Twoly // Legal

Privacy Policy

Effective 23 July 2026

In short: Twoly has no ads, no analytics SDKs, no location tracking, and does not track you across apps or websites. There is no email or password sign-up. The only data we store off your device is the pet, journal, and relationship details you and your partner choose to save, so the two of you can see the same creature and the same journal in real time. Nothing here is ever used for advertising.

[01]

Who we are

Twoly ("the app", "we", "us") is a shared virtual pet app for couples, developed by Noel Hermann, based in Austria. This policy explains what data the app handles and why. If anything here is unclear, contact us at noel.hmnn@gmail.com.

[02]

No email, no personal identifiers

Twoly does not ask for your name, email address, phone number, or a password. On first launch the app generates a private 12-word recovery phrase on your device and uses it to create a private account behind the scenes. The email address and password that account uses are both derived mathematically from your phrase; you never type or see a real email address, and we never collect one.

The recovery phrase is generated on your device using your device's secure random number generator and stored in the secure keychain on your device (iOS Keychain / Android Keystore). It is never sent to us in a form we can read back, and we cannot recover it for you. It is the key that lets you sign back into your account on another device, so keep it safe.

[03]

What data we handle

Your shared pet and relationship details. The pet's name, the dates you set for being together and apart, your daily care actions, your streak, and your reunion plans are stored in Google Firebase (Cloud Firestore) so you and your partner both see the same pet and the same progress, synced in real time.

Journal entries. A photo or a voice note you add to the daily journal, plus any caption you write, is stored the same way, so your partner can see or hear what you left. Photos and voice notes are stored as files in Google Firebase Storage.

Who can see this. Only you and the one partner you are paired with (by invite code) can see any of this. There is no public profile, no feed, and no third party has access to it.

Location. Twoly does not request or use your location for anything. There is no location feature in the app.

Technical data. Connecting to Firebase involves standard technical data such as your device's IP address, handled by Google to deliver the service. We do not maintain our own analytics profile of you.

[04]

What we do not do

  • No advertising and no advertising identifiers.
  • No third-party analytics or tracking SDKs.
  • No location collection of any kind.
  • No in-app purchases and nothing to pay for.
  • No tracking of you across other companies' apps or websites.
  • We never sell or rent your data.
[05]

Service providers

We rely on a small number of Google Firebase services to run the app. Your use of the app is also subject to their handling of data:

  • Google Firebase Authentication signs you into your phrase-derived account. See Google's Firebase privacy information.
  • Google Firebase (Cloud Firestore) stores and syncs your pet, care history, and journal captions between you and your partner.
  • Google Firebase Storage stores the photos and voice notes you add to your journal.
[06]

Data retention

Your pet, journal, and relationship data stay in Firestore until you delete them. Removing a journal entry removes it from storage. You can permanently delete your account and all of its data from within the app at any time, in the Us tab under Delete account. This removes your account, the credential derived from your recovery phrase, and your data. If your partner is still using the shared pet after you delete your account, the pet and your partner's own data continue to exist for them; only your own membership and personal data are removed.

[07]

Your rights

Because there is no account tied to your real-world identity, most of your data stays under your direct control: you can edit your relationship details and delete journal entries in the app at any time. You can also permanently delete your account and all associated data from within the app, in the Us tab under Delete account.

If you are in the EU or another region with data protection laws (we are based in Austria and apply the GDPR), you may have rights to access, correct, or delete personal data. To make a request, email noel.hmnn@gmail.com.

[08]

Children

Twoly is not directed at children and we do not knowingly collect data from children. If you believe a child has provided data through the app, contact us and we will remove it.

[09]

Security

Your recovery phrase is held in your device's secure keychain. Data in transit is encrypted using the security Firebase provides. No system is perfectly secure, but we keep the data we handle to the minimum the app needs.

[10]

Changes to this policy

We may update this policy as the app evolves. Material changes will be reflected by a new effective date at the top of this page. Continued use of the app after an update means you accept the revised policy.

[11]

Contact

Questions about privacy? Email noel.hmnn@gmail.com.