Privacy Policy
ALLIN ASSISTANCE LLC ("ALLiN", "we", "us", "our") respects your privacy. This policy sets out what information the ALLiN mobile app and the allinquit.com website (together, the "Service") gather about you, what we do with it, where it is kept, who else ever sees it, and how you get rid of it.
By using the Service you agree to the practices described here. If you do not, please stop using it and remove the app from your device. This policy should be read alongside our Terms and Conditions and Subscription Terms. If you live in Washington or Nevada, please also see our Consumer Health Data Privacy Policy.
We are the data controller for the personal data described here. Our registered address is 16400 Collins Ave, Sunny Isles Beach, FL 33160, and the company is formed in Florida.
The Service is offered in the United States, and we do not currently direct it to people in the European Economic Area or the United Kingdom, so we have not appointed a representative under Article 27 of the GDPR or the UK GDPR. We have not appointed a data protection officer, because the law does not require one at our scale, so privacy questions come straight to us at admin@allinquit.com.
1. The short version
What you write in this app is some of the most private information about you that exists. You deserve a plain answer about where it goes, before any of the detail.
- Without an account, your data stays on your phone. There is no hidden upload, no analytics software, no advertising software, and no tracking of any kind in the app.
- Signing in turns on cloud backup automatically. There is no separate sync switch. From that moment your journal, urges, slips, and onboarding answers are copied to our servers so you can get them back on a new phone.
- The same account is what the community needs. So signing in for the community also backs up your recovery data, and signing in for backup also creates your community profile.
- The community is pseudonymous, not anonymous. The first name you type when you set up the app is the name other members see. You can change it at any time.
- Your journal, urges, and slips are private to your account. No other member can read them.
- We never sell your data, and we never show you ads. Not now, and not later.
- The places you save in the location blocker never leave your phone. We never receive them.
- The panic mirror is never recorded. No frame from your camera is ever saved, uploaded, or looked at.
- You can delete everything. "Erase all data" clears your phone and your server copy together, and account deletion removes the login too. Both are in the app, and both are real deletions rather than a hidden flag.
The rest of this page is the honest detail behind those lines, including the parts that are less flattering. We would rather you read something true than something comfortable.
2. Important disclaimers
ALLiN is a non medical, educational, self help app that helps people track a gambling habit and stay motivated to stop. It is not a healthcare service, a medical device, a therapy platform, a counselling service, or a treatment programme, and it does not provide medical advice, diagnosis, or treatment.
We do not create, receive, maintain, or transmit Protected Health Information under the Health Insurance Portability and Accountability Act, and the Service is not a Part 2 Program under 42 CFR Part 2, which governs substance use disorder treatment records. Using the app creates no relationship with a doctor, therapist, or any other healthcare provider.
What you enter may nonetheless be personal and sensitive. You enter it voluntarily, for your own tracking, and section 4 explains how we treat it. Anyone looking for professional help with gambling, compulsive behaviour, or mental health should speak to a qualified professional.
Informational and self help use
The Service provides tracking tools and information to support a change you are directing yourself. We do not monitor what you do outside the app, we cannot verify anything you enter, and we do not guarantee any outcome. You remain responsible for your own decisions and actions.
3. Information we collect
We collect what the app needs to work, plus whatever you choose to put into it. Nothing here is collected in the background for our own purposes.
3.1 Information you provide
Account information. Your email address and authentication details. If you sign in with Apple or Google, we receive the basic sign in information they pass to us, which may include your email address and the name on that account. We never see your Apple or Google password. Your account also records when it was created.
Profile and preferences. Your display name, username, chosen avatar icon and colour, and optionally a short bio and a location you type yourself. Your notification times and other app settings. Providing the optional items is up to you.
Recovery logs and tracking. Entered by you, and used to build the tracking, visualisations, reminders, and insights that you control:
- Journal entries, including the title and the full text of what you wrote, and on older entries a mood and craving rating.
- Urge logs: when the urge hit, what triggered it, how intense it was from one to ten, what you did about it, whether you resisted, and how long it took to pass.
- Slips: when it happened, the amount of money involved if you entered one, and any note you wrote.
- Your written "why" and your list of reasons for quitting.
