Scope and who this applies to
This policy applies to the WalkMint mobile app, the WalkMint public website, and related support interactions.
Information processed by the app
Depending on the features you use, WalkMint may process account identifiers, name, email address, profile photo URL, sign-in provider details, country or city you provide, device and app details, notification tokens and preferences, activity and step data you permit, Energy and claim history, task and engagement history, referral status, reward request information, and support messages.
We may also process security, verification, crash, performance, analytics, advertising, and anti-fraud signals needed to operate and protect the service.
Website support and deletion requests
If you use the support form, you provide your name, email address, request topic, message, and, optionally, your app version. If you use the deletion form, you provide your name, email address, request type, device platform, confirmation of the request, and, optionally, your WalkMint user ID.
The forms also submit an anti-spam verification token when Cloudflare Turnstile is configured. Request handling may process limited request and network information, such as IP-related headers and browser or device information, where needed to deliver the request, prevent abuse, maintain security, or investigate delivery problems.
Referral links on the website
A WalkMint referral page reads the referral code from its URL, checks its format locally, and may use basic browser or device information to try opening the app or show an appropriate store option. It does not display the referrer's name, email address, or user ID. Where a referral-link provider is configured, opening that link may provide the referral code and standard request or device information to that provider.
How we use information
We use information to provide account access; display activity progress; determine eligibility for applicable features; operate Energy, task, and reward flows; deliver notifications you enable; prevent abuse; troubleshoot technical issues; improve reliability; respond to support or deletion requests; verify request or account ownership where required; maintain security; and comply with applicable obligations.
Health and activity data
WalkMint reads permitted step activity to show progress and verify eligible Energy claims. See How WalkMint uses activity data for more detail. We do not use WalkMint as a medical service or provide medical advice.
Service providers and disclosures
Our public website is hosted using Firebase Hosting. Website support and account-deletion submissions may be processed through Firebase Cloud Functions. Cloudflare Turnstile may be used for abuse prevention, and an email-delivery provider such as Resend may process request delivery. Those providers may process the information and limited technical data needed to provide, secure, and troubleshoot their services.
The WalkMint app uses service providers for authentication, cloud infrastructure, server-side functionality, analytics, crash reporting, notifications, app security, health-platform connections, and advertising. These may include Google Firebase services, Google Mobile Ads / AdMob, Google Sign-In, Sign in with Apple, Apple Health / HealthKit, and Android Health Connect where enabled.
WalkMint does not sell personal information in the ordinary meaning of the term. We may disclose information where required by law or where reasonably necessary to protect users, requests, and the service. App advertising and analytics technologies may process device-related information under their own policies.
Website analytics, cookies, and browser storage
The current public website source does not include a first-party analytics tracker and does not use local storage or session storage for its support, deletion, or referral pages. Cloudflare Turnstile, the hosting provider, and linked app-store or referral services may process technical information or use their own technologies when you interact with them, under their respective policies.
Retention and account deletion
Current in-app deletion starts from Profile → Delete and anonymize account. The current implementation deletes certain personal-data subcollections, removes or nulls core profile contact fields, anonymizes the main account record, and blocks future earning or redeeming.
Some server-side records may be retained in de-identified or restricted form for security, fraud prevention, accounting, dispute handling, legal compliance, and system integrity. Current implementation also retains the Firebase authentication identity and certain reward/activity ledgers.
Website support and deletion-request information is retained only for as long as reasonably necessary to process the request, meet security requirements, resolve disputes, or comply with applicable obligations.
Use Delete your account for the full request path.
Your choices
You can manage health permissions in device settings, notification permissions in the app or device settings, and account deletion through the app. You may contact us for privacy questions at pjappsstudio@gmail.com.
Security
We use server-side verification and technical safeguards for sensitive account and reward actions. No system can guarantee absolute security; protect your device, email account, and sign-in credentials.
Policy changes
We may update this policy when the product, website, providers, or applicable requirements change. Material changes will be reflected by an updated date and, where appropriate, an in-app notice.