Punchtime Privacy Policy
Last updated: June 11, 2026 | Effective date: June 11, 2026
App name: Punchtime (hereinafter referred to as “the App” or “we”)
Version note: CP chat currently supports text messages only.
Workout live streaming requires camera and microphone access (hosts only when broadcasting).
The operator of Punchtime (hereinafter referred to as the “Operator”) understands the importance of
your personal information and will take appropriate security measures as required by applicable laws
to protect your personal information.
Please read and fully understand this Policy before using the App. By using or continuing to use
the App, you agree that we may process your information in accordance with this Policy.
1. Information We Collect
To provide App functionality, we may collect the following information:
1.1 Account and Identity Information
| Information Type |
Details |
How Collected |
| Google account information |
Unique user ID (UID), email, profile photo URL |
Automatically obtained when you authorize Google Sign-In |
| User profile |
Nickname (editable in the App) |
Provided by you |
1.2 Check-in and Business Data
| Information Type |
Details |
Purpose |
| Check-in records |
Category ID, check-in date, user ID |
Record check-in history; calculate streaks and totals |
| Category settings |
Category name, icon, color, date added |
Personalized check-in management |
| Reminder settings |
Enabled status, reminder time, repeat weekdays |
Local alarm reminders |
| Leaderboard data |
Nickname, check-in counts per category |
Public display of global rankings |
| CP partnership |
Partner user IDs, nicknames, joint check-in days, invitation and pairing status |
CP pairing, CP leaderboard, and joint check-in statistics |
1.3 CP Partnership and Chat Data
| Information Type |
Details |
Purpose |
| Chat text messages |
Message content, sender ID, nickname, send time |
One-to-one text chat between paired CP users |
| Read status |
Each member’s last read time for the conversation |
Displaying read receipts |
| System messages |
Messages such as joint same-day check-in reminders |
Showing CP activity updates in chat |
| Chat reports |
Reporter ID, reported user ID, conversation ID, optional reason |
Handling violations and user complaints |
| Push token |
Device FCM token (Firebase Cloud Messaging) |
Delivering new chat messages, CP invitations, and other notifications |
Note: The current version of CP chat supports text messages only. Chat is available only between two users who have mutually agreed to form a CP partnership.
After the CP relationship is dissolved, the conversation is deactivated and neither party can send new messages.
1.4 Workout Live Streaming Data
| Information Type |
Details |
Purpose |
| Live session metadata |
Host user ID, nickname, start time, workout category, live status, last heartbeat time |
Display in the live list, maintain session validity, remove abnormally ended streams |
| Real-time audio/video |
Host camera video and microphone audio (encrypted in transit) |
Deliver live workout content to signed-in viewers |
| Viewer identity |
Viewer user ID and nickname |
Join live rooms and connect to ZEGOCLOUD real-time audio/video services |
| Live stream reports |
Reporter ID, reported host ID, live session ID, optional category and reason |
Handling violations and user complaints |
Note: Workout live streaming is optional. Only hosts request and use camera and microphone permissions when starting a broadcast.
Viewers are not asked to share audio or video by default. Live content is transmitted through ZEGOCLOUD real-time services;
we do not permanently store full live recordings on our servers.
1.5 Device and Log Information
To ensure secure and stable operation, we may automatically collect:
- Device model, operating system version, app version;
- Network status (online/offline);
- Crash logs and error diagnostics (if any).
1.6 Information We Do Not Actively Collect
- Precise geolocation;
- Contacts, SMS messages, or call logs;
- Camera or microphone content (exception: when you actively start a live broadcast as host, camera and microphone are used to provide the feature; viewers are not recorded when watching; Facebook sharing is user-initiated and confirmed by you);
- Sensitive financial or identity documents such as bank cards or ID cards.
2. How We Use Information
We use collected information for the following purposes:
- Providing account sign-in, data sync, and core check-in features;
- Displaying personal statistics, calendar views, and leaderboards;
- Providing CP invitations, pairing, joint check-ins, and CP leaderboard features;
- Enabling one-to-one text chat between paired CP users;
- Providing workout live streaming, viewing, and live list features;
- Sending check-in reminders according to your settings; delivering push notifications for new chat messages, CP invitations, and related events when notifications are enabled and the service is available;
- Supporting Facebook sharing that you initiate;
- Processing account deletion and data erasure requests;
- Ensuring service security, troubleshooting, and improving product experience;
- Fulfilling obligations under applicable laws and regulations.
