← Turnly

Turnly privacy

Turnly’s data practices. Effective September 29, 2026.

Turnly Privacy Policy

Effective September 29, 2026. Turnly is operated by Salty Panda LLC. For privacy or account help, contact support@saltypanda.com.

Turnly helps people create circles, share turns, keep a history and talk with one another. This policy covers the information used for those features, including records from earlier app versions.

Accounts and profiles

Guest entry creates a persistent account identifier. It isn't anonymous browsing. If you use Sign in with Apple, Apple may provide your name and email address, including a relay address if you choose Hide My Email.

We store your account identifier, display name, profile emoji or text, and any profile photo you select. A selected photo is uploaded to provide your avatar. Selecting a photo doesn't give Turnly access to your entire photo library.

Circles and shared content

We store circle names, memberships, roles, invitation codes and access restrictions. Turn records include the selected person, round progress, completion or pass details, and timestamps. Chat records include messages, reactions and the account identifiers needed to show who sent or reacted to them.

Profile and circle information is intended for people sharing a circle. Some profile, circle and invitation metadata is also accessible to signed-in Turnly users to support discovery, invitations and compatibility with earlier versions. Don't use Turnly to store sensitive information. People can copy or share content and invitations they can see.

Notifications and device preferences

If you allow notifications, Turnly uses a device notification token and your preferences to deliver updates. You can change permission in iOS Settings and mute a circle in Turnly. Notifications are optional.

The app stores setup progress, appearance, sound, haptic and recovery preferences on your device. Previously loaded circle information may remain in a local cache while the service is unavailable.

Purchases

Apple processes in-app payments. Turnly receives product and transaction identifiers, signed purchase information, account association and access records to verify Pro access, restore purchases, handle expiration or refunds, prevent purchase reassignment and support eligible Family Sharing. Turnly doesn't receive your payment-card details through an in-app card form.

Earlier Turnly versions use RevenueCat for purchase management. RevenueCat remains available for those versions, and historical purchase and account records can remain with that provider during the transition to native Apple StoreKit.

Optional usage analytics

In version 1.3 and later, usage analytics is off until you enable Share usage analytics in Settings. If enabled, Firebase Analytics records product interactions such as setup, turn actions, return visits and purchase outcomes, together with app version, device information, installation identifiers and Pro-access state. Google Analytics derives general location information from masked IP addresses; Turnly does not request Location Services permission. These events don't include circle names, message text, selected-member names or profile photos. They aren't anonymous simply because they omit your name.

You can turn this option off in Settings. This stops further Analytics collection from that installation and resets its local Analytics data. It doesn't erase information already stored by the provider. Earlier versions collected usage analytics without this setting and could include additional circle or selected-member identifiers in usage events.

The current app disables advertising storage, advertising personalization and advertising identifiers. Service logs and diagnostics still support account security, error investigation, notifications and purchase verification. These records can be associated with an account, device or network connection.

Providers and processing locations

Google Firebase provides authentication, stored app content, selected avatars, notifications, optional analytics and backend operations. Apple provides Sign in with Apple, payments, subscriptions and iOS notification delivery. Earlier versions also use RevenueCat.

The Firebase database is hosted in North America. Our providers may process information in other countries as part of their services. Read Firebase's privacy information, Apple's privacy information and RevenueCat's privacy policy for their service practices.

Account deletion and retention

You can request account deletion in Turnly Settings. Deleting the app from your phone doesn't request deletion of your service account.

Account cleanup removes the profile and sign-in identity, avatar, memberships, private notification registrations, authored chat messages and reactions. Shared turn records are anonymized so other members can retain their history. A circle without another administrator is closed and cleaned up. Cleanup runs in multiple steps; a pending request can continue after you close the app.

Purchase verification, transaction history, account-token ownership and related access records are retained after account deletion to prevent purchase reassignment and support verification, refunds and disputes. These records currently have no fixed automatic purge period. Pending signed purchase notifications may also be retained until they can be resolved. Contact us to request a review of retained information.

Notification dispatch receipts expire after 30 days. Operation retry receipts expire after 30 days. Completed account and circle deletion job records become eligible for cleanup after seven days. These periods concern service records, not the shared history of an active circle.

Backups, operational and security logs, provider records and Analytics have separate retention and deletion processes. Account cleanup doesn't immediately erase every provider or backup copy. We retain active account and circle content while needed to provide the service, and retain other records for the stated operational, purchase-verification and legal purposes. We review deletion requests against those purposes and applicable requirements.

Our current setup retains daily database backups for 30 days. Deleted avatar files can remain recoverable for seven days. Google Cloud operational logs are retained for 30 days, and its required audit logs for 400 days. These copies can remain after account cleanup.

Deleting a Turnly account doesn't cancel an Apple subscription. Manage or cancel it through your Apple Account. See Apple's subscription instructions.

Your choices and requests

You can update your profile, choose an avatar, disable notifications, mute circles, and change usage analytics in the app. For access, correction, export, deletion or other privacy requests, email support@saltypanda.com. Depending on where you live, additional privacy rights may apply. We may need to verify that a request concerns your account.

Include enough information to locate your account. Don't send passwords, verification codes, payment-card details or full signed purchase records. Turnly isn't designed for children under 13. If you believe a child has provided personal information, contact us.

We will update this page when our practices change and show the effective date at the top.

Open full-size image