PRIVACY POLICY

LAST UPDATED AUGUST 27, 2026 · BETA V2

droppdd is a small, invite-only beta run by a single maintainer, not a company. This policy describes what actually happens today - not aspirational future plans - and is written in plain language rather than dense legal boilerplate. It is not a substitute for professional legal advice.

1. What we collect at sign-in

Sign-in is Google OAuth only - no passwords. We receive your email address, display name, profile image, and Google's internal account ID. Your email is checked against a manually managed allowlist before you can use the app at all.

2. What you enter yourself

Once signed in: a username (visible to every other beta user on the leaderboard and in wager challenges - choose accordingly), your weight (starting, current, target), age, height, and meal preference, workout/wager activity, and any wagers you create or accept, including a free-text "stake description" you write yourself.

Your exact weight is never shown to other users. The leaderboard only shows a relative percentage toward your own goal and your streak - never a raw number.

3. Peer features

If another beta user challenges you to a wager, they see your username and the challenge details. If you accept, your progress toward that specific goal is visible to them (still as a target/outcome, not your raw ongoing weight log).

4. AI meal planning

The meal-planning feature sends your entered ingredients or macro targets to Anthropic's Claude API to generate a recipe. This is ephemeral - nothing you generate this way is saved to our database. Anthropic processes that request under its own terms.

5. Money

Wagers are honor-system only. droppdd does not process payments, hold funds, or verify that a "stake" was actually paid. No payment processor is integrated today.

6. Hosting and infrastructure

droppdd is self-hosted on private hardware, not a hyperscaler cloud. It is publicly reachable at this domain, sitting behind Cloudflare (as a reverse proxy/CDN and edge security layer - DDoS protection, bot filtering, rate limiting) and, depending on current beta phase, an additional Cloudflare Access login gate. Cloudflare processes connection metadata (like IP address) as part of providing that security layer.

7. Cookies and tracking

No third-party analytics, ad trackers, or marketing pixels. We use first-party session cookies solely to keep you signed in - they don't track you elsewhere.

8. Your data, your rights

You can request a full export or complete deletion of your account and all associated records at any time - contact the maintainer through your invite channel. We'll verify it's really you via your registered email, then act within 30 days. Deleted data is removed from production immediately; it may persist in encrypted backups for up to 30 days before being overwritten, and is never restored.

9. Changes

If this policy changes in a way that matters (new tracking, new third-party processors, real-money features), you'll be asked to review and accept the update on your next sign-in before continuing.