- Onboarding answers: how often you gambled, what you gambled on, how long you have been gambling, whether your bets grew, whether you found it hard to stop, whether you gambled to cope with stress, boredom, or emotional pain, whether you chased losses, the symptoms you selected, your recovery goals, your first name, gender, and age range.
- Symptom check ins completed over time, recording which financial, mental, and personal symptoms still applied on a given day.
- Money settings: what you told us you used to spend per session, the daily figure derived from it, and your currency.
- Your timeline: quit date, tracking start, best streak, pledge times, and a timestamp for each urge you resisted.
We do not independently check whether any of this is accurate. It is your record, kept for you.
Payment and subscription information. No card, bank, or billing detail ever reaches us or passes through the app. Plans are sold through your app store, which takes the payment under its own terms. We are told only whether a subscription is active, through RevenueCat, which sees an anonymous identifier and the store's receipt data and nothing you have written in the app. The app also keeps a note on your device of which plan it has you on, including preview access granted in test builds with no payment behind it, and that note is backed up with your other settings if you have an account. It is a value your own device wrote, not a receipt from anyone.
3.2 Automatically collected information
This is the section where most apps list a great deal. Ours is short, and the shortness is the point.
The app contains no analytics, telemetry, crash reporting, attribution, or advertising software of any kind. It does not report your usage, your screens, your session lengths, or your behaviour to us or to anyone else. There is no setting to turn this off because there is nothing being collected.
What does exist:
- Server connection data. When the app talks to our servers, which only happens if you have an account, our hosting provider processes standard connection information such as your IP address, the time of the request, and basic device and software details. This is ordinary server logging, needed to deliver and secure the Service.
- Store crash reports. Apple and Google make crash reports available to developers. These contain technical details such as where the app crashed, your device model, and your operating system version, and the stores share them with us only when your own device settings allow it. We have no crash reporting software of our own.
- Support emails. If you email us, we see what you chose to write. Nothing is attached automatically.
We do not collect or use advertising identifiers, and the app does not ask for permission to track you across other apps and websites, because it never does.
3.3 Community and shared content
If you use Connect, we collect what you submit: posts, comments, reactions, chat messages, direct messages, group memberships and invites, friend connections and requests, members you have blocked, and reports you file including the text you write in them. We also record which posts you have opened, which is what produces the view count shown on a post.
What you share in the community is visible to other people, so please be careful about what identifies you or anyone else. Section 5 sets out exactly who can see what.
3.4 Device permissions
Every permission below is optional, is requested only when the feature needs it, and can be revoked in your system settings. The app degrades gracefully without any of them.
Camera, for the panic mirror. The panic button opens a full screen mirror using your front camera while the app talks you through the urge. The feed is live only. Nothing is recorded, no photo or video or single frame is saved anywhere, nothing is uploaded, and nothing is analysed. There is no face detection and no biometric processing. If you decline the permission, the panic screen still works without the mirror. One technical note, because you may notice it: the camera library the app is built on also registers microphone access with your operating system, so your app store listing or device settings may suggest ALLiN can record audio. It never does. There is no recording feature and no code that opens the microphone.
Location, for the location blocker. This warns you when you come close to a gambling spot that you chose to flag. The places you save never leave your phone: their names and coordinates are held in local storage on your device only, we never receive them, they are not part of your cloud backup, and they are not restored on a new phone. Proximity is checked by your phone rather than by us, using your operating system's own geofencing for up to twenty places, so we never receive a stream of your position and we build no record of where you go. The app asks for background location, because an alert is only useful if it can reach you when the app is closed. Your phone also keeps a local note of when an alert last fired, so it does not repeat itself, and that note is cleared by "Erase all data" or by deleting the app. One exception applies when you add a place: if you type an address, or save where you are standing without naming it, your phone asks Apple's or Google's mapping service to look it up. That request goes to them under their own privacy policies, never reaches us, and does not repeat while the blocker is running.
Photo library. ALLiN does not read, browse, or upload anything from your photo library. The current app has no photo upload feature at all. An earlier version let you add a photo to a group in Connect; if you did that back then, the picture was stored on our servers at a public web address, which means anyone who has the link can open it, including people who are not in the group and people who do not use ALLiN at all. It is not protected by a login. Uploads have since been switched off on the server as well, so no new photos can be added by anyone.
