Flow ("the App") is a tool designed to help householders build and manage guest lists, organize seating, track visits, plan menus, and coordinate future gatherings. We believe in transparency regarding the data we collect and how it is used to support your experience.
1. Information We Collect & How We Use It
We collect specific types of data to ensure the App functions correctly, to manage your account, and to improve stability.
Personal Information
- Email Address: Used for account creation, authentication, and account-related communications. This data is not shared with third parties for marketing.
- Name: Used for App functionality (e.g., personalization, guest lists). This data is not shared externally.
Hosting & Guest Data
- Guest Information: Names, family groupings, dietary restrictions, and visit history that you enter into the App. This data is stored securely in the cloud to enable cross-device sync.
- Occasion Data: Event titles, dates, guest assignments, seating arrangements, and menu selections.
- Dietary & Allergy Information: Allergy and dietary restriction data you associate with families or occasions. When using the AI menu planner, this information may be sent to our AI service provider to generate allergy-safe menu suggestions.
Financial Information
- Purchase History: Collected to manage your subscriptions and App functionality. This data is shared with our payment processor (Google Play) to verify transactions. We do not store credit card or payment details.
Photos & Media
- Photos: If you upload images to the App (e.g., Menu Cards), they are stored securely in the cloud to provide App functionality and are not shared externally.
Camera & Microphone
- Camera: Used solely for scanning QR codes when joining a family subscription. No photos are captured or stored. Camera access is requested only when you initiate a QR scan.
- Microphone: Used for optional voice-to-text input within the AI menu planner. Audio is processed by your device's built-in speech recognition service and is not recorded, stored, or transmitted by the App. Only the resulting text is used. Microphone access is requested only when you tap the microphone icon.
AI Menu Planner (Cena)
- Content Sent to AI: When you use the AI menu planner, the following information may be sent to a third-party AI service provider to generate menu suggestions: occasion title, ingredients you provide, dietary restrictions and allergies, and any style or theme description you enter or speak.
- No Personal Identifiers: Your name, email address, and account details are not sent to the AI provider. Only the menu-related content described above is transmitted.
- Data Retention: The AI provider processes your request in real time and does not retain your data after generating the response.
Device & Performance Data
- Device Identifiers: A device identifier is generated to manage device-specific features such as editor/viewer roles within family subscriptions. This identifier is stored locally and on our cloud servers.
- Crash Logs & Diagnostics: Device information, crash reports, stack traces, and diagnostic data are collected via our crash reporting service to help us identify and fix technical issues.
- Usage Analytics: We collect anonymized usage data (e.g., screen views, feature interactions) via our analytics service to understand how the App is used and to improve the experience. Your email may be associated with analytics events to provide support, but is never shared for marketing.
2. Data Sharing & Third Parties
We do not sell your personal data. However, data is transferred to specific third-party service providers required to operate the App:
- Cloud Infrastructure Provider: For securely storing and syncing your account data, guest lists, occasions, menus, and uploaded images across your devices.
- Google Play: For processing payments and verifying subscriptions.
- AI Service Provider: For generating AI-powered menu suggestions. Only menu-related content is shared (see Section 1, "AI Menu Planner").
- Crash Reporting Service: To receive crash logs, diagnostics, and device information for improving App stability.
- Analytics Service: To collect anonymized usage data for improving the App experience.
- Email Delivery Service: To send account-related communications (e.g., password resets, email verification).
3. Family Sharing & Collaborative Features
Flow offers a family subscription feature that allows multiple household members to share a single subscription and access the same data:
- When you join a family subscription (via invite code or QR scan), you will have access to the subscription owner's hosting data, including guest lists, occasions, menus, and shared ideas.
- The subscription owner and other family members will be able to see data contributed by all members within the shared workspace.
- Family members may be assigned an Editor role (can make changes) or a Viewer role (read-only access).
- If you leave a family subscription, your access to the shared data is revoked.
4. Data Export & Backup
The App provides tools for you to export and back up your data:
- Manual Export: You can export all your hosting data (guests, families, occasions, visit history, menus) as a backup file saved to your device's local storage.
- Automatic Backups: If enabled, the App can perform periodic backups to a folder you choose on your device.
- Exported data is stored locally on your device and is not transmitted to any third party by the App.
5. Data Security & Encryption
We take data security seriously.
- Encryption in Transit: All data transmitted between your device and our servers is encrypted using HTTPS.
- Encryption at Rest: Sensitive credentials stored on your device are encrypted using Android's security libraries.
- Cloud Storage: User data is stored securely using industry-standard cloud infrastructure with access controls and encryption.
- Authentication: Account access is protected by secure token-based authentication.
6. Your Choices and Controls
You retain control over your data:
- Account Deletion: You may request the deletion of your account and all associated data at any time via the "Delete Account" function within the App settings. This action is permanent and cannot be undone.
- Subscription Management: You can cancel subscriptions directly via Google Play.
- Permissions: You can revoke camera and microphone permissions at any time via your device's system settings. The App will continue to function, but features requiring those permissions will be unavailable.
- Data Export: You can export your data at any time using the backup feature in the App.
7. Data We Do Not Collect
- We do not collect location data.
- We do not collect biometric data.
- We do not record or store audio from microphone input.
- We do not access your contacts, call logs, or SMS messages.
- We do not use your data for targeted advertising.
8. Children's Privacy
Flow is not directed at children under 13. We do not knowingly collect personal information from children. If you believe a child has provided us with personal information, please contact us immediately and we will take steps to delete such information.
9. Changes to This Privacy Policy
This policy may be updated to reflect changes in our practices, features, or applicable regulations. We will update the "Last updated" date at the top of this page when changes are made. Continued use of the App after changes constitutes acceptance of the updated policy.
10. Contact Information
If you have questions about this Privacy Policy or your privacy within the App, you may contact us.