PactKeeper
Privacy Policy
Last updated: 14 August 2026
This Privacy Policy explains how Martin W Smith Consulting Limited (“we”, “us”, “our”) collects and uses personal data when you use the PactKeeper mobile applications for Android and iOS (“the app”) and our marketing website at pactkeeper.net (“the site”). By using the app or site, you agree to this policy.
Summary: We collect the minimum data needed to run your daily pact, check-ins, streak, reminders, and subscription. On the website, optional analytics cookies run only if you accept them. We do not sell your data or show ads.
1. Data controller
The data controller is Martin W Smith Consulting Limited, a company registered in England and Wales. Privacy and data requests: gdpr@mws-consulting.net.
2. Information we collect
Depending on how you use the app, we may collect:
- Name — the display name you enter during onboarding.
- Account identifiers — an anonymous Firebase user ID created automatically so we can store your data securely.
- Optional backup email — if you choose to link an email for streak backup, we store that email with your account and use passwordless email links to restore it on a new device.
- Optional usage analytics (app) — if you opt in in Settings, Firebase Analytics may collect anonymous event data such as screen names and whether a check-in happened (kept / partial / missed). We do not send your pact text, display name, notes, or email in analytics events. Analytics is off by default and can be turned off again at any time.
- Optional website analytics — if you accept analytics cookies on the site, Google Analytics may collect anonymous usage data such as pages viewed, approximate location (country/region), device and browser type, and referral source. Analytics cookies are off by default until you accept. We do not use advertising cookies on the site.
- Website waitlist details — if you join the waitlist, the name and email you submit, plus a timestamp and that the signup came from the landing page.
- App content — your daily commitment text, check-in results (done / missed / partial), optional notes, streak data, and notification time preference.
- AI check-in context — when you check in, we send your commitment text, result, streak count, and day of week to generate a one-sentence response.
- Subscription status — whether you have an active trial or paid subscription, processed through Google Play Billing or Apple In-App Purchase.
- Device / app identifiers — identifiers used by Firebase and related services to operate authentication, cloud storage, crash reporting, and (if enabled) push messaging.
You can use the app without linking an email. Email backup is optional and passwordless (no email/password account is required). We do not intentionally collect precise location, contacts, photos, or payment card numbers (payments are handled by Apple or Google).
3. How we use information
We use personal data to:
- Provide core app features (pacts, check-ins, history, streaks).
- Schedule evening reminders at the time you choose.
- Generate a short AI “witness” response after check-in.
- Manage free trial and subscription access.
- Maintain security, prevent abuse, and diagnose technical issues.
- Understand how the marketing site is used (only if you accept analytics cookies).
- Contact you about the waitlist if you sign up on the site.
Our legal bases under UK GDPR include performance of a contract (providing the app you request), legitimate interests (security and product improvement), and consent where required (for example, notifications on your device, optional app analytics, and optional website analytics cookies).
4. How we store and share information
Your app data is stored in Google Firebase (including Authentication, Cloud Firestore, and Crashlytics). Optional usage analytics uses Firebase Analytics when you opt in. Optional website analytics uses Google Analytics when you accept cookies on the site. AI responses are generated using Google Firebase AI Logic / Gemini. Subscriptions are processed by Google Play or the Apple App Store. Push notifications, when enabled, use Firebase Cloud Messaging and Apple/Google device services.
These providers act as processors or independent controllers processing data to run the app. We do not sell your personal information, and we do not share it with third parties for advertising.
Data in transit is protected using encryption (HTTPS/TLS). Access to your Firestore data is restricted by security rules so only your signed-in account can read or write your records.
5. International transfers
Firebase and related Google services may process data outside the UK. Where this happens, appropriate safeguards (such as standard contractual clauses) are used as required by UK data protection law.
6. Data retention
We keep your account data while you use PactKeeper. You can delete your account at any time in the app (Settings → Delete account). That removes your name, pact, check-ins, streak, notification preferences, and backup email from our servers. If you stop using the app without deleting, data may remain until you request deletion or we delete inactive accounts as part of ordinary maintenance.
7. Your rights
Under UK GDPR you may have rights to access, rectify, erase, restrict, or object to processing of your personal data, and to data portability where applicable. You may also lodge a complaint with the UK Information Commissioner’s Office (ICO).
- You can change your commitment and notification time in Settings.
- You can link or restore a backup email, and turn usage analytics on or off, in Settings.
- On the website, you can accept or reject analytics cookies via the cookie banner, or change that choice later using Cookie settings.
- You can manage or cancel a subscription in Google Play or the App Store.
- You can delete your account and associated app data in Settings → Delete account. App Store or Play subscriptions are billed by Apple or Google and are not cancelled by deleting your PactKeeper account — cancel those in store settings.
- You may also request access to or deletion of your data by emailing gdpr@mws-consulting.net. We may need enough information to verify the request.
8. Cookies on the website
The marketing site uses Google Analytics only after you accept analytics
cookies. Until then, Google Consent Mode keeps analytics storage denied.
We do not set advertising cookies. Your choice is stored in your browser
(pk_cookie_consent) so we remember it on later visits. You
can change it anytime via
Cookie settings.
9. Children
PactKeeper is not directed at children under 13 (or the minimum age required in your country). We do not knowingly collect personal information from children.
10. Changes to this policy
We may update this Privacy Policy from time to time. The “Last updated” date at the top will change when we do. Continued use of the app or site after an update means you accept the revised policy.
11. Contact
Privacy questions or data requests: gdpr@mws-consulting.net. General app support: support@mws-consulting.net. See also our Terms of Use.