Privacy Policy
WhoDidIt · Last updated 6 August 2026
WhoDidIt is a household chore tracker. Members of a household log what they did, and the app shows it back as a grid. This policy explains exactly what the app stores, where it goes, and how to get rid of it.
Who we are
WhoDidIt is built and operated by an independent developer. For any privacy question, including a request to access or delete your data, write to whodidit.app@gmail.com.
What we collect
| Data | Why |
|---|---|
| Email address | To identify your account and let you sign back in. Provided by you, or by Apple or Google when you use their sign-in button. |
| Display name, colour and avatar | To tell household members apart in the grid. The display name is whatever you type — it does not have to be a legal name. |
| Chore logs | The chore, an optional description, the minutes, and when it happened. This is the content of the app. |
| Photos | Optional. Attached to a chore log or a bulletin-board note, if you choose to add one. |
| Bulletin-board notes and reactions | Text you post to your household's board, and the "thanks" reactions on logs. |
| Household membership | Which household you belong to and whether you are an admin. This is what controls who can see your logs. |
| Push notification token | Only if you allow notifications. Used solely to deliver urgent bulletin-board notes. |
| Purchase status | Whether your household has an active Pro subscription, and when it expires. |
What we do not collect
- No location data. The app never asks for it.
- No contacts, calendars, microphone, or health data.
- No advertising identifier (IDFA), and no App Tracking Transparency prompt, because there is nothing to track.
- No usage analytics, crash-reporting SDK, or behavioural profiling.
- No birthdate, phone number, or postal address.
Who can see your data
Your chore logs, photos, and notes are visible to the other members of your household, and to nobody else. That is the point of the app. Access is enforced on the server by row-level security rules, not just by the app — someone who is not in your household cannot read your household's rows even with a modified copy of the app.
We do not sell your data, share it for advertising, or use it to train machine-learning models.
Service providers
WhoDidIt relies on a small number of processors, each of which handles data only to provide its service to us:
- Supabase — database, file storage, authentication, and push delivery. This is where your household's data is stored. Privacy policy.
- Apple — Sign in with Apple, the App Store, and the Apple Push Notification service. Privacy policy.
- Google — only if you choose "Continue with Google". Google tells us your email address and name; we tell Google nothing about your household. Privacy policy.
- RevenueCat — processes subscription receipts so we know whether a household is on Pro. It receives a purchase identifier, not your chore data. Privacy policy.
How long we keep things
- Photos are deleted after 12 months, for every account including Pro. A nightly job removes the image file. The chore log itself stays, so your history stays intact — only the picture goes. This is deliberate: a photo's job is proof at the moment of a disagreement, and nobody needs last March's dishwasher.
- Chore logs and notes are kept until you or your household admin delete them, or until the household is deleted.
- Bulletin-board notes expire and archive themselves seven days after posting by default.
- Account data is removed when you delete your account, as described below.
Deleting your account
Open Settings → Account → Delete account in the app. This removes your sign-in account and the data attached to it. If you are the only admin of your household, ownership passes to the longest-standing remaining member first, so the household is not orphaned.
If you would rather not do it in the app, email us and we will do it for you.
Children
WhoDidIt is rated 4+ and is designed to be used by whole families, but accounts are created by adults. An adult can create a managed profile for a young child, so the child appears in the grid without having an account of their own.
A managed profile stores a display name, a colour, and an emoji — nothing else. No email address, no birthdate, no identifiers, and no analytics of any kind. We do not knowingly collect personal information from children beyond this.
Security
All traffic between the app and our servers is encrypted in transit. Data is encrypted at rest by our hosting provider. Access to a household's rows and photo files is checked on the server on every single request, based on your membership of that household.
Your rights
Depending on where you live, you may have the right to access, correct, export, or delete your personal data, and to object to its processing. Most of this is available directly in the app — account deletion in Settings, and a CSV export of your household's logs. For anything else, email us and we will respond within 30 days.
Changes to this policy
If this policy changes in a way that materially affects you, we will update the date at the top of this page and note the change in the app before it takes effect.