Privacy Policy

Last updated: December 11, 2025

CurioDeck respects your privacy and is committed to protecting the personal information you share with us. This Privacy Policy explains what information we collect, how we use it, who we share it with, and the choices you have regarding your data. By using the CurioDeck mobile application or website (the "Service"), you agree to the practices described in this policy.

1. Information We Collect

Account Information

When you create an account, we collect your email address and securely store authentication credentials (encrypted password hash). We do not store your plaintext password.

Preference Data

During onboarding and within the settings screen, you provide topic selections, notification time preferences, notification enable/disable status, and timezone information. This data personalizes the content cards you see and determines when push notifications are sent.

Saved Content

When you save a card to your library, we store the article title, preview text, source URL, topic, and timestamp. This allows you to access your saved items across devices.

Usage Analytics

If you enable analytics in settings, we collect anonymous diagnostic information such as screen views, card swipes, tap events, app launch times, and crash reports via Firebase Analytics and Crashlytics. This data is aggregated and does not identify you personally.

Device Information

We automatically collect device type (iOS/Android), operating system version, app version, and Expo push notification tokens (if you grant notification permission). This ensures compatibility, enables push delivery, and helps us diagnose issues.

Advertising Identifiers

If you consent to personalized ads, we may collect your mobile advertising identifier (IDFA on iOS, AAID on Android) and share it with Google Mobile Ads and our ad partners. You can update your ad preferences at any time from the settings screen.

2. How We Use Your Information

We use the information we collect to:

3. Information Sharing

Third-Party Service Providers

We use trusted service providers to operate the Service, including:

These providers process data on our behalf under confidentiality agreements and are required to comply with applicable privacy laws.

Legal Requirements

We may disclose your information if required by law, court order, or government request, or if necessary to protect the rights, safety, or property of CurioDeck, our users, or the public.

Business Transfers

If CurioDeck is acquired, merged, or undergoes a change of control, your information may be transferred to the successor entity. We will notify you via email or in-app notice before any such transfer.

4. Your Privacy Choices

Analytics

You can disable anonymous usage tracking at any time by toggling the Analytics switch in the Privacy section of settings.

Push Notifications

Notification permissions are controlled through your device operating system and can be disabled in the CurioDeck settings screen. Disabling notifications will stop push delivery and remove your push token from our servers.

Personalized Ads

You can opt out of personalized advertising by tapping "Ad Preferences" in settings and updating your consent choices. You will still see ads, but they will be less relevant to your interests.

Data Export and Deletion

You may request a copy of your data or delete your account at any time by emailing privacy@curiodeck.app or manually deleting your account in the settings. We will respond within 30 days and permanently delete your account data within 90 days, except where retention is required by law.

5. Data Security

We implement industry-standard security measures to protect your information, including encrypted connections (HTTPS/TLS), secure authentication tokens, Firestore security rules, and regular security audits. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.

6. Data Retention

We retain your account data as long as your account is active. Saved cards, preferences, and content history remain until you delete them or close your account. Aggregated analytics are retained indefinitely but cannot be traced back to you.

7. Children's Privacy

CurioDeck is intended for users aged 13 and older (or the age of digital consent in your jurisdiction). We do not knowingly collect personal information from children under this age. If you believe a child has provided us with personal data, please contact us and we will delete it promptly.

8. International Users

The Service is operated from the United States, and your information may be stored and processed in the US or other countries where our service providers operate. By using CurioDeck, you consent to the transfer of your information to jurisdictions that may have different data protection laws than your country of residence.

9. Changes to This Policy

We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or Service features. When we make material changes, we will update the "Last updated" date and notify you via email or in-app message. Continued use of the Service after changes take effect constitutes acceptance of the revised policy.

10. Contact Us

Questions or concerns about this Privacy Policy or our data practices may be sent to privacy@curiodeck.app