Privacy Policy
Effective date: August 24, 2026
This Privacy Policy describes how Babe, Get This ("the app", "we", "us") collects, uses, and protects your information when you use our Android application and the website babegetthis.com.
The short version: lists you keep to yourself stay on your device and are never uploaded. When you share a list using a share code, that list (and its items) is stored on our server so the people you share with can see and edit it. Sharing is the only thing that uploads a list — if you never share, nothing about your lists leaves your phone. No ads and no data sales. We do use Google's analytics and crash reporting to see which features get used and to find bugs — it never receives your list contents, item names, or recordings, and you can turn both off in Settings.
1. Information We Collect
Account information
- Email address and password — used to create and sign in to your account. Authentication is handled by Supabase; your password is stored only in hashed form and is never visible to us.
- Why we require an account — features like voice transcription run on our servers and cost real money to operate. Sign-in exists solely to prevent abuse of that infrastructure, not to profile you.
Website waitlist
- Email address — the pre-launch "Notify me at launch" form on babegetthis.com has been removed now that the app is released. Addresses collected through it are still stored and were used only to send the one launch email: no newsletter, no marketing series, no sharing with anyone else.
- Anti-spam data — alongside each waitlist email we stored a one-way hash of the IP address (not the address itself) purely to limit how many signups can come from one network. It is not used to identify or track you.
- Opting out — the launch email includes an unsubscribe link, and you can ask us to remove your address at any time by emailing contactus@babegetthis.com. Joining the waitlist does not create an account.
Feedback
- Feedback you send — if you submit feedback through the app or email us, we receive the message you write (and your email address if you contact us by email). We use it only to improve the app and respond to you.
Shared lists
- When you share a list, we store on our server: the list name, and each item's name, quantity, category, shop, note, and checked/unchecked state. We also store who created the list and who has joined it (linked to accounts). We do not record who added, edited, or checked off each item — there is no per-edit history.
Voice recordings
- Audio — only when you actively use the voice capture feature, the app records audio through your device microphone and sends it over an encrypted connection (HTTPS) to our backend, which uses a speech-to-text service to transcribe it and then an AI text service to pull out the shopping items. Recording happens only while the voice capture screen is open and you have started a recording; the app never listens in the background.
- Both services receive only your recording or its transcript for that one request; neither uses it for advertising, profiling, or training.
- The microphone permission is optional — you can decline it and use every other feature of the app normally.
Usage analytics and crash reports
- What this is for — we collect anonymous usage statistics so we can see which features people actually use, and automatic crash reports so we can find and fix bugs. Both are provided by Google Firebase (Google Analytics for Firebase and Firebase Crashlytics).
- What is collected — which screens you open, and that an action happened: an item was added, an item was checked off, a list was completed, a voice capture succeeded or failed, a list was shared or joined. Alongside each we record only fixed labels and rounded numbers — for example whether an item was added by voice or by typing, a category from our own fixed category list, a failure reason such as "network", and item counts grouped into ranges such as "2-5" or "11-20".
- What is never collected — your item names, your list names, categories you created yourself, the text of anything you dictated, your email address, your name, or your share codes. None of these are ever sent to Google. We verify this with automated tests that fail our build if any of it appears in an analytics payload.
- Crash reports contain the technical error and the sequence of screens you visited beforehand, plus basic state such as which app version you are on, whether you were signed in, whether you were online, and roughly how many items you had. They contain no list content.
- Identifiers — analytics and crash reports are tagged with your account's random identifier (not your email or name) and a random app-installation identifier generated by Firebase. Neither reveals who you are, and neither is used for advertising.
- Turning it off — Settings > Privacy has two independent switches, "Usage analytics" and "Crash reports". Turning either off stops that collection immediately, and the choice is remembered.
Technical information
- Network status — the app checks your device's connectivity locally so it can tell you when voice capture needs a connection. This information does not leave your device.
- Service logs — like most online services, our backend and service providers may record basic technical data (such as IP address and request timestamps) in server logs for security and reliability purposes.
