provide subscription analytics. RevenueCat also processes the limited paywall interactions described above. Signed-in customers are identified with their Supabase user identifier, so purchase and paywall interaction history can be linked to the account. Thynkr does not receive complete payment-card or banking details.
Not collected
Thynkr does not collect raw microphone audio, an unsaved on-device speech transcript, advertising identifiers, precise device location, or complete payment-card or banking details. Apple on-device model prompts and responses are not collected as a separate analytics stream.
Nudge processing and fallback
Thynkr prefers Apple on-device generation when available. A signed-in cloud request uses paid Gemini API processing, minimal thinking, no tools or web search, and store: false. Google may still process limited technical and abuse-monitoring information under its applicable API terms and privacy documentation.
The service permits one successful cloud nudge per ritual, up to three cloud nudges per account per UTC day, and up to three attempts for one ritual. If cloud processing fails, a built-in nudge keeps the ritual usable. Guest sessions do not send a question to Gemini.
How information is used
Thynkr uses information to:
- provide, restore, and synchronize rituals, Journeys, preferences, and progress;
- authenticate accounts and support account deletion;
- personalize question recommendations from completed practice;
- provide optional on-device, cloud, or built-in reflective nudges;
- validate purchases and maintain subscription access when subscriptions are enabled;
- deliver content-free reminders that you request;
- prevent abuse, enforce service limits, and maintain security; and
- maintain reliability using aggregate Apple-provided performance and opt-in diagnostic reports.
Thynkr does not use this data for targeted advertising, does not sell it, and does not combine it with third-party data to track you across apps or websites.
Service providers
- Apple for Sign in with Apple, system capabilities, App Store distribution, payments, aggregate analytics, and opt-in diagnostics.
- Supabase for authentication, account-backed storage, database access controls, Edge Functions, and notification infrastructure.
- Google Gemini API for the limited signed-in cloud nudge described above.
- RevenueCat for purchase validation, subscription entitlement, restore, and customer-management features when subscriptions are enabled.
These providers may process information outside your country. Thynkr relies on their contractual safeguards and other lawful transfer mechanisms where required. Their own terms and privacy notices also apply.
Retention and deletion
Guest information remains on your device until you delete it in the app, delete the app, or migrate it to a connected account.
Account-backed information is retained while your account is active. In-app deletion requests immediate deletion of the Supabase Auth user and cascading account-owned records, then clears local credentials and the account namespace. A verified support-assisted request is targeted for completion within 30 days.
Cloud-nudge records are deleted with the account. Push tokens are retained until sign-out, deletion, or removal after 90 days of inactivity. Resolved support/privacy correspondence is retained for 12 months, ordinary authentication/security logs for up to 90 days, minimal deletion-completion/legal records for up to 24 months, and deleted data in encrypted backups until normal rotation completes, targeted within 35 days.
Apple and RevenueCat may retain transaction records for tax, financial, refund, fraud, and legal duties. Deleting a Thynkr account does not cancel an App Store subscription. Legal holds, abuse investigations, and mandatory recordkeeping can require limited information to remain longer.
Your choices and rights
You can use the core ritual without an account, decline optional permissions, disable reminders, turn off on-device nudges, keep shared features unused, sign out, and initiate account deletion from Settings.
Depending on where you live, privacy rights may include access, correction, export, restriction, objection, deletion, withdrawal of consent, or a complaint to a data-protection authority. Email thynkrapp@gmail.com to make a request. Thynkr may need to verify that the request relates to your account.
Children
Thynkr is intended only for people aged 16 or older and is not directed to children under 16. If you are under 16, do not create an account or use Thynkr.
If you believe a person under 16 provided information, email thynkrapp@gmail.com so it can be reviewed and removed where appropriate.
Security
Thynkr uses account authentication, encrypted network transport, user-scoped database access controls, and restricted server functions. No system is completely secure, and this policy does not promise absolute security.
Changes to this policy
Thynkr may update this policy when the product, providers, or legal requirements change. The revised policy will carry a new effective date, with additional notice where required.
Contact
Miguel Fierro Muñoz
Canal de la Mancha 2800
Col. Francisco I. Madero
C.P. 52172, Metepec, Estado de México, Mexico
thynkrapp@gmail.com
For the current contact-channel status, see Thynkr Support.