us+ logo
Home Features FAQ Feedback About us
EN / УКР
Get the app
Home Features FAQ Feedback About us

Us+ is now available on Google Play.

Get it on Google Play
EN / УКР

Effective: August 26, 2026 · Last updated: August 26, 2026

Privacy Policy

This page explains what data us+ collects, why we collect it, and what we do (and don't do) with it. It covers the us+ mobile app on iOS and Android and the website at tesserly.dev. We tried to write this in plain English. If any section is unclear, email us at tesserly.dev@gmail.com and we'll explain.

By using the us+ app or website, you agree to this policy. If you don't agree, please don't use the service.

1. Who we are

us+ is a habit-tracking app built by Tesserly, a two-person independent studio based in Ukraine. Tesserly is the data controller for the personal data collected through the app and the website — we decide what is collected and why.

Contact for any privacy question or request: tesserly.dev@gmail.com. We read every message ourselves; there is no support desk in between.

2. What we collect

Everything below is something the app actually stores or sends. If it isn't on this list, we don't collect it.

Account and identity

  • Your email address — used to create and sign in to your account, whether you register directly, with Google, or with Apple. If you use Sign in with Apple and choose Hide My Email, we only ever see the private relay address Apple gives us.
  • Your real name — when you sign in with Apple we request the "full name" scope, and Google returns the display name on your Google account. Whatever the provider hands over is stored in your account metadata. It is never shown to other users unless you also choose it as your nickname.
  • Your nickname and avatar image — the ones you pick inside the app. The avatar file is kept in our cloud file storage.
  • Device type and OS version — so we can reproduce crashes and layout bugs.

Habit data

  • The habits you create (name, schedule, type — task or timer)
  • Daily check-ins and timer sessions you complete, plus streak counts and history
  • Habits and check-ins are stored in our cloud database so they survive a lost phone and sync to your other devices. For a shared habit, they also have to be in the cloud for your partner's side of the screen to work.

Pair (shared habit) data

  • Invites you send or accept, and the friend you are paired with on a given habit
  • GIF reactions you send to your paired friend — the GIF and who it was sent to are stored in our notifications table so it can be delivered
  • Both members of a pair can see each other's progress on the shared habit (this is the whole point of the feature)

Notes

  • Notes you attach to a habit stay on your device. They are not uploaded to our servers, we cannot read them, and your paired friend cannot see them.
  • Because they are local, notes are not part of a data export and they are gone if you delete the app or lose the device.

Push notifications

  • A device token issued by Firebase Cloud Messaging, stored against your account so a reminder or a "your partner just checked in" can reach the right phone. The token identifies the app install, not you personally.

Subscriptions

  • us+ is paid for by subscription. Payment itself is handled by Apple and Google — we never see or store your card, bank, or billing address.
  • Our subscription provider (RevenueCat) records your subscription status and purchase / renewal history together with the store's transaction identifiers, keyed to your us+ user ID so your subscription follows your account across devices.

Product analytics — including session recordings

We want to be explicit about this one, because it goes further than counting screen views. We use Microsoft Clarity, which records your sessions in the app — the order of screens, taps, scrolls and gestures — and turns them into replayable recordings and heatmaps. Clarity also receives your device type, OS version and IP address (used to derive an approximate region).

  • These recordings are not linked to your us+ account. We do not send Clarity your email, name, nickname, habit names, or notes.
  • They are still personal data under GDPR, which is why we name the tool here rather than hiding it behind the word "analytics".
  • You can turn analytics and session recording off at any time: Settings → Support, in the analytics card. Turning it off stops recording immediately and stays off after you restart the app.

GIF search

  • When you open the GIF picker, the text you type and your IP address are sent to Klipy, the GIF library we use, so they can return matching results. Klipy logs those requests on their own systems under their privacy policy.
  • We never send Klipy your name, email, account ID, who you are paired with, or any habit data.

Website

  • tesserly.dev is a static site. It runs no analytics, no ads, and no tracking cookies. Our hosting provider processes standard server request logs (including IP) to serve the page and block abuse.

What we never collect

  • Precise GPS location, microphone, camera, your photo library beyond the single avatar you choose, contacts, or health and fitness data
  • Advertising identifiers. us+ shows no ads and does not track you across other companies' apps or websites.
  • We do not sell your data and we never hand it to data brokers.