2. What We Do NOT Collect
- Lists you never share — these stay entirely on your device.
- No advertising identifiers, and no ads of any kind.
- No advertising or tracking SDKs, and no cross-app or cross-site tracking.
- No analytics on what is in your lists — see "Usage analytics and crash reports" above for exactly what is collected.
- No location data.
- No contacts, photos, files, or other device content.
- We never sell or rent your personal information to anyone.
3. How We Use Your Information
- To create and secure your account and keep you signed in.
- To convert your voice recordings into shopping list items when you use voice capture.
- To read and act on feedback you send us.
- To send a single launch notification to anyone who joined the website waitlist before release.
- To understand which features are used and to diagnose crashes, so we can improve the app.
- To maintain, troubleshoot, and improve the reliability and security of the service.
- To respond when you contact us for support.
4. Service Providers
We use a small number of infrastructure providers to run the app. They process data on our behalf and are not permitted to use it for their own purposes:
- Supabase — accounts, and storage/sync of shared lists. See the Supabase Privacy Policy.
- Railway — hosts our backend and the voice endpoint. See the Railway Privacy Policy.
- Groq — transcribes voice recordings to text. See the Groq Privacy Policy.
- Anthropic — turns the transcript into a list of items. See the Anthropic Privacy Policy.
- Google (Firebase) — usage analytics and crash reporting. See Firebase Privacy and Security and the Google Privacy Policy.
5. Data Storage and Security
- Lists you don't share are stored only locally on your device — we have no copy of them. Shared lists are stored on our server.
- All communication between the app and our servers is encrypted in transit using HTTPS/TLS.
- Access to production data is restricted, and passwords are stored using industry-standard hashing.
- No method of transmission or storage is 100% secure, but we work to protect your information using reasonable technical and organizational measures.
When you share a list
Anyone who has a list's share code can view and edit that list. Treat the code like a key — only give it to people you want in the list. In this version, once you've shared a list you cannot rotate its code or remove someone who has joined; to stop sharing, delete the list on your device (it stays with the other members). We're planning finer controls in a future update.
6. Data Retention
- Account data is kept for as long as your account exists.
- Feedback is kept only as long as it is useful for improving the app.
- Waitlist emails are deleted within 30 days of the launch email being sent, or sooner if you ask us to remove you.
- Voice recordings are processed transiently for transcription and are not retained as a voice archive.
- Usage analytics are retained by Google Analytics for 14 months and then deleted automatically. Crash reports are retained for approximately 90 days.
- Shared lists are kept on our server while at least one member still has the list. Deleted items and lists are marked deleted but their rows are retained — this is how the deletion reaches other members' devices.
- When you delete your account, your account record is permanently deleted from our systems within 30 days, except where a longer retention period is required by law. A list you shared stays available to the other members who joined it, but is no longer linked to you. Local lists are removed when you uninstall the app or clear its data.
- Because analytics and crash records are tied to a random identifier rather than to your name or email, deleting your account does not retroactively erase past records — but from that point the identifier no longer corresponds to any account. If you want those past records deleted as well, email us and we will do it.
7. Your Rights and Choices
Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. You can exercise these rights at any time:
- Access or correction — your lists (local and shared) are directly visible and editable in the app. For account data, email us.
- Deletion — see our account deletion page for step-by-step instructions.
- Analytics and crash reporting — turn either off at any time in the app under Settings > Privacy. No account needed, and it takes effect immediately.
- Anything else — email us at contactus@babegetthis.com and we will respond within 30 days.
8. Children's Privacy
Babe, Get This is not directed at children under 13, and we do not knowingly collect personal information from children under 13. If you believe a child has provided us with personal information, please contact us and we will delete it.
9. Changes to This Policy
We may update this Privacy Policy from time to time. When we do, we will update the effective date at the top of this page. Material changes will be highlighted in the app or on this website. Continued use of the app after changes take effect constitutes acceptance of the updated policy.
10. Contact Us
If you have any questions about this Privacy Policy or your data, contact us at:
Email: contactus@babegetthis.com
Website: https://babegetthis.com