Punchtime Privacy Policy

Last updated: June 11, 2026  |  Effective date: June 11, 2026
App name: Punchtime (hereinafter referred to as “the App” or “we”)
Version note: CP chat currently supports text messages only. Workout live streaming requires camera and microphone access (hosts only when broadcasting).

The operator of Punchtime (hereinafter referred to as the “Operator”) understands the importance of your personal information and will take appropriate security measures as required by applicable laws to protect your personal information. Please read and fully understand this Policy before using the App. By using or continuing to use the App, you agree that we may process your information in accordance with this Policy.

1. Information We Collect

To provide App functionality, we may collect the following information:

1.1 Account and Identity Information

Information Type Details How Collected
Google account information Unique user ID (UID), email, profile photo URL Automatically obtained when you authorize Google Sign-In
User profile Nickname (editable in the App) Provided by you

1.2 Check-in and Business Data

Information Type Details Purpose
Check-in records Category ID, check-in date, user ID Record check-in history; calculate streaks and totals
Category settings Category name, icon, color, date added Personalized check-in management
Reminder settings Enabled status, reminder time, repeat weekdays Local alarm reminders
Leaderboard data Nickname, check-in counts per category Public display of global rankings
CP partnership Partner user IDs, nicknames, joint check-in days, invitation and pairing status CP pairing, CP leaderboard, and joint check-in statistics

1.3 CP Partnership and Chat Data

Information Type Details Purpose
Chat text messages Message content, sender ID, nickname, send time One-to-one text chat between paired CP users
Read status Each member’s last read time for the conversation Displaying read receipts
System messages Messages such as joint same-day check-in reminders Showing CP activity updates in chat
Chat reports Reporter ID, reported user ID, conversation ID, optional reason Handling violations and user complaints
Push token Device FCM token (Firebase Cloud Messaging) Delivering new chat messages, CP invitations, and other notifications

Note: The current version of CP chat supports text messages only. Chat is available only between two users who have mutually agreed to form a CP partnership. After the CP relationship is dissolved, the conversation is deactivated and neither party can send new messages.

1.4 Workout Live Streaming Data

Information Type Details Purpose
Live session metadata Host user ID, nickname, start time, workout category, live status, last heartbeat time Display in the live list, maintain session validity, remove abnormally ended streams
Real-time audio/video Host camera video and microphone audio (encrypted in transit) Deliver live workout content to signed-in viewers
Viewer identity Viewer user ID and nickname Join live rooms and connect to ZEGOCLOUD real-time audio/video services
Live stream reports Reporter ID, reported host ID, live session ID, optional category and reason Handling violations and user complaints

Note: Workout live streaming is optional. Only hosts request and use camera and microphone permissions when starting a broadcast. Viewers are not asked to share audio or video by default. Live content is transmitted through ZEGOCLOUD real-time services; we do not permanently store full live recordings on our servers.

1.5 Device and Log Information

To ensure secure and stable operation, we may automatically collect:

1.6 Information We Do Not Actively Collect

2. How We Use Information

We use collected information for the following purposes:

  1. Providing account sign-in, data sync, and core check-in features;
  2. Displaying personal statistics, calendar views, and leaderboards;
  3. Providing CP invitations, pairing, joint check-ins, and CP leaderboard features;
  4. Enabling one-to-one text chat between paired CP users;
  5. Providing workout live streaming, viewing, and live list features;
  6. Sending check-in reminders according to your settings; delivering push notifications for new chat messages, CP invitations, and related events when notifications are enabled and the service is available;
  7. Supporting Facebook sharing that you initiate;
  8. Processing account deletion and data erasure requests;
  9. Ensuring service security, troubleshooting, and improving product experience;
  10. Fulfilling obligations under applicable laws and regulations.

We will not use your personal information for purposes not stated in this Policy. If we need to change how information is used, we will seek your consent again.

3. Storage and Protection

  1. Storage location: Your data is stored on Google Firebase / Cloud Firestore cloud services. Servers may be located outside mainland China. We will take legally required measures to protect data security.
  2. Retention period: Data is retained while you use the App. After the 7-day account deletion cooling-off period expires, we will permanently delete your check-in records, category settings, CP relationships, chat text messages, live session records, report records, and other personal data.
  3. Security measures: We use HTTPS encryption, Firebase security rules, access controls, and other measures to protect data. Although reasonable measures are taken, internet transmission cannot be guaranteed to be absolutely secure. Please protect your account and device accordingly.

4. Sharing and Disclosure

We do not sell your personal information. We share or disclose information only in the following circumstances:

5. CP Chat and User-Generated Content (UGC)

The App provides one-to-one CP text chat. Text you send through chat constitutes user-generated content (UGC). Please communicate respectfully and do not post content that is illegal, pornographic, violent, harassing, fraudulent, infringing, or otherwise inappropriate.

