GET IT IN

Privacy Policy

Last updated: [DATE — set when this is published]

Draft, not legal advice. This is a plain-language policy written to accurately describe what GetItIn actually does today. Given the sensitivity of the data involved, have a lawyer review and finalize this — in particular, sexual activity data may count as a “special category” under laws like GDPR and trigger additional obligations — before this app is used by anyone beyond you.

Who this applies to

GetItIn is for adults 18 and older. We don’t knowingly collect information from anyone under 18, and if we learn we have, we’ll delete it.

What we collect

  • Account: your email address, used only to sign you in (magic link or Google).
  • Profile: sex, age bracket, relationship status, and country — used to personalize your experience and, only if you opt in, to place you in anonymous community comparisons. You can also add an optional height and weight, which are visible only to you and never used in comparisons, statistics or AI.
  • Activity logs: date, time, duration, type, protection use, satisfaction, intensity, mood, who initiated, orgasm, alcohol use, a general location category (never GPS or an exact address), partner (a nickname you choose — we never ask for or require a real name, plus an optional approximate age range and sex for them if you choose to add it), positions (including any custom ones you add), the activities included (your own tags), and any private notes you write.
  • Derived data: your GetItIn Score, goals, streaks, and achievements — all calculated from the activity logs above.

We deliberately don’t collect your exact birthdate or precise location — an age range and a general area are enough.

How we use it

To run the app: show your stats, calculate your score, track streaks and achievements, and let you log and review your own activity. Your detailed activity is private by default and visible only to you.

If you turn on Share Anonymous Statistics (off by default), a limited set of fields — age bracket, sex, country, relationship status, session frequency, duration, satisfaction, and position counts — contribute to aggregate community statistics. Your name, email, notes, exact location, and partner identity are never included. We only ever show a community statistic once at least 100 people are in that group, specifically so no individual can be identified from it.

GetItIn’s AI features (entry summaries, “Ask GetItIn,” score explanations, personalized observations, comparison and achievement narration, and a goal-setting assistant) work from your structured statistics only — counts, averages, and category labels — never your notes or your partner’s identity. The one exception is Notes Insights, a separate feature that’s off by default: if you turn it on in Profile, your own private notes are sent to Claude (Anthropic) solely to find patterns and show them back to you. This is never shared with other users and never contributes to community statistics.

Couple (sharing with a partner)

If you connect with a partner, we store the connection, the name you chose for your partner to see, and the sessions you both agree to share (date, and time and length if given). Each of you can also share your own rating of a session; you see your partner’s only if they share it. Nothing else from your account is visible to your partner, including your email, private log, notes, scores, and goals. Either of you can leave at any time; leaving, or deleting an account, deletes all shared sessions and ratings for both of you. Sharing is only as private as the people involved, so share what you’re comfortable with.

What we never do

  • Sell your personal data.
  • Share your identifiable activity history with anyone, including our own staff, beyond what’s needed to operate the service.
  • Include your notes, exact location, or partner’s identity in any aggregate or analytics data.
  • Require a partner’s real name.

What our administrators can see

A small allow-list of administrators can access account-level facts to run the service — your email, join date, last sign-in, and whether you’ve finished onboarding or opted into community sharing — and can disable, re-enable, or delete an account. Administrators have no way, in the app, to read your activity log, notes, partner nicknames, goals, scores, or achievements. Every administrative action is recorded in an audit log.

Who processes it on our behalf

Supabase hosts our database and handles authentication. If product analytics are enabled, PostHog receives only product-interaction events (like “an activity was saved” or “the Compare screen was opened”) — never the content of what you logged. Anthropic (Claude) powers GetItIn’s AI features, receiving only structured statistics for every feature except the opt-in Notes Insights described above, which sends your note text. If error monitoring is enabled, Sentry receives a report when something breaks on our servers: the type of error, a message with emails and keys removed, and the page path — never your account, cookies, or anything you logged.

Cookies and storage

GetItIn uses a small number of cookies and browser storage. A sign-in session cookie keeps you logged in — it’s essential, so the app can’t work without it. Your device also remembers, in its own storage, whether the optional PIN lock has been unlocked in the current session, a small cookie remembers your time zone so that dates, streaks and goal periods line up with your day, and, only if you turn on Discreet Mode, a small cookie and a setting in your browser’s storage remember that choice on that device. Optional product analytics (PostHog), if we have them switched on, run only if you choose Accept in the cookie banner; until then nothing is stored or sent. They record product interactions only (like “Compare was opened”), never what you logged. You can change your choice anytime with “Cookie settings” in the footer or on your Profile, and a browser “Do Not Track” signal is treated as a no. We don’t use advertising or cross-site tracking cookies.

Security

Data is encrypted in transit and at rest. You can additionally set a PIN-based privacy lock in Profile — this is a screen that appears when you return to the app after being away, similar to a phone’s lock screen; it deters casual over-the-shoulder access but isn’t a replacement for keeping your account credentials safe, which remains the real security boundary.

Your controls

Everything below is available anytime from Profile:

  • Export your data as CSV or a complete JSON file.
  • Edit or delete any single entry from its detail page in History.
  • Delete your activity history while keeping your account.
  • Delete your community data — removes your past contributions to aggregate statistics and turns off future sharing.
  • Delete your account entirely — this is permanent and removes your profile, activities, goals, scores, and achievements.

Changes to this policy

If this policy changes, we’ll update the date at the top of this page. Material changes will be communicated more directly once the app has a way to do that.

Contact

Questions about this policy or your data: privacy@getitin.me