OtherHalf Privacy Policy
OtherHalf — Private Relationship Journal for iOS

Last updated: 9 August 2026
OtherHalf is a private journal for two people. We collect only what is needed to run and protect the shared service, never sell personal data, and provide in-app account deletion.
WHO WE ARE
OtherHalf ("the app", "we", "us") is operated by Oktay Türkdağlı. This policy explains what personal data the app handles, why, and what you can do about it.
For questions about this policy or about your data, write to oktayturkdagli@gmail.com. You can also reach us from Profile → Support inside the app.
WHAT WE COLLECT
We only collect what the app needs to work. There is no advertising and no data broker involved.
• Account details — your email address, and a password that is stored only as a salted hash. If you sign in with Apple or Google instead, we receive the email address and the name that provider chooses to share.
• Profile details you type in — display name, city, birthday, interests and an optional profile photo.
• Relationship details — who you are paired with and the date your relationship started, so the app can count the days.
• Content you create — plans, dreams, memories with their dates and places, little things, gift lists, time-capsule letters, calendar entries, answers to the daily question, and photos you add. This content is cached on your device and synchronised through our service so it is available to the partner you pair with.
• Support messages — the email address, subject and message text you send us from the support screen, so we can reply.
• Diagnostics — if the app crashes, we receive a crash report containing the error, your device model, operating system version and your account's ID. It contains none of your journal. This helps us fix the crash.
• Product analytics — if you switch it on, anonymous counts of which screens are opened and which features are used, tied to a random device identifier and not to your account. It is off unless you turn it on in Profile → Preferences.
WHAT WE DO NOT COLLECT
• We do not collect your precise or approximate location.
• We do not read your contacts, calendar, messages, microphone or camera.
• We do not collect payment or financial information — the app has no purchases.
• We do not use advertising identifiers and we do not track you across other apps or websites.
• We do not sell, rent or trade your personal data to anyone, ever.
WHY WE USE IT
• To create and secure your account and keep you signed in.
• To store, synchronise and show your shared journal to you and the partner you pair with.
• To reply to support messages you send us.
• To find and fix crashes and errors.
• To understand which parts of the app are used, so we can improve them.
• To send the reminders you switched on, if you switched any on.
WHERE YOUR JOURNAL LIVES
Your journal is stored in a private Supabase project and cached on each signed-in device for offline use. It is not public and database access rules limit it to members of the relevant paired space.
When you pair with another person, the shared journal is synchronised between both accounts. Each partner can read the shared space and may add, edit or remove content according to the feature being used. Only pair with someone you trust.
If a pairing ends, both former partners receive read-only access to the archived shared space for 30 days. The archive and its media are then deleted by the scheduled purge. Each person receives a new private space for future content.
SERVICE PROVIDERS
We use a small number of processors to run the app. Each one only receives what it needs, and each is bound by a data-processing agreement.
• Supabase — hosts authentication, profiles, paired-space content, private media storage, synchronisation and support messages in the European Union.
• Sentry — receives crash reports.
• PostHog — receives anonymous product-analytics events, and only if you have switched analytics on.
• Expo — provides build and update delivery and, when you enable notifications, the push-notification delivery service.
• Apple and Google — only if you choose to sign in with their account, and only for that sign-in.
WHERE YOUR DATA IS HELD
Data is processed on servers operated by the providers above, which may be located outside your country, including in the United States. Where data leaves the European Economic Area, transfers rely on the European Commission's Standard Contractual Clauses or an equivalent safeguard.
WHAT STAYS ON YOUR DEVICE
Language, sound, vibration, reminder and analytics-consent preferences stay on your device. The app also keeps an offline cache and local copies of selected media. Your session token is kept in the operating system's secure keystore — the iOS Keychain or Android Keystore — rather than ordinary app storage. Signing out clears the session; deleting the app clears its local cache but does not by itself delete the cloud account.
HOW LONG WE KEEP IT
• Active shared-journal content — until you or your partner delete it, the pairing archive expires, or the account that authored it is deleted. Deleted records and ended-pairing archives are purged after 30 days.
• Account details — until you delete your account, which removes them from live systems immediately and from backups within 30 days.
• Support messages — up to 24 months, so we have the history of a conversation if you write again.
• Crash reports — up to 90 days.
• Analytics events — up to 12 months, in aggregated form.
YOUR RIGHTS
Wherever you live, you can ask us to show you your data, correct it, export it or erase it, and you can object to how we use it. If you are in the European Economic Area, the United Kingdom, Switzerland or Türkiye, these rights come from the GDPR, the UK GDPR or KVKK respectively.
• Delete your account and the content you authored — Profile → Account → Delete account. The partner keeps their own authored content and any support conversation is retained without its account link for the period described above.
• Get a copy or make a correction — write to oktayturkdagli@gmail.com and we will answer within 30 days.
• Withdraw consent for analytics or reminders — turn them off in Profile → Preferences.
• Complain — you may lodge a complaint with your local data-protection authority. In Türkiye that is the KVKK Authority (KVKK Kurumu); in the EU it is the authority for the country you live in.
DELETING YOUR ACCOUNT
Open Profile → Account → Delete account and confirm the displayed word. Your authentication account, profile, membership, authored journal rows, authored media and profile media are removed. If a partner remains, the paired space is handed to them and their authored content remains available to them.
Support requests are retained without their account link for up to 24 months. Provider backups may retain encrypted remnants for up to 30 days. If you cannot enter the app, write to oktayturkdagli@gmail.com from the account email address so we can verify and process the request.
SECURITY
All traffic between the app and our servers uses TLS. Passwords are never stored in a readable form. Data at rest is encrypted by our hosting provider. Access between accounts is blocked at the database level. No system is perfect, so if you think something is wrong with your account, tell us straight away.
CHILDREN
OtherHalf is not intended for anyone under 16, and we do not knowingly collect data from children. If you believe a child has created an account, write to oktayturkdagli@gmail.com and we will remove it.
CHANGES TO THIS POLICY
If we change this policy in a way that matters, we will tell you in the app before the change takes effect. The date at the top always shows the current version.
CONTACT
Oktay Türkdağlı — oktayturkdagli@gmail.com. We answer data-protection requests within 30 days.