3. Why we are allowed to process it

If you are in the EU, EEA, or UK, we must name a legal basis for each purpose. Here it is in full:

Purpose Data used Legal basis (GDPR Art. 6)
Create and run your account Email, name from your sign-in provider, nickname, avatar Performance of a contract — Art. 6(1)(b)
Store and sync habits, check-ins and streaks Habit data Performance of a contract — Art. 6(1)(b)
Shared habits, invites and GIF reactions Pair data Performance of a contract — Art. 6(1)(b)
Send reminders and partner notifications Push device token Contract, plus your consent at the OS permission prompt — Art. 6(1)(a)–(b)
Run subscriptions and unlock what you paid for User ID, subscription and purchase history Contract — Art. 6(1)(b); tax and accounting records — Art. 6(1)(c)
Return GIF search results Search text, IP Performance of a contract — Art. 6(1)(b), you asked for the GIF
Session recordings and heatmaps (Microsoft Clarity) In-app usage events, device and OS, IP Consent — Art. 6(1)(a). Withdraw it any time in Settings → Support.
Fix crashes, keep the service secure, stop abuse Device and OS, server logs Legitimate interests — Art. 6(1)(f)
Answer your emails and support requests Whatever you write to us Legitimate interests — Art. 6(1)(f)

We do not sell your data. We do not use it to train third-party advertising models. We do not profile you to target ads, and we make no decisions about you by automated means that would have a legal or similarly significant effect.

4. What your paired friend sees vs. what stays private

Because this question matters most in a shared-habit app, here is the full table:

Data Visible to your paired friend?
Your nickname and avatarYes
The shared habit you share, and your check-ins on itYes
Your streak on the shared habitYes
GIF reactions you send to each otherYes — sent to that one friend
Your personal (non-shared) habitsNo
Notes you write on any habitNo — they never leave your device
Your real name from Apple or GoogleNo
Your email or social-login identifierNo
Your subscription status and purchase historyNo
App usage analytics and session recordingsNo

5. Who we share it with

We use a small set of providers. Each one receives only the data it needs to do its job, is contractually limited to using that data to provide the service to us, and none of them is allowed to sell it or use it for their own advertising.

Provider What it does for us What it receives Their policy
Supabase Sign-in, database, avatar file storage Email, name from your provider, nickname, avatar, habits, check-ins, pair data, GIF reactions, push token supabase.com/privacy
Microsoft Clarity Session recordings and heatmaps In-app usage events, device and OS, IP — no account identifier Microsoft Privacy Statement
RevenueCat Subscription management and entitlements Your us+ user ID, subscription status, purchase and renewal history, store transaction IDs revenuecat.com/privacy
Firebase Cloud Messaging (Google) Delivering push notifications Device push token and the notification content firebase.google.com/support/privacy
Klipy The GIF library behind the picker Your GIF search text and IP address klipy.com/support/privacy-policy
Sign in with Apple Authentication The sign-in request; Apple returns an identifier and, if you allow it, your name and email or relay address apple.com/legal/privacy
Google Sign-In Authentication The sign-in request; Google returns your identifier, display name and email policies.google.com/privacy
Cloudflare Hosting tesserly.dev Standard server request logs, including IP cloudflare.com/privacypolicy
UserJot The public feedback board linked from the website Only what you type there, and the account you create with them userjot.com/privacy

Apple's App Store and Google Play also handle the install itself and give us aggregate download and crash statistics under their own privacy practices.

Beyond these providers, we disclose personal data only if the law requires it — for example a valid order from a competent authority — or to protect someone's safety.

6. Where your data lives, and international transfers

Tesserly is based in Ukraine, and our database and file storage run on Supabase infrastructure in the European Union and/or the United States. Our other providers are established mainly in the United States.

Ukraine is not currently covered by an EU adequacy decision. When you use the app you send your data to us directly, which is not in itself a restricted transfer — but our providers storing and processing it outside your country is, and if you are in the EU, EEA, or UK we rely on these safeguards for it:

  • Standard Contractual Clauses — the EU SCCs, and the UK Addendum / IDTA for UK users — in our agreements with our providers;
  • the EU–US Data Privacy Framework where the provider is certified under it — this includes Microsoft and Google;
  • Ukraine's own Law on Personal Data Protection, which applies to us at home.

You can ask us for a copy of the safeguards that cover a specific provider by emailing tesserly.dev@gmail.com.

