Privacy Policy

Closer - Couple Widgets · Last updated September 1, 2026

Privacy Policy

Last updated: September 2, 2026

This Privacy Policy explains how Yannick Westermann, Theresienstraße 51, 80333 Munich, Germany ("we", "us", or "our") processes personal data when you use Closer - Couple Widgets ("Closer"). We are the data controller for this processing.

Contact: yannick@closertoyou.app

What Closer does

Closer lets two people pair their accounts and share relationship content through the app, Home Screen widgets, Lock Screen widgets, and notifications. Information you share through Closer is intended to be visible to your linked partner.

Data we process

Account and identity data

  • A Supabase user ID, authentication session, and account status. You may begin with an anonymous Supabase account.
  • If you use Sign in with Apple, Apple provides an identity token and stable Apple account identifier. Apple may also provide your name and email address, including an Apple private-relay address, depending on your choices. Apple normally provides the name only on the first authorization.
  • Your display name and profile photo, if you add them.

Pairing and relationship data

  • Pairing invite codes, linked-account identifiers, pairing dates, and partner-update events.
  • Mood, presence text, love-note drawings, pulses, anniversaries, visit titles, visit places, dates, and timestamps.
  • Shared memories, including titles, places, dates, and an optional selected photo.
  • Moments captured with the camera, which may include rear- and front-camera photos, an optional caption, and capture time. Closer does not request microphone access or record audio.
  • Shared-song links and the resolved song title, artist, artwork, universal link, and sharing time.

Location data

If you grant location permission, Closer processes latitude and longitude, a city or regional label, and an IANA time-zone identifier. The app uses kilometer-level requested accuracy and significant-location-change monitoring to keep distance and partner-time widgets current. If you grant "Always" access, updates may occur in the background. Coordinates are stored in the Closer backend and are available to your linked partner's authenticated app so it can calculate distance.

If a photo you select contains GPS metadata, Closer may use that coordinate to suggest a place name for the memory. The selected and compressed image is uploaded, but Closer does not deliberately store that photo's original EXIF metadata as a separate backend field.

You can change location access in iOS Settings. Turning permission off stops new location collection but does not automatically erase information already stored.

Photos and camera

Closer uses Apple's system photo picker for profile and memory images and reads only the image you select. Camera access is used only while you use the Moment capture screen. Selected or captured images are compressed and stored locally and in Supabase so they can be displayed to your linked partner.

Notifications and device data

If you enable notifications, Closer stores an Apple Push Notification service (APNs) device token associated with your account. Partner activity may cause Supabase to send Apple a notification containing routing and refresh information. The notification extension then fetches the current partner state for your widgets.

Purchases

Purchases are processed by Apple through the App Store and managed in the app through RevenueCat. RevenueCat receives an app-user identifier tied to your Supabase user ID, device and app information, App Store receipt or transaction information, product identifiers, entitlement status, purchase dates, and expiration information. RevenueCat sends entitlement events to Supabase so one Closer Pro purchase can unlock access for both linked partners. We do not receive or store your payment-card number.

Product analytics

Closer uses PostHog EU Cloud for pseudonymous product analytics. Analytics are enabled in the app's default settings and can be disabled at any time under Settings → Anonymous usage analytics.

Analytics may include event names such as screens viewed, onboarding and pairing progress, widget actions, paywall and purchase outcomes, selected categories or feature types, app version, build number, development or production environment, simulator status, and a one-way SHA-256 hash of the Supabase user ID. Because the hash is stable, this data is pseudonymous rather than fully anonymous.

Closer's analytics code excludes names, email addresses, messages, captions, memory titles and places, invite codes, photos, drawings, coordinates, and raw Supabase user IDs. PostHog session replay, automatic screen capture, application-lifecycle capture, push-notification capture, and SDK swizzling are disabled. Closer does not use analytics for cross-app tracking or advertising.

Local storage

Closer stores app state in its Application Support directory and widget state, images, account tokens, pairing identifiers, and preferences in the shared App Group container used by the app and its extensions. Authentication credentials may also be stored using storage provided by the Supabase SDK and iOS. Deleting the app normally removes app-container data from that device, but it does not delete backend data.