The website blocker profile. This one is not a permission, it is a system configuration, and it is the only feature in the app that sends anything about your browsing anywhere. If you turn on the Website Blocker, ALLiN writes a DNS configuration to your device and you enable it yourself in your device settings. From then on, until you switch it off there, your phone asks a third party filtering resolver to look up the addresses it needs, and that resolver answers or refuses. It sees the lookups your device makes, which is more than we ever see: the queries do not come to us, we receive no record of them, and nothing about your browsing is attached to your ALLiN account. The configuration is not tied to your identity. Removing the profile, in the app or in your device settings, ends this entirely.
Notifications. Used for the things you switch on: morning and night commitment reminders, achievement moments, location blocker alerts, and occasional nudges. Every notification is scheduled and raised by your own device. There is no push server, and we do not register a push token or any device identifier, so we cannot send you a message and we learn nothing from your notifications. We word them to stay discreet on a lock screen.
We never access your contacts, your messages, your call history, your microphone, or your clipboard.
4. Sensitive personal information
We want to name this plainly rather than bury it. Much of what ALLiN holds is health related information about a behavioural addiction. The symptoms you tick, your repeat check ins, your urge intensities, your dependency score, and what you write in your journal all describe your mental health and your recovery. Your money figures and slip amounts are financial information.
Under the UK and EU GDPR this is likely to be special category data concerning health. Under a number of US state laws, including Washington's My Health My Data Act and Nevada's equivalent, it is consumer health data, and our separate Consumer Health Data Privacy Policy covers it for residents of those states.
We process it only to provide the features you are using, which is what those laws allow for data necessary to deliver the product you asked for. Nothing you enter is uploaded until you create an account, so choosing whether to sign in is the point at which you decide whether we hold any of it. You can withdraw that at any time by deleting your account, and you can avoid it entirely by not creating one.
Sensitive information of this kind is never sold, never used for advertising or profiling, never shared with data brokers, and never disclosed to employers, insurers, or family members, except in the narrow situations in section 10.
Your dependency score is a motivational estimate the app calculates from a short questionnaire. It is not a diagnosis, not a clinical assessment, and not evidence of anything. Please do not treat it as one, and please do not share it as though it were.
5. What other members can see
Connect is pseudonymous, not anonymous, and the difference matters enough to spell out.
- Your display name is public to members. By default it is the first name you typed when you set up the app. If you signed in with Google or Apple before entering a name, it may start as the name on that account, or as the part of your email address before the @ symbol. It appears on every post, comment, and message you send.
- You can change it. Go to your profile and edit it to anything you like. If you do not want other members to see your real first name, change it before you post, and check it after you first sign in.
- Your profile is readable by any signed in member, even if you never post. It carries your display name, username, avatar, join date, and your gem.
- Your gem indicates how long you have been gambling free, in bands, and it sits next to your name. It is visible whether or not you have turned on stat sharing.
- Your recovery numbers are off by default. If you turn on stat sharing, your profile then shows your days clean, best streak, urges resisted, estimated money saved, and how many journal entries you have written. Once it is on it keeps updating by itself until you turn it off.
- Reactions are attributable. The app shows only a total count, but the record of who reacted to which post is readable by other signed in members. If you would rather it not be known that you supported a particular post, bear that in mind.
- Your journal, urges, slips, "why", onboarding answers, money settings, and email address are never shown to other members. Those are private to your account.
Direct messages are private between you and the other person, but they are not end to end encrypted. They are stored on our servers in readable form, which means we are technically able to access them, and we may do so if we are investigating a report or are legally required to. Please treat Connect as a public space with a private corner, not as a secure messenger.
6. Your control over your entries
Your logs, notes, and journal entries are created and controlled by you. We do not read them to evaluate you, we do not interpret them as a medical or psychological assessment, and no person or system reviews them except where it is genuinely necessary to keep the Service running, enforce our Terms, or investigate misuse.
You decide what to enter, what to edit, and what to remove. One thing you should know about removal: deleting a single entry takes it off your phone, but if you have an account, the copy we hold does not go with it. Section 22 explains this in full, along with what does clear the server copy.
7. How we use information
We use what we collect to:
- Run the app and the features you are using.
- Maintain your account and keep you signed in.
- Build your own progress, streak, statistics, and insights, and show them back to you.
- Back your data up so you can restore it on a new phone.
