Bragwise Privacy Policy
This Privacy Policy explains how the Bragwise mobile application (the “App”) collects, uses, stores, and protects your information, and the choices you have regarding your data. Bragwise is a social prediction game where you create and join prediction challenges, make picks, compete on leaderboards, and connect with friends.
1. Who we are
Bragwise is published under the application identifier se.atte.bragwise.
Our backend is hosted on Google Firebase. We do not sell your personal data.
2. Information we collect
2.1 Information you provide
| Data | When collected | Why |
|---|---|---|
| Email address | When you sign in with a passwordless email link (registered accounts) | To authenticate you and secure your account |
| Display name | During onboarding / profile setup | To identify you to friends and on leaderboards |
| Username (“handle”) | During profile setup | So friends can find and add you |
| Avatar | During profile setup | A chosen emoji or flag (not a photo) shown next to your name |
| Predictions / picks | When you participate in a challenge | To score challenges and build leaderboards |
| Challenges you create | When you publish a challenge (draft challenges stay on your device until published) | Title, description, options and results you set up |
| Friends & friend requests | When you add or accept friends | To enable the social features of the App |
2.2 Information collected automatically
| Data | Source | Purpose |
|---|---|---|
| A unique account ID | Generated at sign-in (Firebase Authentication) | To link your data to your account |
| Push notification token | Your device (Firebase Cloud Messaging / APNs) | To deliver notifications you have enabled |
| Last-seen / activity timestamp | App usage | To manage active challenges and inactive-account cleanup |
| Head-to-head & leaderboard stats | Derived from your predictions | To show rivalry records and rankings |
| Crash, performance & analytics data | Firebase Analytics, Crashlytics & Performance Monitoring | To diagnose crashes and improve stability (standard, automatic Firebase collection — includes device model, OS version, and app usage events) |
2.3 Information stored on your device
- Predictions made while offline or as a guest (until they sync or are cleared).
- App preferences such as your theme and whether you have completed onboarding.
- A temporary copy of your email while a sign-in link is pending.
- Draft challenges you are composing, until you publish them (which sends them to our servers) or delete them.
3. Guest accounts
You can use Bragwise as a guest without providing an email. Guest accounts store a display name and your predictions. Guest accounts that remain inactive for 90 days are automatically and permanently deleted from our servers.
4. How we use your information
- To create and operate your account and profile.
- To run prediction challenges, score them, and display leaderboards.
- To enable social features (friends, friend requests, head-to-head stats).
- To send push notifications you have enabled (friend requests, challenge invites, results).
- To keep the App secure (abuse prevention, rate limiting, app integrity checks).
- To diagnose crashes and improve performance and reliability.
5. Third-party services
We use Google Firebase to provide core functionality. These services process data on our behalf:
- Firebase Authentication — sign-in and account management.
- Cloud Firestore — stores your profile, challenges, predictions, and social data.
- Cloud Functions — server logic for all data changes.
- Firebase Cloud Messaging (FCM / APNs) — push notifications.
- Firebase Analytics, Crashlytics & Performance Monitoring — usage analytics, crash reporting, and performance data.
- Firebase App Check — verifies requests come from the genuine App.
Your data is processed by Google as our infrastructure provider. See Firebase’s privacy and security information and Google’s Privacy Policy. We do not use advertising networks, and we do not sell or share your data with advertisers.
6. Push notifications
Notifications are optional. You can turn them off at any time from Me → Notifications in the App, or in your device’s system settings. We only store a device token to deliver notifications while you are signed in.
7. Data sharing & visibility
- Your display name, username, and avatar are visible to other signed-in users.
- When you join or create a challenge, your name, avatar, and points are visible to other participants of that challenge.
- Some challenges have visible bets enabled by the person who created them. In those challenges, the predictions (picks) you make, alongside your display name and avatar, are visible to other signed-in users who can view that challenge — not only to participants. This is controlled by the challenge creator, not by you. Predictions are never shown to unauthenticated (signed-out) users. If you do not want your picks shared this way, do not participate in a challenge that has visible bets enabled.
- We do not sell your personal data or share it with third parties for their own marketing.
8. Deleting your data
You can permanently delete your account and associated data directly inside the App:
- Open the Me tab.
- Scroll to the account section and tap Delete account.
- Confirm. This action cannot be undone.
Deleting your account removes:
- Your authentication record (including your email).
- Your public profile (display name, username, avatar).
- Your player profile, preferences, and push-notification tokens.
- Your friends list, head-to-head stats, and your entry in other users' friends lists and pending friend requests.
- Your predictions and your entries in challenges you joined (including your leaderboard position in them).
- Your username reservation and pending invitations.
9. Data retention
- Account and profile data: kept until you delete your account.
- Challenges: automatically deleted 90 days after results are posted; challenges that are never resolved are deleted 90 days after they are created.
- Inactive guest accounts: automatically deleted after 90 days.
- Security / audit logs: automatically deleted after 90 days.
10. Security
Data is transmitted over encrypted connections and stored on Google Firebase infrastructure. All changes to your data go through secured server functions protected by app-integrity checks. No method of transmission or storage is 100% secure, but we take reasonable measures to protect your information.
11. Children’s privacy
Bragwise is not directed to children under the age of 13 (or the minimum age required in your country). We do not knowingly collect personal data from children. If you believe a child has provided us with personal data, please contact us so we can remove it.
12. International data transfers
Our backend runs in Google Cloud (primary region europe-west1). Depending on
the Firebase services involved, your data may be processed in other countries where Google
operates. Google provides safeguards for such transfers as described in its privacy
documentation.
13. Your rights
Depending on where you live, you may have rights to access, correct, export, or delete your personal data, and to object to or restrict certain processing. You can exercise most of these directly in the App (edit your profile, delete your account) or by contacting us.
14. Changes to this policy
We may update this Privacy Policy from time to time. We will revise the “Last updated” date at the top when we do. Significant changes will be communicated through the App where appropriate.
15. Contact
Questions or requests about your privacy? Email us at naquden@duck.com.