Privacy Policy
Effective date: July 20, 2026
This Privacy Policy explains how VibeCheck handles information when you use the iOS app and this website.
Developer: VibeCheck
Support: [email protected]
Website: https://getvibecheck.fun
Overview
VibeCheck turns a chat export into a report about visible group dynamics. The app is designed to work without a personal account or login. It uses an anonymous device/account key to keep local app state, subscription status, cloud backup rows, and RevenueCat purchase records aligned.
The instant preview is processed on your device. VibeCheck does not send chat content to a third-party AI service unless you first choose Generate Securely on the in-app disclosure shown for that report. Paid full reports require a successful AI response.
VibeCheck does not sell personal data, use chat content for advertising, or track users across apps or websites.
Chat Exports And Reports
You may choose a WhatsApp export (.zip or .txt) or a compatible text transcript. VibeCheck parses the export on your device. The instant preview is generated on the device without sending chat content to an AI provider.
The raw export file is not saved by VibeCheck after parsing. Photos, videos, audio, and the original ZIP file are not sent for AI analysis. The finished report is saved locally in the app and may be stored in VibeCheck's Supabase backend so it can be restored. Sharing a PDF uses the system share sheet and does not create a public VibeCheck link.
AI Processing And Permission
Before each full report, VibeCheck presents a disclosure:
- Generate Securely: You give permission for the protected data listed below to be processed by VibeCheck's HTTPS backend, OpenRouter, and one available AI model provider. At this policy's effective date, the eligible model providers are xAI, DeepSeek, and Google.
Closing the disclosure means no chat content is shared with a third-party AI service and no full report is created. Permission is requested again for each newly imported chat; VibeCheck does not treat a previous choice as standing permission for future chats. If AI processing fails, the app does not replace the full report with a local version.
Before creating an AI request, VibeCheck performs these steps on your device:
- Replaces each participant sender name and known alias with a neutral label such as Person 1 or Person 2.
- Replaces obvious email addresses, phone numbers, links, and @handles with generic placeholders.
- Keeps the alias-to-name mapping on your device. The mapping is not included in the AI request and is used only to restore participant display names after the response is validated.
This is privacy protection and pseudonymization, not a guarantee that free-form message text contains no identifying context.
If you choose Generate Securely, VibeCheck sends:
- Privacy-protected chat message text with neutral participant aliases.
- Conversation statistics and timing patterns computed on the device.
- The selected report tone, language, and conversation type.
- Either the full protected text transcript or, for a large chat, a representative sample capped at 60,000 characters.
The request travels through VibeCheck's HTTPS backend to OpenRouter, which routes it to one eligible model endpoint. At this policy's effective date, the configured options are xAI's Grok, DeepSeek, and Google's Gemini. These services process the data only to return the report requested in the app. VibeCheck will update this policy and the in-app disclosure before enabling a different AI recipient.
VibeCheck's backend requires OpenRouter's per-request Zero Data Retention control and sets provider data collection to deny. This restricts routing to provider endpoints that do not retain the prompt or response and do not collect the prompt for model training or other provider uses. VibeCheck does not enable OpenRouter prompt logging.
VibeCheck reports are entertainment and communication aids. They should not be treated as legal, medical, mental-health, or safety advice.
Data We May Collect
VibeCheck may process:
- Chat text and message metadata from files you choose to import.
- Generated report content and report metadata when cloud backup is configured.
- An anonymous device/account key stored in Keychain.
- Subscription status and purchase entitlement information through Apple In-App Purchase and RevenueCat.
- Basic technical data required to operate backend requests, such as request metadata handled by hosting providers.
VibeCheck does not ask for your card details. Payments are handled by Apple.
How Data Is Used
Data is used to:
- Parse your selected chat export.
- Generate and display a VibeCheck report.
- Keep report quotas and subscription status in sync.
- Restore reports when cloud backup is configured.
- Provide support and troubleshoot issues when you contact us.
Third-Party Services
VibeCheck may use the following services:
- Apple In-App Purchase for subscription billing.
- RevenueCat for subscription entitlement management.
- Supabase for the anonymous usage ledger and report backup.
- OpenRouter to route an AI request only after you choose Generate Securely.
- One eligible xAI, DeepSeek, or Google endpoint selected by OpenRouter for that request, depending on availability.
- Cloudflare infrastructure to operate VibeCheck's HTTPS backend and website.
- Email support when you contact the support address.
VibeCheck requires every third party that receives user data to provide the same or equal protection described in this policy and required by the App Store Review Guidelines. They are authorized to process data only as needed to provide the requested app function. For AI requests, VibeCheck additionally enforces OpenRouter's zero-data-retention and no-data-collection routing controls.
Retention And Deletion
Reports saved locally remain on your device until you delete them or delete the app's local account data.
If cloud backup is configured, report backups and the usage ledger may remain until you delete your account data, delete the relevant report, or request deletion through support. The app includes an account deletion flow that clears local data, rotates the anonymous account key, and attempts to delete matching cloud backups and usage ledger rows. If cloud cleanup cannot finish immediately, the app keeps a retry record until cleanup succeeds.
AI prompts and responses are processed only after your permission. VibeCheck enforces zero data retention for the OpenRouter/model-provider request, so those providers do not retain the prompt or response after processing. Finished reports follow the local and cloud retention rules above.
Your Choices
You can:
- Choose not to import a chat export.
- Decline third-party AI processing by closing the disclosure; no full report is created and permission is requested separately for each chat.
- Delete local reports in the app.
- Export local account data from the app.
- Delete local account data from the app.
- Contact support to request help with data access or deletion.
Children
VibeCheck is not directed to children under 13, and we do not knowingly collect personal information from children under 13.
Security
VibeCheck uses platform security features such as Keychain for the anonymous account key and HTTPS/TLS for configured network requests. No system can be guaranteed perfectly secure, so please avoid uploading chats that contain information you are not comfortable processing for a report.
Changes
We may update this Privacy Policy as VibeCheck's features or service providers change. The effective date above will be updated when this page changes materially.
Contact
Questions or deletion requests can be sent to [email protected].