Privacy Policy
Glimpsing is a private app for sharing photo, video and voice check-ins with the people you choose. This page explains what we collect, why, and what you can do about it.
What we collect
- Account. Your display name, profile photo, time zone, and how you sign in: Apple, Google, your phone number, or a device identifier if you use Glimpsing as a guest.
- What you post. Photos, videos, voice notes, captions, reactions and replies, and the groups, pairs and events you are in.
- Stamps. If location stamps are on, the city you post from (never precise coordinates), your local time and the local weather. You can turn stamps off in Profile.
- Contacts. Only if you allow it, and only as one-way hashes of phone numbers, used to find people already on Glimpsing. We never store your address book.
- Phone number. If you sign in with your phone, we keep the number on your account so you can sign in again.
- Purchases. Which plan or item you bought and when it renews. We never see your card details.
- Usage. Product analytics about which features are used (see Amplitude below).
- Device. A push notification token, the app version and your device type.
Signing in
Sign in with Apple. Apple gives us a stable account id, your email if you choose to share it (this may be an Apple private relay address, which we respect and never try to look behind), and your name the first time only. We also keep a token from Apple, stored encrypted, so that we can tell Apple to disconnect Glimpsing when you delete your account. If you stop using Apple ID with Glimpsing in your Apple settings, Apple tells us and we sign you out.
Google. Google gives us a stable account id, your email and your name.
Phone. We send a 6-digit sign-in code on WhatsApp through Meta's WhatsApp Business Platform. Meta delivers that message for us and sees your number and the message. We create and check the code ourselves.
Who can see what you post
Only the members of the group, pair or event you post to. There are no public profiles, no follower lists and no way to search for people.
- Invite links show the group's name, cover photo and members' first names and photos to anyone who opens the link, until the invite expires or is used up.
- Share links. If you share a single Glimpse outside the app, anyone with that link can view it for 7 days. After that the link stops working.
How we store it
Photos, videos and voice notes are stored in a private Google Cloud Storage bucket, encrypted at rest. Nothing is publicly addressable: the app and share pages only ever get short-lived signed links. Photos and videos have their location metadata removed when you upload them.
Account data is kept in our database on servers we run. Connections to us are always encrypted.
Services we use
We use a small number of providers to run Glimpsing. Each only gets what it needs.
- Google Cloud Storage stores your media.
- Amplitude receives product analytics: which screens and features are used, tied to our internal user id. It never receives your photos, captions, messages or errors, we don't send advertising identifiers, and IP addresses are not stored.
- OneSignal delivers push notifications. It gets your device's push token and our internal user id, plus the text of the notification.
- RevenueCat and Apple process subscriptions and in-app purchases.
- Meta (WhatsApp) delivers phone sign-in codes.
- Apple and Google handle sign-in if you choose them.
- Anthropic powers two optional features: the weekly group note (if your group turns it on) and caption translation (when you tap Translate). It receives captions, first names and cities only, never photos or videos, and doesn't use them to train its models.
When something breaks in the app, it sends a short error report to our own error log: the error message, the screen, the app version and your platform. Never your content.
What we don't do
- No ads, and no advertising identifiers.
- We don't sell or rent your data.
- We don't track you across other apps or websites.
- We don't use your photos to train AI models.
Strict Mode and Screen Time
Strict Mode uses Apple's Screen Time APIs on your iPhone. Apple doesn't tell us which apps you choose, and that selection never leaves your phone.
Your choices
- Delete any Glimpse you posted at any time.
- Turn off location stamps, contact matching or notifications whenever you like.
- Export your data from Profile → Your data.
- Delete your account from Profile → Delete account. This permanently deletes your account and everything you posted, and if you used Sign in with Apple we also revoke Glimpsing's access with Apple. The one exception is described under Child safety.
The waitlist
If you join the waitlist on this website we keep your email address only to tell you when Glimpsing launches. We don't share it. Email [email protected] and we'll remove it.
Children
You need to be at least 13 to have your own account. Kid profiles have no login of their own and are managed by a parent or guardian, who posts on their behalf and can delete them at any time.
Child safety
If something posted on Glimpsing is reported as child sexual abuse material, we take it down while we look at it. If it is abuse material, US law requires us to report it to the National Center for Missing & Exploited Children (NCMEC), which works with the police. So we keep a secured copy of it, and the account details needed for that report (such as the Apple or Google account id, email address and phone number), for as long as the law requires. We keep them even if the account is deleted. Only we and the authorities can see them.
The account is then banned. We keep a scrambled fingerprint of its sign-in details, not the details themselves, and use Apple's DeviceCheck to mark the device, so banned people can't sign up again.
Contact
Questions about privacy or your data: [email protected]. Anything else: [email protected].
If we change this policy in a way that matters, we'll tell you in the app before it takes effect.