- Operate Connect, and show what you post to the people you posted it to.
- Keep the community safe, review reports, and act on abuse.
- Answer you when you contact support.
- Keep the Service secure, prevent fraud, and enforce our Terms.
- Comply with the law.
That is the whole list. Health related information is used only for the features you asked for.
8. What we never do
- We never sell your personal data, and we never share it with data brokers. We do not sell or share personal information as those terms are defined under California law.
- We show no ads, and the app contains no advertising, attribution, or cross app tracking software.
- We run no analytics or telemetry, as described in section 3.2.
- We never record or upload anything from your camera.
- We never track your location for our own purposes, and we never receive the places you save.
- We never read your contacts or your messages, and we never read any photo other than one you pick yourself for a group.
- We never use your journal, urges, or posts for advertising, marketing, or training machine learning models.
- We never repurpose your data for something you were not told about. If that ever changes, we ask first.
9. Our legal grounds, for the UK and the EEA
If the UK or EU GDPR covers you, the law makes us name a ground for each thing we do with your data. Ours are:
- Performance of a contract, for running your account, backing up and restoring your recovery data, and delivering the community features you use.
- Consent, for the health related information described in section 4, and for optional permissions such as location, camera, photos, and notifications. You can withdraw consent at any time by turning the feature off, revoking the permission in system settings, or deleting your account.
- Legitimate interests, for keeping the Service secure, preventing abuse, moderating the community, and defending legal claims. We have weighed these against your rights and kept the processing to what is needed.
- Legal obligation, where the law requires us to keep or produce something.
10. Data sharing and disclosure
We do not sell personal information. It is shared only in the limited circumstances below.
10.1 Service providers
- Supabase provides our database, authentication, and file storage. Your account, your synced recovery data, and community content are held there on our instructions.
- Apple and Google provide sign in if you choose to use it, and their mapping services handle the address lookup described in section 3.4. Signing in with either tells that provider you are authenticating into ALLiN.
- Apple and Google app stores distribute the app, take any payment you make, and, subject to your device settings, may share crash reports with us. We never see your card details.
- RevenueCat tells the app whether a subscription bought through your app store is active. It receives an anonymous identifier and the store's own receipt data. It is not given your name, your email, or anything you have written in the app.
- AdGuard DNS is the filtering resolver behind the Website Blocker, and only if you turn that feature on. Section 3.4 explains what it can see and what we cannot.
We require every provider we use to handle your data only on our instructions and to provide the same or equal protection of your data as is stated in this policy, through contracts that bind them to it. They may not use it for their own purposes. We have no affiliates or parent companies with access to your data.
10.2 Where the law or someone's safety requires it
We may hand over information where we are legally compelled to, and we disclose the minimum required and tell you where we are allowed to. We may also disclose it to investigate abuse, enforce our Terms, or protect the safety of members or the public where there is a credible risk of serious harm.
10.3 Business transfers
If the Service is involved in a merger, acquisition, financing, restructuring, insolvency, or sale of assets, your data may transfer with it, still bound by this policy or with notice of any material change. We will tell you before that takes effect, and deleting your account remains available to you.
11. Data security
Everything the app sends travels over an encrypted HTTPS connection. On our servers, your private recovery data, meaning your journal, urges, slips, settings, and figures, is protected by database rules that let only your own signed in account read or write it. We use access controls, managed cloud infrastructure, and the principle of least access for our own systems.
Some things are shared by design and are not isolated, and you should know which:
- Your member profile is readable by any signed in member.
- The record of which posts you reacted to is readable by signed in members.
- Group photos are stored at public web addresses, readable by anyone with the link.
We do not use end to end encryption. Your synced data, including journal text and direct messages, is stored in readable form in our database. That means our own systems, and the small number of people who administer them or review abuse reports, are technically able to access it. We keep that access to what running and protecting the Service actually requires, and we do not read your journal out of curiosity.
Data on your device sits in ordinary app storage rather than an encrypted vault, so it is protected by your device passcode and your operating system rather than by us. If you back your phone up to a computer without turning on backup encryption, that backup can contain the app's data in readable form.
No system is perfectly secure, which is part of why we try to hold as little as possible. Please protect your sign in details and tell us if you suspect someone else has reached your account.
