Privacy Policy
Last Updated: May 15, 2026
LootWheel is a product of Ideaform Capital, LLC, a Georgia-based mobile application development company. We take your privacy seriously.
1. Information We Collect
1.1 Account Information
When you create a LootWheel account, we collect:
- Email address (for authentication via Firebase Auth)
- Display name and profile photo (optional, user-provided)
- Authentication provider data (Google, Apple, or email/password)
1.2 Phone Numbers
Phone numbers are collected only when:
- A "giver" manually enters a receiver's phone number to send a spin
- A user adds their own phone number to their profile
Phone numbers are stored encrypted at rest in Firebase Firestore. We do not share phone numbers with third parties except for the sole purpose of SMS delivery via Twilio.
1.3 App Usage Data
We collect anonymized usage analytics via Firebase Analytics to improve the app:
- Feature usage patterns (e.g., wheels created, spins sent)
- App performance and crash reports
- Device type and OS version (for compatibility)
2. How We Use Your Information
- Authentication: To verify your identity and secure your account
- SMS Delivery: To send spin codes and related notifications via Twilio
- App Functionality: To display spin history, manage wheels, and enable core features
- Improvement: To analyze usage and fix bugs
- Compliance: To meet legal and regulatory requirements
3. Data Sharing
We do not sell your personal data. We share data only with:
- Twilio: For SMS message delivery (phone numbers only, no message content)
- Firebase/Google: For authentication, database hosting, and analytics
- RevenueCat: For subscription management (purchase receipts only)
All third-party services are bound by their own privacy policies and data processing agreements.
4. Data Storage & Security
- All data is stored in Google Cloud Platform (Firebase) with industry-standard encryption
- Phone numbers are encrypted at rest
- Firebase Security Rules enforce strict access controls — users can only read/write their own data
- We do not store payment information; all transactions are handled by Apple App Store, Google Play, or RevenueCat
5. Your Rights
You have the right to:
- Access: View all data associated with your account
- Delete: Permanently delete your account and all associated data via the app
- Opt Out: Stop receiving SMS by replying STOP to any message
- Update: Change your profile information at any time
6. Cookies & Tracking
The LootWheel website (lootwheel.app) does not use cookies for tracking. Our mobile app uses Firebase Analytics with anonymized data only.
7. Children's Privacy
LootWheel is not intended for users under 13 years of age. We do not knowingly collect data from children under 13. If you believe a child has provided us with personal information, contact us immediately.
8. Data Retention
We retain your data for as long as your account is active. When you delete your account, all personal data is permanently removed from our systems within 30 days. Anonymized analytics data may be retained for product improvement purposes.
9. Changes to This Policy
We may update this Privacy Policy periodically. We will notify users of significant changes via in-app notification or email. The "Last Updated" date at the top of this page reflects the most recent revision.