Privacy Policy
STRAND is a hair wash-day tracker. This policy describes what we collect, why, and how to delete it. It applies to the STRAND website, PWA, and iOS app.
Who we are
STRAND is built by a solo developer. Questions, support, or deletion requests: Support, use Feedback in the app, or email hello@strandhair.app from the address on your account.
What we collect
- Account: email, password (stored by our auth provider, not in readable form), and the name you enter. Guest mode creates a device-linked account without email until you choose to save progress.
- Hair profile: type, porosity, density, length, goals, and wash frequency. These stay in your private account. We do not send them to Mixpanel.
- Routines: wash logs, products, habits, weekly goals, and optional notes.
- Photos: pictures you add to your hair journal. These stay in your private account storage and are not public. Guest accounts can store up to 10 photos; email accounts can store up to 50.
- Device: camera (journal photos and product barcodes) and photo library (choosing an existing photo). We do not save photos back to your system library.
- Notifications: a push subscription for your device if you turn reminders on in the web app or PWA. The iOS App Store app does not currently send push reminders.
- Product scans: barcodes are looked up with Open Beauty Facts to fill in a product name. Names you confirm, if you have an email account, may be stored in a shared product cache so later scans can fill faster. That cache is not tied to your email. Guest accounts cannot write to the shared cache.
Analytics
If you agree to this policy, we use Mixpanel to understand whether the app is useful (screens viewed, wash days logged, habits completed). We identify analytics with your account ID and first name. We do not send your email, hair-profile fields, or photos to Mixpanel. Mixpanel may record a session replay for a small sample of sessions (about 5%) so we can see where people get stuck; photos, video, and typed input (including passwords) are blocked or masked in those recordings. We ask Mixpanel not to use your IP address to infer location. Vercel Analytics measures aggregate site traffic.
Guest tracking does not start analytics until you agree to this policy on the welcome screen. Creating or signing into an email account also means you agree to this policy.
Who processes data
- Supabase (authentication, database, and private photo storage)
- Mixpanel (product analytics, after you agree)
- Vercel (hosting the website)
- Open Beauty Facts (optional barcode lookup)
- Tally (optional feedback form you choose to open)
We do not sell your personal information. We do not use your data for third-party advertising.
Photos and sensitive information
Journal photos may show your hair, scalp, or face. Treat them as personal. They are stored privately and shown only to you when you are signed in. STRAND does not keep a separate medical or treatment log. If you name a habit after a product (for example minoxidil), that label is stored as routine text you entered, not as a health record. App Store nutrition labels should include Photos; include Health & Fitness only if you later add dedicated treatment tracking.
Retention and deletion
We keep your data while your account exists. In the app, go to Profile → Settings → Delete account. That removes your login, profile, logs, photos, and Mixpanel people profile. Product names you contributed to the shared scan cache may remain with your account id removed. Mixpanel event history may be retained according to Mixpanel’s project settings after the people profile is deleted. You can also request deletion through Feedback or by emailing hello@strandhair.app.
Your choices
- You can use STRAND without camera, photo library, or notifications — those permissions are optional features.
- You can sign out at any time.
- Download a copy of your account data from Profile → Settings → Download my data, or email hello@strandhair.app.
- If you are in a region with access or deletion rights (including GDPR/CCPA-style rights), use Download my data, Delete account, Feedback, or email and we will honor a verified request.
Children
You must be 13 or older to use STRAND. We ask you to confirm that on the welcome screen and when you create an account. We do not knowingly collect data from children under 13. If we learn that we have, we will delete it.
Changes
If this policy changes in a material way, we will update the date above. Continued use after an update means you accept the revised policy.