Privacy Policy
Join for Friends
This policy explains how this application handles information and how to contact us about privacy.
Information we process
Join for Friends stores the name you enter for your local profile, language and reminder preferences on your iPhone. It stores the friends, contact notes, meeting dates, places or text addresses, response statuses, personal notes, selected photos, and weekly load ratings that you choose to add. The app keeps a local copy for offline use and mirrors friends, meetings, notes, photos, and ratings to its server under an automatically generated installation secret. The secret stays in this iPhone's Keychain; the server stores its SHA-256 hash to separate installations. When the app contacts the service, Railway and the service receive ordinary connection and request data, such as IP address, route, time, and technical headers. The app has no account, login, analytics SDK, advertising SDK, or contact upload.
How we use information
The data powers your meeting diary, friend profiles, personal memories, reminders, weekly Social Rhythm chart, offline access, and synchronization of your own records. Request data is processed to deliver and protect the service and diagnose operational errors. Photos are uploaded only when you attach them to a meeting. The local profile name and language choice are used only on your device.
Service providers and sharing
The application backend runs on Railway, which hosts the service, persistent volume and related infrastructure and may process connection information and infrastructure logs. We do not add analytics, advertising, email delivery, map or social sign-in providers. Your private records are not intentionally shared with other installations and are not made public by the API. We may disclose information if legally required; otherwise we do not sell personal data.
Data retention
Local records and selected photos remain on this iPhone until you delete them, remove the app, or the operating system removes app data. Server records and photo bytes remain in the service's persistent SQLite storage until you delete them through the app or request assistance through the privacy contact. The app does not set a time-based automatic deletion schedule. Railway may retain infrastructure logs or operational copies under its own service practices; we do not assert a fixed retention period for those logs. This deployment does not configure an application-managed backup. If infrastructure backups or snapshots exist, their removal may follow Railway's operational schedule rather than the immediate live-record deletion.
Deleting your information
Settings offers Delete all data. It clears the app's local records and photos and requests deletion of all server records, photos, and ratings associated with the installation secret. If offline, the deletion request is held locally and retried when connectivity returns; server deletion is not complete until that request succeeds. After a successful server deletion the installation secret is replaced. Deleting an individual friend or meeting also removes its associated server records, including meeting photos. If the installation secret is lost, the app cannot identify or recover the associated server records automatically; contact Stellan4Kingsley@icloud.com for a privacy request, understanding that identifying inaccessible records may be impossible without the secret.
Permissions and your choices
The app uses the iOS photo picker when you choose images for a meeting. The picker grants access only to photos you select; the app does not request broad photo library access. If you enable reminders, the app asks iOS for notification permission and schedules local day-before alerts. You can disable reminders in the app or withdraw notification permission in iOS Settings. Denying either choice does not prevent use of the diary. The app does not request location or contacts permission.
Your privacy rights
You can view, edit and delete the records you entered in the app. You may ask privacy questions or request access or deletion by writing to Stellan4Kingsley@icloud.com. Because there are no accounts and the server indexes records only by a secret stored on your device, we may need that installation to identify your records and may be unable to locate them if the secret is lost. Applicable privacy rights depend on your location.
Security
The app uses HTTPS for its server requests, stores the installation secret in the iOS Keychain, and keeps offline records in its app storage. The server stores only a hash of the secret, checks it on every private API request, scopes record access to that hash, and returns private responses with no-store cache headers. Server data is kept in a persistent SQLite volume at Railway. No system can be guaranteed completely secure; do not put highly sensitive information in free-text notes or photos.
Children’s privacy
Join for Friends is intended for adults managing their own friendships and is not directed to children. The app does not verify age or provide child accounts. If you believe a child has entered personal data, contact Stellan4Kingsley@icloud.com.
Changes to this policy
We may update this policy when the app's features, hosting or data practices change. The effective date at the top of this page shows the current version. Material changes will be reflected on this public page and, where practical, in the app. Privacy questions can be sent to Stellan4Kingsley@icloud.com.