7. How long we keep it

  • Account data (email, name, nickname, avatar) — for as long as your account exists.
  • Habits, check-ins and streaks — kept while your account is active so history and streaks work.
  • GIF reactions — kept while the pairing is active; removed when you unpair or delete your account.
  • Notes — held only on your device. We keep no copy and therefore have nothing to delete.
  • Push token — until you sign out, turn notifications off, or uninstall; tokens that stop working are dropped automatically.
  • Subscription and purchase records — for the life of your account, and afterwards only where tax and accounting law obliges us to keep transaction records.
  • Session recordings and heatmaps — retained by Microsoft under Clarity's retention policy: recordings are deleted after 30 days (sessions we explicitly label, up to 9 months) and aggregate metrics after 13 months.
  • GIF search requests — held by Klipy under their own policy; we keep no record of what you searched for.
  • Deleted habits — purged within 30 days.
  • Deleted accounts — all your personal data is purged within 30 days of deletion. Anonymized aggregate analytics may be retained.
  • Backups — encrypted backups may take up to 60 additional days to rotate out.

8. Your rights

These rights come from the GDPR and UK GDPR. We apply them to everyone, wherever you live. You can:

  • Access — request a copy of the data we hold about you.
  • Correct — fix any data that is wrong; nickname and avatar you can edit yourself in the app.
  • Delete — erase your account and everything attached to it.
  • Restrict — ask us to pause processing while a dispute or a correction is being sorted out.
  • Export — receive a portable, machine-readable copy of your habits and check-in history.
  • Object — object to processing based on legitimate interests, and turn analytics and session recording off in the app's Settings.
  • Withdraw consent — where we rely on consent (analytics, push notifications), withdraw it at any time without affecting what happened before.

How to use them

  • Delete your account in the app: Settings → Account → Delete account. This removes your habits, check-ins, pair links, avatar and account metadata. It is permanent and cannot be undone.
  • Turn off session recording and analytics: Settings → Support, in the analytics card. The choice is remembered between sessions.
  • Everything else: email tesserly.dev@gmail.com from the address on your account. We reply within 30 days. We may ask you to confirm you control the account before we act, and we never charge for a request.

If you think we've handled your data badly, please tell us first — but you always have the right to complain to a regulator instead. In the EU or EEA that is the data protection authority of the country you live or work in; in the UK it is the Information Commissioner's Office (ICO); in Ukraine it is the Verkhovna Rada Commissioner for Human Rights.

9. If you are in California

We do not sell your personal information, and we do not share it for cross-context behavioural advertising — as those terms are defined by the CCPA as amended by the CPRA. We have not sold or shared personal information in the preceding twelve months, and we do not sell or share the personal information of anyone under 16. We do not offer financial incentives in exchange for personal information.

In the last twelve months we collected these CCPA categories:

  • Identifiers — email, name from your sign-in provider, nickname, user ID, push token, IP address
  • Commercial information — subscription status and purchase history
  • Internet or other electronic network activity — in-app usage, session recordings, GIF search text
  • User content — habits, check-ins, GIF reactions

We collect them for the purposes in section 3 and disclose them only to the service providers in section 5. You have the right to know, access, correct and delete your personal information, to opt out of sale or sharing (there is nothing to opt out of, since we do neither), to limit the use of sensitive personal information (we do not collect any for that purpose), and not to be discriminated against for exercising any of these rights. Use the same routes as section 8 — in-app deletion or email. An authorised agent may submit a request on your behalf with written proof.

10. Security

Data in transit is protected with TLS. Passwords are hashed by our authentication provider with industry-standard algorithms and are never visible to us. Access to production data is limited to the two of us. No system is ever 100% secure — if a breach occurs that affects your data, we'll notify you and the relevant regulator within 72 hours.

11. Children

us+ is rated 13+ and is not intended for children under 13. We do not knowingly collect data from anyone under 13, which matches the minimum age in our Terms & Conditions.

Some EU and EEA countries set a higher digital age of consent — up to 16. If you are under that age in your country, you need your parent's or guardian's permission before using us+. If you believe a child has signed up without it, email us at tesserly.dev@gmail.com and we will delete the account.

12. Changes to this policy

We may update this policy as the app evolves. Material changes will be announced in the app and reflected in the "Last updated" date at the top. Continued use of the service after a change means you accept the updated policy.

13. Contact

Questions, requests, or just hi — tesserly.dev@gmail.com.

us+ logo
tesserly.dev@gmail.com Contact Us

© 2026 Us+. All rights reserved.

Home FAQ Features Feedback
About us Privacy Policy Terms and Conditions