Support communications

If you email us, we process your email address, message, attachments, and any information you choose to provide so we can answer your request.

Services that receive data

  • Supabase provides authentication, the PostgreSQL database, realtime synchronization, and Edge Functions. It receives account identifiers, authentication data, paired content, precise coordinates and derived place/time-zone data, device tokens, subscription status, and normal network information such as IP addresses and request logs.
  • Apple provides Sign in with Apple, the system photo picker, camera and location frameworks, reverse geocoding, APNs, StoreKit, and App Store billing. Apple receives data necessary to provide the feature you request, such as authentication data, locations submitted for reverse geocoding, push tokens and delivery metadata, and purchase information.
  • RevenueCat manages products, receipts, transactions, and Closer Pro entitlements. It receives the purchase data described above and processes it on our behalf.
  • PostHog receives pseudonymous analytics events when analytics are enabled. Closer is configured for PostHog EU Cloud.
  • Songlink/Odesli receives a music URL you deliberately share and your device's region code to resolve song metadata. Like any network service, it and the artwork host can also receive your IP address and request metadata.

Service providers may process data in countries outside Germany or the European Economic Area. Where required, we rely on appropriate contractual and legal safeguards. Their own privacy notices provide more information.

What we do not collect through the app

Closer does not integrate advertising SDKs, cross-app tracking, contacts access, HealthKit, microphone access, Firebase, Sentry, OpenAI, Stripe, or a third-party crash-reporting SDK. Apple may separately offer device diagnostics to developers if you choose to share analytics with app developers in iOS settings.

Why we process data

We process core account, pairing, synchronization, notification, and purchase data to perform our contract with you and provide the features you request. We process user-selected photos, camera content, location, and notifications when you choose those features and grant the relevant device permission. We use limited pseudonymous analytics and security logs for our legitimate interests in understanding, securing, and improving Closer, subject to your analytics opt-out. We may also process data to comply with legal obligations and establish or defend legal claims.

Sharing with your partner and others

Your linked partner can access the profile and relationship content you share, including your current coordinates for the distance feature. Do not upload content you do not have the right to share or do not want your partner to see. Unpairing stops the normal authenticated partner-sync relationship, but content already displayed, cached, copied, or screenshotted on another person's device cannot necessarily be recalled.

We do not sell personal data. We may disclose data when required by law, to protect users or the service, or as part of a business transfer subject to applicable law.

Retention

Current profile and shared-widget data is generally retained while your account uses Closer, until it is replaced, removed, or included in a verified deletion request. Pairing events and operational records do not currently have a fixed automatic expiry in the app's backend. Purchase, security, and support records may be retained as necessary to provide the service, prevent fraud, comply with law, and resolve disputes. Provider-held data is also subject to the applicable provider's retention rules.

Deleting your account and requesting your data

In the app, open Settings → Account → Delete account. The current in-app flow removes your profile row and current profile content, APNs device token, pair link, and local app state, then signs the device out. Your partner will become unpaired.

The in-app flow does not by itself complete deletion of the underlying Supabase authentication record or every historical, shared, analytics, or purchase record. For complete account deletion, backend-data erasure, a copy of your data, correction, restriction, objection, portability, or withdrawal of consent, email yannick@closertoyou.app. State that the request concerns Closer and provide enough information for us to verify the account without sending passwords or Apple credentials.

Subject to applicable law, you may also lodge a complaint with a data-protection supervisory authority. If you are in the EEA, you may contact the authority where you live or work.

Children

Closer is intended only for people aged 16 or older. We do not knowingly provide the service to children under 16. If you believe a child has provided data, contact us so we can investigate and delete it where required.

Security

Closer uses authenticated access controls, row-level database policies, encrypted network connections, and Apple platform protections. Linked users are limited to their own and their partner's relevant data. No system is completely secure, so we cannot guarantee absolute security.

Changes

We may update this policy as Closer changes. We will update the date above and provide additional notice when required by law.

Contact

Yannick Westermann Theresienstraße 51 80333 Munich Germany

Email: yannick@closertoyou.app