Privacy Policy
Effective Date: August 12, 2025
This Privacy Policy describes how MindSpace Studios LLC ("we," "us," or "our") collects, uses, and discloses information, and what choices you have with respect to the information when you use our mobile applications, QUITTHAVEN and HomeFit (the "Apps" or "Services").
Your privacy is critically important to us. QUITTHAVEN is designed to help you manage problematic pornography use through personalized Cognitive Behavioral Therapy (CBT) and Acceptance and Commitment Therapy (ACT) principles. HomeFit is designed to help you maintain physical wellness and fitness goals. Due to the sensitive nature of the data you may share with us in both applications, we are committed to protecting your privacy and handling your information with the utmost care and transparency.
By using the QUITTHAVEN or HomeFit Apps, you agree to the collection and use of information in accordance with this policy.
1. Information We Collect
We collect several types of information for various purposes to provide and improve our Service to you.
1.1 Information You Provide Directly
When you use QUITTHAVEN or HomeFit, you may provide us with certain personally identifiable information ("Personal Data") and highly sensitive personal information ("Sensitive Data"). This includes:
Account Information:
- Email Address: Collected if you choose to sign up or sign in using email/password.
- Google ID Token: Collected if you choose to sign up or sign in using your Google account.
- User Name: If you choose to provide a custom name during onboarding.
- User ID (UID): A unique identifier generated by Firebase Authentication upon account creation or sign-in. This UID serves as a pseudonymous identifier to map your data within our systems, ensuring your personal identity is not directly linked to your sensitive activity data.
Onboarding and Profile Data:
- Concern Length: How long problematic behavior has been a concern.
- Frequency: How often the behavior occurs.
- Time Horizon: Specific hours when urges are strongest.
- Pathway Choice: Your selected therapeutic pathway ("Control" or "Values").
- Biggest Problem: Your free-text description of the single biggest problem this behavior is causing in your life.
- Impact Assessment: Areas of your life impacted (e.g., relationships, self-esteem).
- Triggers: Emotional and situational triggers you identify (e.g., stress, boredom, in bed, social media). This may include custom triggers you add.
- First Tool / Value: Your initial coping plan or chosen guiding value.
- Tree Commitment: Your first 24-hour commitment.
Sensitive Health/Wellness Data (User-Generated Content):
- Daily Debriefs: Your daily reflections on your journey, including status ("stayed on track," "tempted but managed," "setback"), confidence ratings, value-aligned actions, and sense of inner peace.
- Thought Records: Detailed entries from the CBT Thought Record tool, including situation, automatic thoughts, emotions (with intensity), identified cognitive distortions, evidence for/against thoughts, and new balanced thoughts.
- Coping Plans: "If-Then" strategies you create to manage triggers.
- Committed Actions: Value-aligned goals you set and track, including textual reflections, and potentially audio clips or photos you upload as proof.
- Mindful Check-ins: Your logged emotional states at specific times of day.
- SOS Protocol Usage: Records of when you activate the SOS protocol and your choices within it.
1.2 Information Collected Automatically
When you access and use the App, we may automatically collect certain information:
- Device Information: Your mobile device type, operating system, unique device identifiers, and mobile network information.
- Usage Data: Details of your access to and use of the App, including traffic data, logs, and other communication data.
- Analytics Data: Information about how you interact with the App, such as features used, time spent in the App, crashes, and performance data. This is typically aggregated and anonymized.
2. How We Use Your Information
We use the collected information for various purposes, primarily to provide, maintain, and improve the QUITTHAVEN and HomeFit Apps and your personalized experience:
- To Provide and Maintain the Service: To deliver the core functionalities of the App, including personalized pathways, tools, and progress tracking.
- To Personalize Your Experience:
- AI-Powered Insights: Your user-generated data (e.g., biggest problem, thought records, triggers, daily debriefs) is processed by our backend (Firebase Cloud Functions) and the Gemini API to generate personalized AI insights, strategy reports, and feedback.
- Pathway Adaptation: To tailor the App's content, tools, and AI guidance based on your chosen pathway and your progress.
- To Analyze Usage and Improve the App: To understand how users interact with the App, identify trends, fix bugs, and enhance features and content.
- For Security and Fraud Prevention: To protect the integrity and security of the App and our users.
- For Customer Support: To respond to your inquiries and provide technical support.
- For Research and Development: To develop new features, tools, and improve the effectiveness of our therapeutic approaches.
- For Advertising: To display relevant advertisements within the App (see Section 4).
3. How We Share Your Information
We may share your information in the following situations:
- With Service Providers: We may share your information with third-party vendors and service providers who perform services on our behalf, such as hosting, data analysis, payment processing, and customer service.
- Firebase: For authentication, database (Firestore), analytics, crash reporting, and cloud functions.
- Google Cloud Functions: For backend logic, including AI integration with the Gemini API.
- Ad Networks: For displaying advertisements (see Section 4).
- For Legal Reasons: We may disclose your information if required to do so by law or in response to valid requests by public authorities.
