1. Information we collect
When you use Double Check, we collect the following information:
- Email address — required to create an account and sign in.
- Name (optional) — if you choose to add it, this will be displayed to others when sharing lists.
- User ID — a unique identifier automatically generated when you create an account, used to keep your data associated with your profile.
- Checklists — the lists you create, including any items you add, are stored securely so you can access them across devices and share with collaborators.
- AI prompts — when you use the AI list-generation feature, the text you enter (and the back-and-forth needed to refine the result) is sent to our AI provider so we can return a suggestion. We do not store these prompts on our own servers beyond the time needed to produce the response.
- Subscription status — if you subscribe to Pro, we receive a pseudonymous identifier and your current entitlement (active / trial / expired) from our subscription provider. We never see your card details.
- Activity logs — limited records of certain actions you take in the app (for example, sending a verification email, accessing a shared list, joining or copying a checklist). These are used for security and debugging.
We do not collect location data, health data, browsing history, or your payment card details.
2. How we use this information
We only use the information above to:
- Provide core app functionality (account login, checklist creation, syncing, sharing).
- Display your chosen name to others when you share lists.
- Ensure your lists are available to you across devices.
- Generate AI-assisted checklists when you request them.
- Determine whether your account has access to Pro features.
- Keep operational logs of key actions for security and debugging.
We do not use your data for advertising or cross-app tracking.
3. Sub-processors and where your data is stored
We do not share your personal information with advertisers, data brokers, or third parties for marketing purposes. To run the service we rely on the following providers, who process limited data on our behalf:
- Google Firebase (Authentication, Firestore, Cloud Functions) — hosts your account, your checklists, and our backend. Data is processed in Google data centres in the EU where available.
- OpenAI — receives the text of your AI prompts when you use the AI list-generation feature, and returns a generated suggestion. Prompts are processed in the United States. OpenAI does not use API content to train its models and retains it only for a short period for abuse monitoring, as described in their API data policy.
- RevenueCat — manages your subscription entitlement (whether your Pro plan is active, in trial, or expired). Receives a pseudonymous user identifier; does not receive your email or your card details.
- Apple App Store / Google Play — handle the actual purchase, billing and renewal of any subscription. Their own privacy terms apply to that transaction.
4. AI feature
The AI list-generation feature sends the prompt you type — and any follow-up answers in the same conversation — to OpenAI so it can suggest a checklist. Please do not paste sensitive personal information (for example national identity numbers, health details, or other people's contact details) into AI prompts: it will leave our systems to be processed by OpenAI.
AI-generated suggestions can be inaccurate or incomplete. You are responsible for reviewing the result before relying on it.
5. International transfers
Some of our sub-processors (notably OpenAI and RevenueCat) process data in the United States. When personal data leaves the EEA we rely on the safeguards offered by those providers, including the EU Standard Contractual Clauses and the EU–U.S. Data Privacy Framework where applicable.
6. Tracking
We do not engage in tracking. That means:
- We do not link your data with third-party data for advertising.
- We do not share your data with advertising networks or brokers.
7. Children
Double Check is not directed at children under 13. If you are under the age required to enter into a binding agreement in your country, you should use the app only with the involvement of a parent or guardian.
8. Your choices
You may update or delete your account information at any time. If you delete your account, your associated data (email, name, checklists, templates, and categories) will also be deleted from our servers. Limited operational logs may be retained for a short period for security purposes. Subscription records held by Apple, Google or RevenueCat are governed by those providers' own retention policies.
See how to delete your account for step-by-step instructions.
9. Changes to this policy
If we make material changes to this policy, we will update the "Last updated" date above and, where appropriate, notify you in the app.
10. Contact
If you have any questions regarding the app, this Privacy Policy, or need support, please contact us.