12. Security incidents
If we confirm an incident involving unauthorised access to personal data, we will investigate it, take reasonable steps to limit the harm, and notify you and the relevant authorities where the law requires it and within the deadlines the law sets. Notice may reach you by email, by a message in the app, by a notice on the website, or by another reasonable route.
13. Data retention
We keep personal information only as long as we reasonably need it to run the Service, maintain your account, and meet legal obligations. How long that is depends on the type of information.
- Account and recovery data: for as long as your account exists, including entries you deleted on your phone, as explained in section 22. Delete the account and it goes.
- Community content: kept until you delete your account. A post you delete stops being shown to anyone straight away, including to you, but the stored record is marked as deleted rather than erased, partly so that a report about it stays reviewable. Comments, chat messages, and direct messages have no delete control in the app at all, so they stay until your account goes.
- Safety reports: reports about a member are kept as part of our moderation record even if that member leaves, because they are how we recognise repeat behaviour. We keep them no longer than we need for that purpose.
- Server logs: kept for a short period for security and troubleshooting, then discarded.
- Backups: deleted records can persist briefly in our provider's routine encrypted backups before those are overwritten on their normal cycle.
- Legal minimums: we may keep the little the law requires, such as a record that a deletion request was carried out.
14. Cookies, tracking technologies, and analytics
The ALLiN app uses no cookies, no advertising identifiers, no tracking SDKs, and no analytics tools. There is nothing to configure and nothing to opt out of, because none of it is there.
The allinquit.com website is a plain static site. It sets no tracking cookies, embeds no third party analytics or advertising scripts, and does not profile visitors.
If this ever changes, we will update this section and its effective date first, and where consent is required we will ask for it before anything is set.
15. Aggregated and de-identified data
We may produce aggregated or de-identified information that does not identify you and cannot reasonably be linked back to you, for example counts of how many people use a feature. Where we do, we commit to maintaining it in de-identified form and not attempting to re-identify anyone, except to test that the de-identification holds.
We do not create aggregated datasets from the content of journals, urge logs, or community posts.
16. Automated insights and algorithmic processing
The app uses automated calculations to turn what you enter into progress insights, reminders, streaks, statistics, and the dependency score. These exist purely to show you your own information back to you.
They are not a medical or psychological evaluation. They produce no decision that has a legal or similarly significant effect on you, we do not use them to profile you for any purpose beyond the app, and no automated decision is made about you that you cannot simply ignore or change by editing what you entered.
17. Your privacy rights
Depending on where you live, you have rights to access your data, correct it, export it, delete it, restrict or object to how we use it, and withdraw consent. You also have the right to complain to a data protection authority, and in the UK that is the Information Commissioner's Office.
Because most of your data is on your device, and because account deletion is built into the app, you can exercise the most important of these yourself, immediately, without asking us. For anything else, email admin@allinquit.com and we will respond within the time the law allows, which is usually one month. We will not charge you, and we will not treat you differently for asking.
We may need to confirm you are the account holder before acting on a request, which normally means replying from the email address on the account.
18. US state privacy rights
If you live in California, Colorado, Connecticut, Virginia, Texas, Washington, Nevada, or another state with a comprehensive privacy law, you have rights to know what we collect, to access and delete it, to correct it, to obtain a portable copy, and to opt out of sale, sharing, targeted advertising, and profiling with legal effects.
Some of those are easy for us to answer. We do not sell personal information. We do not share it for cross context behavioural advertising. We do not use it for targeted advertising, and we do not profile you for decisions that produce legal or similarly significant effects. There is nothing for you to opt out of, because we do not do any of it.
The categories we collect, and why, are set out in full in section 3. We collect them from you directly. We disclose them only to the service providers named in section 10, and only so they can run the Service for us.
You may use an authorised agent to make a request on your behalf, with proof that you authorised them. We answer a state privacy request within 45 days. If we need longer we may take one further 45 days, and we will tell you why before the first period is up.
If we decline a request we will tell you why in writing, and you may appeal, either by replying to that decision or by emailing admin@allinquit.com with "Appeal" in the subject line. We will answer an appeal in writing, with our reasons, within 45 days. If we turn your appeal down, we will also give you a way to complain to your state Attorney General, and you can contact them directly whether or not you appeal to us first.
Washington and Nevada residents should also read our separate Consumer Health Data Privacy Policy, which those states require.