We will not use your personal information for purposes not stated in this Policy.
If we need to change how information is used, we will seek your consent again.
3. Storage and Protection
-
Storage location: Your data is stored on Google Firebase / Cloud Firestore cloud services.
Servers may be located outside mainland China. We will take legally required measures to protect data security.
-
Retention period: Data is retained while you use the App.
After the 7-day account deletion cooling-off period expires, we will permanently delete your check-in records,
category settings, CP relationships, chat text messages, live session records, report records, and other personal data.
-
Security measures: We use HTTPS encryption, Firebase security rules, access controls,
and other measures to protect data. Although reasonable measures are taken, internet transmission cannot
be guaranteed to be absolutely secure. Please protect your account and device accordingly.
4. Sharing and Disclosure
We do not sell your personal information. We share or disclose information only in the following circumstances:
-
Public leaderboard display: Your nickname and check-in counts are visible to other users
on the global leaderboard;
-
CP chat visibility: Text messages you send in CP chat are visible only to you and your current CP partner,
and are not publicly displayed to all users;
-
Live streaming visibility: When you broadcast as a host, your nickname, selected workout category,
and real-time audio/video are shown to signed-in viewers who enter your live room;
-
Third-party service providers: To enable sign-in, cloud storage, real-time audio/video, sharing, and related features,
we integrate third-party SDKs such as Google, Firebase, ZEGOCLOUD, and Facebook, and provide information necessary
to implement those features;
-
Sharing you initiate: When you choose to share to Facebook, content you confirm is passed
to the Facebook platform;
-
Legal requirements: As required by laws, regulations, litigation, or lawful requests
from government authorities;
-
Protection of lawful rights: When reasonably necessary to protect the personal or property
safety of users, the Operator, or the public.
5. CP Chat and User-Generated Content (UGC)
The App provides one-to-one CP text chat. Text you send through chat constitutes
user-generated content (UGC).
Please communicate respectfully and do not post content that is illegal, pornographic, violent, harassing,
fraudulent, infringing, or otherwise inappropriate.
-
Scope of use: Only users who have formed a CP partnership with each other may chat.
You should communicate only with a partner who has agreed to pair with you.
-
Content storage: Chat text is stored in Google Cloud Firestore. Servers may be located outside your country or region.
The current version does not collect or store photos from your device gallery for chat.
-
Content visibility: Chat content is not publicly visible across the App; only the two participants in the conversation can view it.
-
Reporting and moderation: You may report your CP partner from within the chat screen.
We record reports and review them. For content that violates laws or community standards,
we may restrict features, dissolve CP relationships, remove content, or suspend accounts.
-
After CP dissolution: When a CP relationship ends, the corresponding chat conversation is deactivated
and neither party can send new messages. Historical messages are handled according to the retention and deletion rules in this Policy.
-
Your responsibility: You are responsible for the content you send and must not infringe the lawful rights of others.
6. Workout Live Streaming and User-Generated Content (UGC)
The App provides optional workout live streaming. Real-time video and audio published by hosts constitutes
user-generated content (UGC).
Please comply with applicable laws and community standards. Do not broadcast content that is illegal, pornographic, violent,
harassing, dangerous, infringing, or otherwise inappropriate.
-
Scope of use: Signed-in users may view live streams listed in the App; any signed-in user may choose to start a broadcast.
Camera and microphone permissions are required before broadcasting.
-
Transmission and storage: Live audio/video is transmitted through ZEGOCLOUD real-time services.
Live session metadata (such as host nickname, category, start time, and heartbeat time) is stored in Google Cloud Firestore.
We do not permanently store full live recordings on our servers.
-
Content visibility: Live content is visible in real time to signed-in viewers who enter the room,
and is not publicly shown to users who have not joined.
-
Reporting and moderation: Viewers may report a live stream from the viewing screen.
