Privacy Policy
Last updated: 27 June 2026
This policy explains how Double Tap ("we", "us") handles your data. We designed Double Tap to process as little as possible and to keep your conversations off our servers.
1. The screenshot stays on your device
When you trigger Double Tap, the screenshot is captured by the iOS Shortcut and read using Apple's on-device text recognition (OCR). The image is never uploaded and never stored. Only the extracted text and your chosen "vibe" are sent onward to generate a reply.
A screenshot may include messages written by the other person in your conversation. You are responsible for ensuring you have the right to process that content.
2. What we process
- Conversation text — sent transiently to generate a reply; not stored by us.
- Generated replies — stored in your reply history, linked to your account, so you can review past replies in-app.
- Style profile — your preferred tones, language level, example messages, and expressions, stored to personalise the replies Double Tap generates for you.
- Account identifier — an anonymous user id, and (if you sign in) your email address or provider identifier.
- Usage metadata — a timestamp per request, to enforce free-tier quotas. Message content is not stored.
- Subscription status and device identifier — managed by RevenueCat to verify your subscription status across reinstalls and devices.
3. Third-party processors
- Supabase — hosting, authentication, and database (EU region).
- xAI (Grok API) — receives the conversation text to generate the suggested reply. We use the API in a manner intended to exclude your content from model training; see xAI's API terms.
- RevenueCat — subscription management. Receives your account identifier and a device identifier (IDFV) to track and verify subscription status. See RevenueCat's privacy policy.
- Apple — App Store distribution, subscription payments, and (where offered) Sign in with Apple.
We do not sell your data and do not use your conversations to advertise to you.
4. Retention
Screenshots: never stored. Conversation text: not retained after a reply is generated. Generated replies: stored in your reply history until you delete your account. Style profile: stored while your account is active. Account and usage metadata: kept while your account is active and deleted on account deletion (subject to legal retention obligations for billing records).
5. Your rights (GDPR & similar)
You may request access to, correction of, or deletion of your data, and you may delete your account in-app at any time. Contact fredericmamath@gmail.com. Data is processed in the EU.
6. Children
Double Tap is intended for users aged 17 and over. It is not directed at children.
7. Changes
We may update this policy; material changes will be reflected by the date above.