19. International data transfers
We operate from the United States, and our hosting provider processes data in the United States (Ohio). If you are outside that region, your data is transferred there in order to provide the Service to you.
For transfers out of the UK or the European Economic Area, we rely on the European Commission's Standard Contractual Clauses and the UK Addendum, together with the safeguards our providers maintain. You can ask us for details at admin@allinquit.com.
20. Age restrictions
ALLiN is for adults. Gambling is an adult activity and the community is an adult space, so the Service is not directed at anyone under 18, and you must be 18 or older to use it. We do not knowingly collect personal data from anyone under 18.
By creating an account you confirm you meet that age requirement. If we learn that an account belongs to someone under 18, or that false age information was given, we may suspend or close it and delete the associated data.
If you believe someone under 18 has created an account, tell us at admin@allinquit.com and we will act promptly. And if you are under 18 and gambling is hurting you, please talk to an adult you trust, a school counsellor, or a service in your area. In the US you can call or text 1-800-GAMBLER free, at any age.
21. Third party services
The app links to outside resources, including gambling helplines and support organisations, and opens them in your browser. This policy does not cover those services, and we suggest reading their own policies. Opening one of them shares your IP address and browser details with that site in the ordinary way.
Please also be aware that calling or texting a helpline from the app places a real call or message through your carrier, which can appear on a phone bill or in your device's call history. That is outside our control, and worth knowing if you share a phone or an account with someone.
22. Deleting your data, and withdrawing consent
You have three separate controls, and they do different things.
Deleting one entry, in the app
Removing a single journal entry, urge, or slip takes it off your phone. If you have an account, the copy we hold does not go with it. Two things follow, and we would rather say them than let you find them. The copy stays on our servers until you delete your account, or until you ask us to remove it at admin@allinquit.com. And because your phone and our copy are combined rather than replaced, an entry you deleted can reappear on your phone the next time the app backs up, which is usually within seconds.
Erase all data, in Settings
This clears the copy on your phone: your streak, journal, settings, and the places saved in the location blocker. If you are signed in, it now clears the server copy as well, in the same action: your synced recovery data, your posts and comments, your chat and direct messages, your groups and your friend connections. Your public profile is blanked and the handle you were using is released for anyone else to take.
Three things survive it on purpose. Your login survives, so the app is still yours and you are simply new here again. Members you blocked stay blocked, because unblocking people without being asked is not a privacy improvement. And safety reports other members filed about you are kept, as described in section 13. If the server step fails, for example because you are offline, the phone is still erased and the app tells you plainly what did not go.
Delete account, in Settings then Account
This is the real one. It runs as a single operation and permanently removes your login, your profile, your synced recovery data, your posts, comments, reactions, chat and direct messages, your groups and memberships, and your friend connections. You do not need to email anyone, though admin@allinquit.com works too if you would rather, or if you are signed out and cannot get back in.
Three things are worth knowing before you do it:
- Deleting your account also removes content that depends on yours. Replies other people wrote on your posts go with the post, and if you created a group, the group and its whole chat history go too, including messages written by other members.
- Safety reports other members filed about you are kept, as described in section 13, and those records still carry your account identifier.
- If you uploaded a group photo, the app tries to delete the file, but because that file sits at a public address we cannot absolutely guarantee every copy is gone. Email us if you want it confirmed.
Deleting your account does not clear the copy on your phone. Use "Erase all data", or delete the app, for that. And if you have a paid subscription one day, cancel it in your app store as well, because deleting an account does not cancel a store subscription.
Withdrawing consent is as simple as turning the relevant thing off: revoke a permission in system settings, switch off stat sharing, or delete your account to withdraw everything at once. None of it costs you access to the rest of the app.
23. Changes to this policy
If we change this policy we will update the effective date at the top, and for any material change we will tell you in the app or by email before it takes effect. If a change would require your consent, we will ask for it rather than assume it. We will not quietly weaken the promises in section 8.
24. Contact
Write to us any time. A real person reads it.
- Email: admin@allinquit.com
- Or reach us through the Support page.
Data controller: ALLIN ASSISTANCE LLC, 16400 Collins Ave, Sunny Isles Beach, FL 33160.
Related documents: Terms and Conditions, Subscription Terms and our Consumer Health Data Privacy Policy.