Tandem Names helps two people discover baby names privately and reveal mutual matches. We collect only the data needed to provide accounts, secure pairing, synchronization, and purchase access. We do not sell personal information or use third-party advertising.
Data the app processes
- A Supabase user identifier and authentication session. Email is processed only if you choose email sign-in or allow Apple to share it. Tandem Names does not request your name from Sign in with Apple.
- A naming-project identifier, membership, invitation status, private reactions, mutual matches, shortlist order, private notes, decision ratings, finalist choices, and timestamps needed for synchronization.
- An APNs device token associated with the current account solely to deliver generic collaboration notifications. The token is disabled when you sign out or delete the account.
- Family-feedback ratings and an optional note submitted through a revocable link that expires after seven days.
- A RevenueCat app-user identifier tied to your Supabase user ID, plus purchase and entitlement information required to unlock Premium and provide aggregate purchase analytics. RevenueCat does not receive your names, reactions, notes, or email from Tandem Names.
Optional onboarding preferences such as last name, culture or language, initials, and naming style remain on your device and are not sent to Supabase or RevenueCat.
Private reactions
Your partner cannot query your individual reaction history. Server rules and database access policies expose mutual matches only after both project members independently love the same name. A project is limited to two members.
Local storage and offline use
The app stores reactions, pending synchronization work, matches, decision progress, onboarding state, and the last verified Premium state on your device. Pending changes are retried when connectivity returns.
Service providers
Supabase provides authentication, database, and server functions. RevenueCat provides purchase validation and entitlement management. Apple processes App Store purchases, Sign in with Apple, and device services under Apple’s policies. The public website is hosted on Cloudflare.
Retention and control
Inside the app you can export your server data, revoke an active invitation, disconnect a partner, and request account deletion. Account deletion removes the account and associated project data according to database ownership and membership rules. App Store transaction records may remain with Apple, and purchase-validation records may be retained where necessary for fraud prevention, accounting, or restoring purchases.
Security
Connections use HTTPS. Invitation links are single-use, expire after 48 hours, and are stored server-side as hashes. Server credentials and webhook authorization secrets are not included in the app.
Children
Tandem Names is intended for prospective parents and other adults choosing a name. It is not directed to children under 13.
Changes and contact
We will update the effective date when this policy changes. Questions or deletion problems can be sent to zeroordinal@gmail.com. See Tandem Names Support.