Privacy Policy
Effective date: August 22, 2026
Syncly ("Syncly", "we", "us", or "our") helps groups plan hangouts, coordinate rides, and — for teens and their guardians — share location and get plan approvals. This policy explains what information we collect, how we use and share it, how long we keep it, and how you can access, correct, or delete it. It applies to the Syncly website, mobile experience, and related services (the "Service").
1. Who we are
Syncly is operated by [Legal entity name — e.g. "Syncly, Inc." or the individual developer's name], [registered address, if you want one on file — optional but often expected by app store / OAuth reviewers]. If you have questions about this policy or your data, see Contact us below.
2. Information we collect
We collect information you give us directly, information created as you use the Service, and information generated by the features you or your guardian/teen turn on.
Profile & account information
- Name, email address, and password (or your Google/Apple account identifier if you sign in with those providers).
- Profile details you choose to add: avatar, school/graduation year, and similar preferences.
- Group and plan activity: the plans, groups, and squads you create or join.
Location data
If you enable live radar, safe zones, or ride/carpool coordination, we collect your device's real-time or approximate location so it can be shown to the people you've explicitly shared it with (your squad for a specific plan, or your linked guardian). Location is collected only while these features are turned on, and only from the device you've signed in on.
Contact & invite information
- Contact details you provide to invite someone to a group, plan, or as a guardian link (e.g. an email, phone number, or invite code).
- The relationship itself — who invited whom, and whether an invite was accepted.
Guardian / parent-linking data
When a teen and a guardian link their accounts, we collect and store the link itself (which accounts are connected and in what role), plus the data that link is designed to share — see Minors, teens & guardians below for exactly what that includes.
Messages & content
Direct messages, plan chat, comments, private answers you submit to a plan (like budget or scheduling constraints), and any photos or files you upload (e.g. an avatar).
Device & usage information
- Log data such as IP address, device/browser type, and timestamps of activity.
- Push notification tokens, if you enable notifications.
- Basic diagnostic and analytics data used to keep the Service reliable.
3. How we use information
- Operate core features: creating plans, ranking options, coordinating rides, running live radar and safe-zone alerts, and guardian approvals.
- Authenticate you and secure your account.
- Send notifications you've opted into (plan updates, check-in requests, safe-zone alerts, approval requests).
- Maintain, debug, and improve the Service, including understanding aggregate usage patterns.
- Enforce our Terms of Service and keep the Service safe from abuse.
- Comply with legal obligations.
We do not sell your personal information, and we do not use your location data for advertising.
5. Minors, teens & guardians
Syncly is built to be used by teenagers together with a parent or guardian, through our guardian-linking feature. This section explains what that means for data handling.
Who can use Syncly
You must be at least [minimum age — confirm the age you want to support, e.g. 13] years old to create your own account. If you are under 18, we encourage — and some features may require — a parent or legal guardian to link their account to yours. Syncly is not directed at children under [13], and we do not knowingly collect personal information from children under that age without guardian involvement through the linking flow described here.
What a guardian link shares
Once a teen accepts a guardian link (or a guardian sends and the teen accepts an invite), the guardian's family hub can see:
- The teen's live location and location history while radar is active, and any safe zones configured for them.
- Plan details the teen is part of: who's going, cost, destination, and ride/return-time information.
- Check-in requests and responses.
- Plan approval requests, and the ability to approve, decline, or approve-with-conditions.
- Alerts related to safe-zone entry/exit or missed check-ins.
A guardian link does not give a guardian access to the teen's private messages, DMs, or the private constraints (like an individual friend's budget) that other group members have submitted to a plan.
Consent & control over the link
Linking requires action from both sides — typically an invite code generated by one party and entered by the other — so neither a teen nor a guardian is linked without their participation. Either party can unlink the accounts unilaterally from their settings, at any time, without the other party's confirmation. Unlinking stops future data sharing between them going forward, but does not retroactively delete location, plan, or check-in data that was already shared with the other party while the link was active.
A note on legal compliance
Laws governing children's and teens' data (such as COPPA in the U.S. and similar regimes elsewhere) vary by age and jurisdiction. [This section describes the product's intended data-sharing design, not a legal conclusion. Have counsel confirm the minimum age you support, whether COPPA or a state student-privacy law applies to your user base, and whether you need verifiable parental consent before a guardian link is treated as sufficient.]
6. Data retention
- Account and profile information is kept for as long as your account is active.
- Live location pings are currently kept as history for as long as your account exists — there is not yet an automatic deletion window that clears location data after a plan ends or after a fixed number of days.
- Messages and plan data are kept for as long as the relevant plan or group exists, or until you delete them.
- Guardian-link data is kept for as long as the link is active. Unlinking stops future sharing but does not retroactively delete data already shared — see "Consent & control over the link" above.
- We may retain limited data after account deletion where required for legal, security, or fraud-prevention purposes.
[If you want location history to actually expire after a short window (e.g. 24 hours, or when a plan ends), that needs to be built — it does not exist yet. Once it's built, update the bullet above to state the real number instead of "kept as history indefinitely."]
7. Your choices & rights
- Access & update: review and edit your profile information at any time in Settings.
- Location controls: turn live radar off for a given plan or overall in Settings; guardians can also be shown when a teen's location sharing is off.
- Notifications: opt out of push notifications from your device or browser settings.
- Unlink a guardian relationship from your account settings.
- Depending on where you live, you may have additional rights — such as access, correction, deletion, portability, or objection to processing — under laws like the GDPR or U.S. state privacy laws. To exercise these, contact us using the details below.
8. Deleting your account & data
You can delete your account and associated personal data at any time from Settings, or by emailing [privacy/support contact email] from the email address on your account.
When you delete your account, we remove or de-identify your profile, messages, and location data within [X days, e.g. 30], except where we're required to keep limited records for legal, security, or safety reasons (for example, records relevant to an open guardian dispute or a legal request). Deleting your account also removes any active guardian link, though the other party is not currently notified automatically when that happens. [The deletion path currently removes the account directly; whether it fully removes data from every table (not just the profile) has not been independently verified end to end. Confirm this actually works as described — including whether unlinked guardians get notified, if you want that — before this section makes the removal promise above as a firm commitment.]
9. Security
We use industry-standard measures — including encryption in transit, access controls, and authentication via Supabase — to protect your information. No method of storage or transmission is 100% secure, and we can't guarantee absolute security.
10. International users
Syncly's infrastructure may process and store data in the United States or other countries where our service providers operate. If you use the Service from outside those countries, your information may be transferred internationally. By using the Service, you consent to this transfer.
11. Changes to this policy
We may update this policy from time to time. If we make material changes, we'll update the effective date above and, where appropriate, notify you in the app or by email.
12. Contact us
Questions about this policy, or requests regarding your data (including access, correction, or deletion), can be sent to [privacy@yourdomain.example].
See also our Terms of Service.