We record reports and review them. For content that violates laws or community standards,
we may end the stream, restrict broadcasting, remove session records, or suspend accounts.
-
Session end: A live session ends when the host stops broadcasting or when no heartbeat is received for an extended period,
and the session is removed from the list.
-
Your responsibility: You are responsible for your broadcast content, must not infringe others’ lawful rights,
and should follow safe exercise practices.
7. Third-Party SDKs
| SDK Name |
Provider |
Purpose |
Information Involved |
| Google Sign-In |
Google LLC |
Account sign-in |
Google account ID, email, profile photo |
| Firebase Auth / Firestore |
Google LLC |
Authentication and data storage |
User ID, business data, chat text messages |
| Firebase Cloud Messaging |
Google LLC |
Push notifications for reminders, new chat messages, CP invitations, and related events |
Device push token, notification preview content |
| Facebook SDK |
Meta Platforms, Inc. |
Sharing check-in achievements |
Share text and images (user-initiated) |
| ZEGOCLOUD Live Streaming SDK |
ZEGOCLOUD PTE. LTD. |
Real-time audio/video for workout live streaming |
User ID, nickname, device information, audio/video stream (when hosting) |
Third-party SDKs are governed by their own privacy policies. We recommend reviewing:
Google Privacy Policy,
Meta Privacy Policy, and
ZEGOCLOUD Privacy Policy.
8. App Permissions
To provide related features, the App may request or use the following system permissions:
| Permission |
Purpose |
Required |
| Internet access (INTERNET) |
Sign-in, data sync, CP chat, workout live streaming, loading legal documents, Facebook sharing |
Yes |
| Camera (CAMERA) |
Capture video when hosting a live broadcast |
Optional (required only when hosting) |
| Microphone (RECORD_AUDIO) |
Capture audio when hosting a live broadcast |
Optional (required only when hosting) |
| Notifications (POST_NOTIFICATIONS) |
Check-in reminders, new chat messages, CP invitations, and related push notifications |
Optional (required when enabling reminders or receiving push notifications) |
| Boot completed (RECEIVE_BOOT_COMPLETED) |
Restore scheduled reminders after device restart |
Optional |
| Vibration (VIBRATE) |
Vibration feedback for reminder notifications |
Optional |
| Storage read/write |
Generate share images and pass them to Facebook (older Android versions) |
Optional (only when sharing) |
You may disable related permissions in device settings at any time, but this may affect corresponding features.
9. Your Rights
Under applicable law, you have the following rights regarding your personal information:
-
Access and copy: You may view your nickname, check-in records, statistics, and related data in the App;
-
Correction: You may update your nickname, category settings, and reminder configurations in the App;
-
Deletion and account closure: You may request account deletion in the App.
After deletion, a 7-day cooling-off period applies, after which your personal data is permanently deleted;
-
Withdraw consent: You may disable notification permissions, stop using sharing features,
or withdraw consent to this Policy by deleting your account;
-
Complaints: If you believe our processing infringes your lawful rights, or if you find violating content in CP chat or live streams,
you may use the in-app report feature or contact us using the details below, or file a complaint with the relevant regulatory authority.
Account Deletion
- Path: Home → Profile menu → Delete account;
- After submitting a deletion request, you are signed out immediately and data is retained for 7 days;
- If you sign in again within 7 days, you may choose to restore your account;
- After 7 days, check-in records, category settings, CP relationships, chat text messages, live session records, and other data are permanently deleted and cannot be recovered.
10. Protection of Minors
The App is primarily intended for adults. If you are under 18, please read this Policy with your guardian
and use the App only with guardian consent. If a guardian discovers that a minor has used the App without consent,
please contact us and we will handle the matter in accordance with applicable law.
11. Policy Updates
We may revise this Policy from time to time. After revision, we will notify you through in-app notices,
updated pages, or other reasonable means. If changes materially affect your rights, we will provide more prominent notice.
If you do not agree to the revised Policy, please stop using the App and delete your account.
12. Contact Us
If you have any questions, comments, or requests regarding this Policy or personal information processing, please contact us:
We will respond within 15 business days of receiving your request.
This Policy is an integral part of the Punchtime Terms of Service and has the same legal effect.