Privacy Policy
This Privacy Policy describes how Fika Media LLC ("Fika," "we," "us," or "our") collects, uses, shares, and protects information in connection with the Fika mobile application and the website at fikadaily.com (collectively, the "Service"). By using the Service you agree to the practices described here.
1. Information We Collect
Information you provide
- Account information — your email address, display name, and (optionally) profile photo when you create an account.
- Goals, habits, and check-ins — the goals you set, habits you create, daily action items you complete, and any notes, scores, or reflections you add.
- Photos — if you attach a daily photo to a check-in, we store that image so it can sync across your devices and (optionally) be shared with your accountability partners.
- Accountability partner connections — partner invites you send or accept, and the relationship status between you and a partner.
- Subscription and purchase data — your subscription status (free or Premium) and Apple receipt identifiers, used to validate in-app purchases through Apple's StoreKit. We never receive or store your credit card number; payments are handled entirely by Apple.
- Support communications — if you email us, we keep the message and your contact details so we can help.
Information collected automatically
- Device and usage data — device model, OS version, app version, locale, time zone, and basic crash reports.
- Analytics events — anonymized events that tell us which features are used and where users get stuck (e.g., onboarding completed, partner invite sent). Analytics events are tied to your Fika user ID, not to advertising identifiers.
- Push notification tokens — if you grant permission, we store the Apple Push Notification token associated with your device so we can deliver reminders, partner activity, and challenge notifications.
- Apple HealthKit data (Premium, optional) — if you connect HealthKit, we read only the specific metrics you authorize, and only to display them inside the app. HealthKit data is never sent off your device unless you explicitly share a summary with a partner.
2. How We Use Your Information
- To provide, operate, and improve the Service — syncing your data across devices, sending reminders, computing your daily score and streaks.
- To connect you with accountability partners and teams you invite or accept.
- To deliver AI-assisted coaching for Premium subscribers (see Section 3 for how AI requests are handled).
- To send transactional messages (partner activity, challenge updates, account notifications) — not marketing email unless you opt in.
- To detect, prevent, and respond to fraud, abuse, security incidents, and violations of our Terms of Service.
- To comply with legal obligations.
3. Data Sharing and Third Parties
Service providers
We use a small set of vendors to run the Service. They process data only on our instructions:
- Supabase — authentication, database, file storage (photos), and edge functions. Hosted in the United States.
- Apple — App Store distribution, push notifications, in-app purchase processing, and (if enabled) HealthKit on-device.
- AI providers — when you use AI-assisted coaching, the relevant prompt and context are sent server-side through our AI proxy to a third-party large language model provider. We do not include your account email in those requests, and the provider is contractually prohibited from training models on your data.
- Email and analytics tooling — used for transactional email and aggregated product analytics.
Accountability partners and teams
Fika is built around sharing progress with people you choose. When you accept a partner or join a team, the following becomes visible to those people: your display name, profile photo, completion scores, the goals and habits you've shared (you control which), check-in status, and any photos or notes you elect to share. You control what is shared. Removing a partner stops new sharing immediately; previously shared content remains visible to the partner unless you also delete the underlying check-in.
Legal requirements
We may disclose information if required by law, subpoena, or court order, or to protect the rights, property, or safety of Fika, our users, or the public. We will challenge requests that we believe are overbroad or unlawful where appropriate.
What we don't do
- We don't sell your personal information.
- We don't share your data with advertisers.
- We don't use your goals, habits, or photos to train machine-learning models, and we contractually prohibit our AI providers from doing so on data we send them.
4. Data Storage and Security
Your data is stored on Supabase infrastructure in the United States. Data is encrypted in transit (TLS) and at rest. Database access is governed by row-level security policies, so a logged-in user can only read or modify their own records (or records explicitly shared with them by a partner). Photos are stored in object storage with signed, time-limited URLs. We follow industry-standard practices, but no online service is perfectly secure — please use a strong password and report any suspected account compromise to support@fikadaily.com.
5. Data Retention
We retain account and content data while your account is active. When you delete your account from inside the app (Settings → Account → Delete Account), we remove your personal data from production systems within 30 days. Backups containing residual data are rotated out within 90 days. Anonymized, aggregated analytics that cannot reasonably be linked back to you may be retained indefinitely.
6. Your Rights
You have the right to:
- Access — view your data inside the app at any time.
- Correct — edit your profile, goals, habits, and check-ins.
- Delete — permanently delete your account and personal data using the in-app deletion flow, or by emailing support@fikadaily.com.
- Export — request a copy of your data by emailing support@fikadaily.com.
- Withdraw consent — disable push notifications, revoke HealthKit access, or remove partners at any time inside the app.
If you are in the European Economic Area, the United Kingdom, or California, you have additional rights under the GDPR, UK GDPR, and CCPA respectively, including the right to lodge a complaint with your data protection authority. We will respond to verifiable rights requests within 30 days.
7. Children's Privacy
Fika is not directed to children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child under 13 has provided us information, please email support@fikadaily.com and we will delete it.
8. International Users
Fika is operated from the United States. If you access the Service from outside the U.S., your information will be transferred to, stored, and processed in the U.S., where data protection laws may differ from those in your country.
9. Changes to This Policy
We may update this Privacy Policy from time to time. If we make material changes, we will revise the "Effective" date above and, where appropriate, notify you in-app or by email before the change takes effect. Continued use of the Service after the effective date constitutes acceptance of the updated policy.
10. Contact Us
Questions about this policy or your data? Reach us at support@fikadaily.com or by mail:
Fika Media LLC
1298 W 1000 S
Mapleton, UT 84664
United States