Who's Cracked - Privacy Policy

Last updated: August 31, 2026

Who's Cracked is a social energy-drink logging app made for a small group of friends. This page describes what it collects and what happens to it.

What we collect

What we don't do

Where it lives, and the services that run the app

Data is stored with Supabase (Postgres and file storage, US region). Access is enforced by database row-level security: your logs are readable only by you and your accepted friends.

These services each receive only what is listed, only to do their one job, and handle it under their own privacy terms, which provide protection at least equal to this policy. None of them may use your data for their own purposes or advertising.

The shared drink catalog (product names, brands, caffeine content) is crowd-sourced from users and Open Food Facts, and contains no personal information.

How long we keep it

Everything above is kept for as long as your account exists and deleted with it. Crash reports expire on Sentry's schedule (90 days). Feedback emails already delivered to our inbox are kept so we can follow up on the bug.

Deleting your data

Delete your account any time in the app: the Me tab, the gear at the top right, Account, Delete account. This permanently removes your profile, profile picture, logs, can photos, comment photos and GIFs, feedback screenshots, heart-rate data, comments, friendships, push token, and login. Drink catalog entries you contributed remain, disassociated from you. To withdraw a single permission instead, use iOS Settings for the camera, photos, location, and Health, or the switches in the app's own Settings for heart rate and notifications.

Contact

Questions or deletion requests: hello@whoscracked.com ยท Terms of Service