Privacy Policy

Last updated: August 30, 2026

This policy explains what information pip collects, why, and what control you have over it. It’s written to describe what this app actually does, not generic boilerplate — if a section doesn’t sound like something you’ve seen pip do, let us know.

Information we collect

Account information. When you sign up, we collect an email address, a username, and a password (stored securely, never in plain text) — or, if you sign in with Google or GitHub instead, we receive your name, email, and profile photo from that provider rather than asking you to set a password.

Content you provide. Posts, comments, likes, reposts, direct messages, friend-group posts, your bio, and any photos or videos you upload (avatar, cover photo, or post attachments).

Automatically collected information. Standard technical information any web service receives — IP address and basic request logs from our hosting provider — and cookies used to keep you signed in. We don’t use advertising or cross-site tracking cookies.

How we use it

To run the app: showing your feed, delivering notifications and messages, letting people find and follow you, and keeping your account secure. We don’t use your content or activity to build advertising profiles, and we don’t sell your information to anyone.

Who we share it with

pip runs on Supabase (database, authentication, and file storage) and Vercel (hosting) — both process data on our behalf to operate the service, under their own security commitments. If you sign in with Google or GitHub, that provider only ever tells us what’s needed to create your account (name, email, photo); we don’t get access to your Google or GitHub account beyond that. We don’t share your information with advertisers or data brokers.

Friend groups and private posts

Posts shared to a friend group are only shown to that group’s members within the app. That said, no online service can guarantee absolute security — don’t share anything in a friend group you wouldn’t want a member to be able to save or share outside it themselves.

Your choices

You can block or mute other accounts, mute individual notification types, and edit or delete your own posts at any time. Settings has a Delete account option that permanently removes your account, your posts, and everything you’ve uploaded — this can’t be undone, and there’s no recovery period once it’s confirmed.

Children’s privacy

pip isn’t intended for anyone under 13, and we don’t knowingly collect information from children under 13.

Security

We take reasonable technical measures to protect your information, but no service can guarantee perfect security — please use a unique password and let us know if you notice anything suspicious with your account.

Changes to this policy

If this policy changes in a meaningful way, we’ll update the date at the top of this page.

Contact

Questions about this policy or your data can be sent to support@pip-app.io.