Legal
Privacy Policy
EFFECTIVE 5 SEPTEMBER 2026
The short version
Clique is a shared disposable camera: a host creates an event, guests shoot on it, and everyone sees the photos when they are revealed. To make that work we store your photos and a small amount of account data. We don’t run ads, we don’t sell your data, and we don’t use your photos for anything except showing them to the people on your event. We do collect crash reports and simple usage counts (see below) so we can fix what breaks and see which steps people get stuck on; they never include your photos, your name, or your email, and nothing is used to track you across other apps or websites.
Who we are
Clique is made by Story Goes AB, a Swedish company registered in Stockholm (org. nr 559396-8836). For everything this policy describes, Story Goes AB is the data controller under the GDPR. The fastest way to reach us is hello@getclique.app.
What we collect
Hosts create an account with Sign in with Apple or Sign in with Google. We store the name and email address your chosen sign-in shares with us, a random account identifier, and an optional display name. With Apple you can hide your real email address; we store the private relay address Apple gives us instead. Hosts can add a profile picture, and every event has a cover image; both are shown to the people you invite, and the cover appears on the invite page for anyone who opens the link.
Guests don’t create accounts. Joining an event creates an anonymous session tied to a random identifier, plus the name you enter for your host. We use Apple’s DeviceCheck to recognize a device that already joined an event, so you can pick your session back up from the same phone without signing in.
Guest email: when your photos are used up, we offer to email you the photos. If you type an address, we store it with that event and send you one email when the host reveals the photos. We also use it to tell you about Clique now and then; every such email has an unsubscribe link, and you can ask us to delete the address at any time. Other guests and the host never see it.
Photos you shoot at an event are uploaded to that event, along with basic capture details (when the shot was taken and which look it used).
Purchases of larger event sizes are processed entirely by Apple. We never see your payment details — we store Apple’s transaction receipt so we can credit the purchase to your event.
Notifications: if you allow them, we store your device’s push token so we can send you updates about your events, like when the photos are ready. You can turn them off anytime in iOS Settings.
Reports: if you report a photo, we store which photo it was, the reason you picked, and that your session filed it. The host of that event sees the photo and the reason, never who reported it.
Crash reports and usage: the app sends us a report when it crashes or freezes, and a short note when you complete a step, such as creating an event, joining one, taking a photo, or saving the album. Each carries your random identifier, the app version, your iOS version and device model, and, for a crash, the screens you had just been on. Never your photos, your name, or your email. We don’t turn your IP address into a location. Crash reporting runs in the full Clique app only; the App Clip guests use sends usage notes but no crash reports.
That’s the full list, beyond the transient technical logs — like IP addresses — that any internet service generates. We collect no location data, no contacts, no browsing history, and no advertising identifiers.
Our legal bases
The GDPR requires a legal basis for each thing we do with your data. Ours are:
- Running the service: storing your account, photos, and events: performance of our contract with you (Art. 6(1)(b));
- Push notifications: your consent (Art. 6(1)(a)), given in the iOS permission prompt and withdrawable anytime in iOS Settings;
- Guest email: your consent (Art. 6(1)(a)), given when you type the address, withdrawable with the unsubscribe link in any email or by writing to us;
- Keeping the service safe: abuse prevention and content moderation: our legitimate interest in a safe service (Art. 6(1)(f));
- Crash reports and usage: our legitimate interest in an app that works and gets better (Art. 6(1)(f)). There is no in-app switch yet; email us and we will exclude your identifier;
- Purchase records: bookkeeping and tax law, legal obligation (Art. 6(1)(c)).
Who can see your photos
Photos stay hidden until they are revealed. While the event runs, the host and guests see only a small, heavily blurred preview of each photo, never the photo itself. When the event ends, the host reviews the full photos first and chooses when to share the album; guests keep seeing only the blurred previews until the host shares. The host can instead choose to make photos visible during the event; in that case the host and guests see the photos as they are taken, and everyone else still waits for the reveal. Once revealed, the album is visible to the host and the people who joined the event. The host can additionally share an album link; anyone with that link can view the album if the host chooses that option. Hosts can remove any photo from the album, and guests can delete their own photos.
Where your data lives
Photos and app data are stored with Supabase on servers in Frankfurt, Germany (AWS eu-central-1). This website is hosted on Vercel. Apple provides sign-in, payments, and push delivery; Google provides sign-in for hosts who choose it; guest emails are sent through Resend. Crash reports go to Sentry and usage notes to PostHog, both on their EU servers in Frankfurt, Germany. These providers process data on our behalf; none of them are allowed to use it for their own purposes. Processing stays in the EEA wherever possible; where Apple’s, Google’s or Resend’s services involve a transfer to the United States, it’s protected by the EU–US Data Privacy Framework or Standard Contractual Clauses.
How long we keep it
Your photos and events stay until you delete them. You can delete your account in the app (Profile → Privacy → Delete account). When you do, your account, identifiers, and any unrevealed events and photos are permanently deleted. Revealed albums that were already shared with guests stay available to them, with your name and account scrubbed — the same way a printed photo stays with the person you gave it to.
One exception: records of purchases are kept as long as tax and accounting law requires, with your account identity removed when you delete your account. Crash reports are kept for 30 days and usage notes for up to a year, then deleted automatically.
Your rights
You can download a copy of your data in the app (Profile → Privacy → Download my data), delete your account as described above, or email us to ask about, correct, or delete anything we hold about you. If you’re in the EU or UK, these are your GDPR rights to access, rectification, erasure, and portability — we honor them for everyone, and you can also lodge a complaint with the Swedish Authority for Privacy Protection (IMY, imy.se) or your own country’s data-protection authority. If you’re in California, the CCPA gives you similar rights to know, delete, and correct — and we don’t sell or share your personal information.
Security
Your photos and data travel encrypted, and every request is scoped by access rules to your own account and events — a guest at one event can’t see another event’s photos, and nobody outside an event’s own host and guests sees its photos before they are revealed. Before the reveal that group sees only the blurred previews, with two exceptions: the host reviews the full photos once the event has ended, and everyone sees them as they are taken if the host chose to make photos visible during the event.
Children
Clique is not directed at children under 13 (or the equivalent age of digital consent where you live), and we don’t knowingly collect data from them.
Changes
If we change this policy, we’ll update this page and the date at the top, so check back now and then.
Contact
Questions, requests, or concerns: hello@getclique.app. We usually reply within a day.