Spell It Privacy Policy
Who we are
Spell It is made by Brogan LLC. This policy covers the Spell It app for iPhone and iPad and the website spellit.app.
Brogan LLC
(404) 490-0467
hello@brogan.io
If anything here is unclear, email us. We answer within 30 days, and usually much sooner.
How Spell It is used
A grown-up creates the Spell It account. Learners, including children, practice on profiles under that account. The app does not ask anyone's age.
If no grown-up is there when Spell It is first opened, a learner can skip sign-in. The app then runs on an anonymous account that holds only the learner data described below, with the grown-up gate locked, until a grown-up signs in on that device and takes the account over, keeping what is on it.
A grown-up gate keeps the grown-up parts of the app on the grown-up side: signing in, recording pronunciations, publishing share links, turning on reminders, buying a subscription, and opening links that leave the app. A learner cannot do any of those unless a grown-up passes the gate first.
What we collect
| What | Examples | From | Why |
|---|---|---|---|
| Account details | Your email and name, from Sign in with Apple, Google, or email; nothing, on an anonymous account | Grown-up | To sign you in and keep your lists across devices |
| Profile details | A learner's name, avatar, and color, chosen by the grown-up | Grown-up | To tell profiles apart |
| Spelling lists | Words, definitions, and example sentences | Grown-up and learner | To practice from |
| Voice recordings | Pronunciations recorded in the grown-up's own voice | Grown-up | To play during practice |
| Practice records | Answers, scores, time spent, and the word mastery the app works out from them | Learner | To show progress and choose what to practice next |
| Device record | Push token, app version, language, the user id that registered the device, when the device was last seen, and when each profile last practiced on it | The device, whoever is using it | To send practice reminders, once a grown-up turns them on |
| Identifiers | A Firebase user id; an app-generated analytics id that is reset when the app is deleted; and a device id kept in the device's secure storage, which survives deleting the app | Everyone | To keep an account's data together, to count how the app is used, and to recognize the device |
| Purchase state | Whether the account has a subscription, from Apple through RevenueCat | Grown-up | To unlock what was bought |
| Crash and error reports | What the app was doing when it failed. Once a grown-up has passed the gate on an account, that account's user id is attached to its crash reports and analytics events from then on | Everyone | To fix bugs |
We never collect an advertising identifier, precise location, screen recordings, contacts, or photos. From a learner, the app collects only what the table marks as coming from a learner, from everyone, or from the device: practice records, words added to a list, identifiers, the device record, and crash reports. Practicing is never conditioned on giving up anything more.
What a learner's use creates
A learner's practice creates practice records: which words were answered, how, how long it took, and the word mastery the app works out from them. If a learner adds a word to a list, the word is stored with the list and appears in any share link a grown-up later publishes from it. The app keeps the identifiers and the device record above so the profile's data stays together and reminders can reach the device, and sends a crash report if the app fails. That is all, and it is used only to run the app, never for advertising.
We need your agreement to this before a learner uses Spell It on a profile under your account. If you do not agree, do not create a profile for the learner, and nothing is collected on your account for them. You can withdraw at any time by deleting a profile or the account, which deletes the data on the schedule below. A learner who opens Spell It with no grown-up present instead uses a separate anonymous account, which collects the same learner data on its own, with no grown-up asked, until a grown-up signs in and takes it over. The short version of this section is the Notice to Grown-ups.
Who else sees data
Spell It runs on services from other companies. Each one receives only what its job needs.
| Service | What it does for Spell It | What it receives |
|---|---|---|
| Google Firebase | Sign-in, database, file storage, analytics, crash reports, remote settings | Account, profile, list, recording, practice, device, and crash data; analytics events with no advertising identifier |
| Apple | Sign in with Apple, subscriptions | A sign-in token; purchase receipts |
| Sign in with Google | A sign-in token | |
| RevenueCat | Subscription state | The Apple receipt and the account id |
| Sentry | Error reports | Stack traces and the device model; IP addresses are not stored |
| OpenAI | Spoken pronunciations for words that have no recording | The word to be spoken and a fixed instruction to the voice; no account or device information |
We do not sell data, we do not use it for advertising, and we do not share it with anyone else, except with people who hold a share link, as described next.
Share links
Publishing a share link makes a copy of the list, and of any recordings on it, that anyone with the link can open without an account. Recordings on shared lists are the grown-up's voice. A learner cannot publish a share link, but words a learner has added to the list are part of the copy, so anyone with the link can see them. Each time the link is opened, its one-year clock resets. A published copy cannot be taken back from the app; it is removed a year after the link was last opened, or sooner if you email us and ask.
How long we keep it
Nothing is kept indefinitely. Each row is kept only as long as the app needs it for the purpose named in the table above, and each has a way of ending. Profile and account data lasts as long as the profile or account it belongs to, and ends when that is deleted.
| Data | Kept | Deleted by |
|---|---|---|
| Profiles in Recently Deleted | 30 days after archiving | A daily job |
| Practice records, mastery, and hidden words | For the life of the profile | Deleting the profile |
| Spelling lists and recordings | For the life of the account | Deleting the account |
| Device registrations for reminders | 180 days after the device was last seen | A daily job |
| Shared lists and their audio | 1 year after the link was last opened | The share's expiry, then a job that removes the audio |
| Analytics events | User-level data for 2 months; standard reports are aggregated and carry no user-level data | Google Analytics' data retention setting |
| Crash and error reports | 90 days | Crashlytics' and Sentry's defaults |
| Audio cached on the device | For the life of the list on that device | The app, when the list is deleted or the recording replaced |
Deleted recordings and other stored files stay recoverable to us for seven days, so a mistaken deletion can be undone in that window; database records are deleted outright. After that window they are gone.
Your rights
As the account holder you can review, delete, and refuse further collection of the data under your account.
- Delete a profile. Manage Profiles, then archive the profile. It sits in Recently Deleted for 30 days, where it can be restored; after that it and its practice records are gone.
- Delete the account. Settings, then Delete account. This removes every profile, list, recording, and reminder registration, and the account itself. A recording already published through a share link is the one exception: that copy follows the share's own year.
- Get a copy, or stop collection. Email hello@brogan.io from the email address on the account. We check that the request comes from that address, and reply within 30 days with a copy of the account's data, or confirm that collection has stopped. A copy you can download from inside the app is coming; this page will change when it does.
Schools
A teacher who uses Spell It with students confirms that the school has authorized it for educational use, that the data is used only for that purpose, and that the school can review and delete it on the same terms as any account holder.
Changes
When this policy changes in a way that matters, we say so in the app and by email to account holders. The "Last changed" line at the top moves with every edit.