Who's Cracked - Privacy Policy
Last updated: August 31, 2026
Who's Cracked is a social energy-drink logging app made for a small group of friends. This page describes what it collects and what happens to it.
What we collect
- Email address - used to sign in. Never shown to other users.
- Username and display name - visible to other users of the app, and on your public invite page (whoscracked.com/invite/your-username), which anyone who has the link or your username can view.
- Profile picture (optional) - if you choose one, the app reads only the single photo you pick, resizes it on your device, and stores it. It is visible to other users wherever your name appears, and on your public invite page. Nothing else in your photo library is read, and you can remove it at any time in Settings.
- Drink logs - the drink, when you logged it, and (only if you allow it) where. Each log is visible to your accepted friends by default; you can mark any log private.
- Can photos (optional) - a photo you choose to attach to a log, visible to whoever can see that log.
- Public web pages (optional) - sharing a crack from the app creates a public page at that link showing your display name, the drink, the photo and caption if you added them, when you logged it, and reaction counts; anyone with the link can open it, and deleting the log takes the page down. Your public invite page shows your display name, username, profile picture, when you joined, and how many drinks you've logged (logs you marked private are never counted).
- Comment photos and GIFs (optional) - a picture or GIF you post in a comment, visible to whoever can see the log. Photos and GIFs you post are stored at unguessable web addresses rather than behind a login, so anyone who has the address can open it; a picture a friend saved or forwarded stays reachable until you delete the post or your account.
- Camera - used only to scan barcodes and to take a photo you choose to attach. Barcode scanning happens entirely on your device; no video or images ever leave your phone unless you attach a photo.
- Heart rate (optional, off by default) - if you turn on the heart-rate feature in Settings, the app reads heart-rate samples from Apple Health for the window around a drink you log (30 minutes before to 60 minutes after), condenses them into a small chart, and stores that with the log. It is visible to the same friends who can see the log. The app only ever reads heart rate, reads nothing else from Health, and never writes anything to Health. Heart-rate data is never used for advertising or marketing and is never shared with third parties. Turn the feature off any time in Settings and new logs attach nothing; the same switch offers to remove the charts already on your past logs, and any single log's chart can be removed from that log's menu.
- Comments, likes, ratings, captions, and your bio - visible to the friends who can see the log they're attached to (the bio, wherever your name appears).
- Location (optional) - captured only in the foreground, only when you log a drink, and only if you grant permission. Every log lets you skip it with one tap. A located log shows the friends who can see it a place label on the log and a pin on the shared map, so your friends can see where you cracked one; you can remove the location from any log afterwards. Location is never captured in the background and never shared beyond your accepted friends.
- A device push token - stored so friends' cracks and comments can reach you as notifications. Deleted when you sign out or delete your account.
- Feedback you send (optional) - the message, any screenshots you attach, and the app version, stored and emailed to us so a human can reply and fix the problem.
- Crash and performance diagnostics - crash reports via Sentry and app performance timings (launch and screen-load times, with coarse device and network type) via Expo, used only to fix bugs and keep the app fast. We do not attach your name or email to them; a crash report can include the addresses of the app's own server requests, which carry account IDs but no names.
- Reports you file - who you reported, what you wrote, and which log or comment it was about, kept so we can act on it.
What we don't do
- No background location tracking, ever.
- No selling of data. Nothing is shared with anyone except the services listed below, which exist to run the app.
- No advertising, no analytics brokers, no tracking across other apps or websites.
- No use of Apple Health data for anything except the sparkline on your own logs. It is never used for marketing, advertising, or any form of data mining, and never disclosed to third parties.
Where it lives, and the services that run the app
Data is stored with Supabase (Postgres and file storage, US region). Access is enforced by database row-level security: your logs are readable only by you and your accepted friends.
These services each receive only what is listed, only to do their one job, and handle it under their own privacy terms, which provide protection at least equal to this policy. None of them may use your data for their own purposes or advertising.
- Supabase - hosts the database, file storage, and sign-in.
- Resend - delivers the sign-in code and feedback emails, so it processes your email address.
- Expo (EAS) - delivers app updates, relays push notifications (your device push token and the notification text), and receives the performance timings above.
- Sentry - receives crash reports.
- Open Food Facts - receives the barcode you scan, with nothing about you attached, to look up products the catalog doesn't know.
- GIPHY - receives the words you type in the GIF picker.
- OpenStreetMap (Nominatim) - receives a place name you type when editing a log's location, only on devices where Apple's own place search is unavailable.
- Apple - Maps for the map, Health for the optional heart rate, and the photo, message, and share sheets when you use them.
- Snap Inc. and Instagram - only when you tap Snapchat or Instagram in the share sheet, the card image you chose is handed to that app on your phone. Nothing is sent to them otherwise.
The shared drink catalog (product names, brands, caffeine content) is crowd-sourced from users and Open Food Facts, and contains no personal information.
How long we keep it
Everything above is kept for as long as your account exists and deleted with it. Crash reports expire on Sentry's schedule (90 days). Feedback emails already delivered to our inbox are kept so we can follow up on the bug.
Deleting your data
Delete your account any time in the app: the Me tab, the gear at the top right, Account, Delete account. This permanently removes your profile, profile picture, logs, can photos, comment photos and GIFs, feedback screenshots, heart-rate data, comments, friendships, push token, and login. Drink catalog entries you contributed remain, disassociated from you. To withdraw a single permission instead, use iOS Settings for the camera, photos, location, and Health, or the switches in the app's own Settings for heart rate and notifications.
Contact
Questions or deletion requests: hello@whoscracked.com ยท Terms of Service