Privacy Policy — ADHD-Hive

Privacy Policy — ADHD-Hive

Last updated: 04/07/2026

ADHD-Hive is built by Paul Woods. This policy explains what information the app collects, why, and what choices you have.

We've tried to write this in plain English rather than legal jargon, in keeping with how the rest of the app works.


1. Who we are

ADHD-Hive is developed by Paul Woods ("we," "us"). If you have questions about this policy or your data, contact:

Email: [email protected]

2. What we collect

Account information

  • Email address (for login)
  • Authentication data if you sign in with Apple

Content you create in the app

  • Mood tags and journal entries you write in the Mirror
  • Messages you send to the AI Coach
  • Your progress, honey/XP, ranks, and badges earned

Subscription and payment information

  • Subscription status (free trial, active, expired) via our payment processor, RevenueCat
  • We do not see or store your card details — these are handled directly by Apple or Google's payment systems

Usage and device information

  • Basic app usage (which features you use, crash reports) to help us fix bugs and improve the app
  • Device type and operating system version

3. How we use your information

  • To provide the app's core features — tracking your progress, running the AI Coach, remembering your Mirror entries
  • To personalise your experience — for example, the AI Coach may reference a short summary of your recent Mirror entries so it has context, if you've allowed this (see Section 6)
  • To manage your subscription and free trial
  • To detect and respond to safety-relevant content — see Section 5
  • To fix bugs and improve the app

We do not sell your data. We do not use your data for advertising.

4. Who we share data with

We use a small number of third-party services to run the app. Your data is only shared with them to the extent needed for the app to function:

  • Supabase — hosts our database and backend infrastructure
  • Google (Gemini API) — processes AI Coach conversations and Mirror content to generate responses
  • Anthropic (Claude API) — used as a backup if our primary AI service is unavailable
  • RevenueCat — manages subscription status and payment verification
  • Apple / Google — handle sign-in and payment processing directly; we never see your password or full payment details

These providers process data on our behalf and are not permitted to use it for their own purposes.

5. Safety — how we handle content that suggests risk

The AI Coach includes a safety system designed to recognise when someone may be at risk of harm to themselves. If this is detected, the app will respond by prioritising your safety, which may include showing crisis support resources.

[FILL IN — describe accurately what your crisis-safety logic actually does.]

We do not share this content with anyone outside of what's needed to provide this safety response.

6. Your choices and controls

  • Mirror + Coach context sharing: you can control whether your Mirror entries are used to give the AI Coach context about how you've been doing recently. This is adjustable in [SETTINGS LOCATION].
  • Access and deletion: you can request a copy of your data, or request that we delete your account and associated data, by contacting [YOUR CONTACT EMAIL].
  • Account deletion: [FILL IN — describe your actual deletion process.]

7. Data retention

We keep your data for as long as your account is active. If you delete your account, we delete your personal data within [X days/weeks], except where we're legally required to retain certain records for longer.

8. International data transfers

Some of the services we use (including Google and Anthropic's AI services) may process data outside the UK/EU, including in the United States. Where this happens, we rely on these providers' standard data protection safeguards.

9. Children's privacy

ADHD-Hive is intended for adults. It is not directed at children, and we do not knowingly collect data from children under 16. If you believe a child has provided us with personal data, contact us and we'll delete it.

10. Your rights (UK/EU users)

If you're in the UK or EU, you have rights under data protection law including the right to access, correct, delete, restrict, or port your personal data. To exercise these rights, contact [YOUR CONTACT EMAIL]. You also have the right to complain to the UK Information Commissioner's Office if you believe we haven't handled your data properly.

11. Security

We use reasonable technical and organisational measures to protect your data, including encryption in transit and access controls on our backend. No system is completely secure, and we can't guarantee absolute security.

12. Changes to this policy

If we make significant changes to this policy, we'll notify you in the app or by email before the changes take effect.

13. Contact us

Questions about this policy or your data: [email protected]

Note for Paul (remove before publishing): Fill in every bracketed placeholder above before this goes live — especially Section 5 (safety/crisis handling) and Section 6 (deletion), since these need to accurately describe what the app actually does. Given the mood/journal/crisis-adjacent data here, it's worth a quick solicitor check or at minimum a read of the ICO's guidance on special category data before treating this as final.