- With Your Consent: We may disclose your personal information for any other purpose with your explicit consent.
- In Aggregated or Anonymized Form: We may share aggregated or de-identified information that cannot reasonably be used to identify you.
- Business Transfers: In connection with any merger, sale of company assets, financing, or acquisition of our business.
We do not sell your Personal Data or Sensitive Data to third parties.
4. Third-Party Services and Advertising
QUITTHAVEN and HomeFit integrate with various third-party services, including advertising networks. These services may collect and process information about your use of the Apps according to their own privacy policies.
- Google AdMob: Used for displaying banner and native ads. AdMob may collect device identifiers, location data, and other information to serve personalized ads.
- Google Play Billing: For processing in-app purchases. We do not collect your payment card details; these are handled directly by Google Play.
- Google Credential Manager: For streamlined sign-in processes.
- Google Firebase: Essential for app functionality, data storage, analytics, and AI backend.
Please review the privacy policies of these third-party providers for more information on their data collection and processing practices. We do not control, and are not responsible for, the privacy practices of any third parties.
5. Data Security
We implement robust security measures designed to protect your information from unauthorized access, alteration, disclosure, or destruction. These measures include:
- Pseudonymization: All user-generated data and personal information is pseudonymized by associating it with a Firebase-generated User ID (UID).
- Encryption: Data is encrypted in transit (e.g., using HTTPS/TLS) and at rest (e.g., Firestore encryption).
- Access Controls: Strict access controls are in place to limit who can access user data.
- Secure Infrastructure: We leverage Firebase's secure and scalable infrastructure.
- Anonymization: Where feasible and appropriate, we anonymize sensitive data for analysis and research purposes.
However, no method of transmission over the Internet or method of electronic storage is 100% secure. While we strive to use commercially acceptable means to protect your Personal Data, we cannot guarantee its absolute security.
6. Permissions
To provide certain features, QUITTHAVEN and HomeFit may request the following permissions:
- Photos/Media: This permission is requested if you choose to upload photos as "Proof of Action" within the Committed Actions tool in QUITTHAVEN, or to track fitness progress in HomeFit. These images are processed and stored locally on your device only and are never uploaded to our servers.
- Microphone: This permission is requested if you choose to record audio clips as "Proof of Action" within the Committed Actions tool in QUITTHAVEN. These audio recordings are processed and stored locally on your device only.
- Health Data (HomeFit): HomeFit may request access to health data such as step count, workout data, and fitness metrics to provide personalized fitness tracking and recommendations. This data is used solely within the app and is not shared with third parties.
These permissions are solely for enabling local functionality that enhances your personal experience within the App and are not used for data collection or transmission off your device.
7. Data Retention
We retain your Personal Data and Sensitive Data for as long as necessary to provide the Service, fulfill the purposes outlined in this Privacy Policy, comply with our legal obligations, resolve disputes, and enforce our agreements. If you delete your account, we will take steps to delete your Personal Data and Sensitive Data from our active databases, subject to any legal obligations to retain certain information.
8. Your Data Protection Rights
Depending on your location and applicable data protection laws (such as GDPR in Europe), you may have the following rights regarding your Personal Data:
- Right to Access: You have the right to request copies of your Personal Data.
- Right to Rectification: You have the right to request that we correct any information you believe is inaccurate.
- Right to Erasure: You have the right to request that we erase your Personal Data, under certain conditions.
- Right to Restrict Processing: You have the right to request that we restrict the processing of your Personal Data.
- Right to Object to Processing: You have the right to object to our processing of your Personal Data.
- Right to Data Portability: You have the right to request that we transfer the data to another organization.
- Right to Withdraw Consent: You have the right to withdraw consent at any time.
- Right to Complain: You have the right to lodge a complaint with a supervisory authority.
To exercise any of these rights, please contact us using the information provided in Section 12.
9. Children's Privacy
QUITTHAVEN is not intended for use by individuals under the age of 18 due to its sensitive content. HomeFit may be used by individuals 13 and older with parental consent. We do not knowingly collect personally identifiable information from anyone under the age of 13. If you are a parent or guardian and you are aware that your child has provided us with Personal Data, please contact us. Given the sensitive nature of QUITTHAVEN's content, we strongly advise that individuals under the age of 18 do not use this App without parental or guardian supervision and explicit consent.
10. International Data Transfer
Your information, including Personal Data, may be transferred to — and maintained on — Google Servers located outside of your state, province, country, or other governmental jurisdiction where the data protection laws may differ from those of your jurisdiction. Your consent to this Privacy Policy followed by your submission of such information represents your agreement to that transfer.
11. Changes to This Privacy Policy
We may update our Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the "Effective Date" at the top of this Privacy Policy. You are advised to review this Privacy Policy periodically for any changes. Changes to this Privacy Policy are effective when they are posted on this page.
12. Contact Us
If you have any questions about this Privacy Policy, please contact us:
- By email: mindspace732@gmail.com
- By visiting this page on our website: [Website URL to be added]