  1. Scope of use: Only users who have formed a CP partnership with each other may chat. You should communicate only with a partner who has agreed to pair with you.
  2. Content storage: Chat text is stored in Google Cloud Firestore. Servers may be located outside your country or region. The current version does not collect or store photos from your device gallery for chat.
  3. Content visibility: Chat content is not publicly visible across the App; only the two participants in the conversation can view it.
  4. Reporting and moderation: You may report your CP partner from within the chat screen. We record reports and review them. For content that violates laws or community standards, we may restrict features, dissolve CP relationships, remove content, or suspend accounts.
  5. After CP dissolution: When a CP relationship ends, the corresponding chat conversation is deactivated and neither party can send new messages. Historical messages are handled according to the retention and deletion rules in this Policy.
  6. Your responsibility: You are responsible for the content you send and must not infringe the lawful rights of others.

6. Workout Live Streaming and User-Generated Content (UGC)

The App provides optional workout live streaming. Real-time video and audio published by hosts constitutes user-generated content (UGC). Please comply with applicable laws and community standards. Do not broadcast content that is illegal, pornographic, violent, harassing, dangerous, infringing, or otherwise inappropriate.

  1. Scope of use: Signed-in users may view live streams listed in the App; any signed-in user may choose to start a broadcast. Camera and microphone permissions are required before broadcasting.
  2. Transmission and storage: Live audio/video is transmitted through ZEGOCLOUD real-time services. Live session metadata (such as host nickname, category, start time, and heartbeat time) is stored in Google Cloud Firestore. We do not permanently store full live recordings on our servers.
  3. Content visibility: Live content is visible in real time to signed-in viewers who enter the room, and is not publicly shown to users who have not joined.
  4. Reporting and moderation: Viewers may report a live stream from the viewing screen. We record reports and review them. For content that violates laws or community standards, we may end the stream, restrict broadcasting, remove session records, or suspend accounts.
  5. Session end: A live session ends when the host stops broadcasting or when no heartbeat is received for an extended period, and the session is removed from the list.
  6. Your responsibility: You are responsible for your broadcast content, must not infringe others’ lawful rights, and should follow safe exercise practices.

7. Third-Party SDKs

SDK Name Provider Purpose Information Involved
Google Sign-In Google LLC Account sign-in Google account ID, email, profile photo
Firebase Auth / Firestore Google LLC Authentication and data storage User ID, business data, chat text messages
Firebase Cloud Messaging Google LLC Push notifications for reminders, new chat messages, CP invitations, and related events Device push token, notification preview content
Facebook SDK Meta Platforms, Inc. Sharing check-in achievements Share text and images (user-initiated)
ZEGOCLOUD Live Streaming SDK ZEGOCLOUD PTE. LTD. Real-time audio/video for workout live streaming User ID, nickname, device information, audio/video stream (when hosting)

Third-party SDKs are governed by their own privacy policies. We recommend reviewing: Google Privacy Policy, Meta Privacy Policy, and ZEGOCLOUD Privacy Policy.

8. App Permissions

To provide related features, the App may request or use the following system permissions:

Permission Purpose Required
Internet access (INTERNET) Sign-in, data sync, CP chat, workout live streaming, loading legal documents, Facebook sharing Yes
Camera (CAMERA) Capture video when hosting a live broadcast Optional (required only when hosting)
Microphone (RECORD_AUDIO) Capture audio when hosting a live broadcast Optional (required only when hosting)
Notifications (POST_NOTIFICATIONS) Check-in reminders, new chat messages, CP invitations, and related push notifications Optional (required when enabling reminders or receiving push notifications)
Boot completed (RECEIVE_BOOT_COMPLETED) Restore scheduled reminders after device restart Optional
Vibration (VIBRATE) Vibration feedback for reminder notifications Optional
Storage read/write Generate share images and pass them to Facebook (older Android versions) Optional (only when sharing)

You may disable related permissions in device settings at any time, but this may affect corresponding features.

9. Your Rights

Under applicable law, you have the following rights regarding your personal information:

  1. Access and copy: You may view your nickname, check-in records, statistics, and related data in the App;
  2. Correction: You may update your nickname, category settings, and reminder configurations in the App;
  3. Deletion and account closure: You may request account deletion in the App. After deletion, a 7-day cooling-off period applies, after which your personal data is permanently deleted;
  4. Withdraw consent: You may disable notification permissions, stop using sharing features, or withdraw consent to this Policy by deleting your account;
  5. Complaints: If you believe our processing infringes your lawful rights, or if you find violating content in CP chat or live streams, you may use the in-app report feature or contact us using the details below, or file a complaint with the relevant regulatory authority.
Account Deletion

10. Protection of Minors

The App is primarily intended for adults. If you are under 18, please read this Policy with your guardian and use the App only with guardian consent. If a guardian discovers that a minor has used the App without consent, please contact us and we will handle the matter in accordance with applicable law.

11. Policy Updates

We may revise this Policy from time to time. After revision, we will notify you through in-app notices, updated pages, or other reasonable means. If changes materially affect your rights, we will provide more prominent notice. If you do not agree to the revised Policy, please stop using the App and delete your account.

12. Contact Us

If you have any questions, comments, or requests regarding this Policy or personal information processing, please contact us:

We will respond within 15 business days of receiving your request.

This Policy is an integral part of the Punchtime Terms of Service and has the same legal effect.