Privacy Policy
Last updated: February 2026
PeakLevs ("we", "our", "us") is committed to protecting your personal data. This Privacy Policy explains how we collect, use, store, and share your information when you use the PeakLevs mobile application and website.
1. Information We Collect
Information you provide directly:
- Email address and username (during registration)
- Display name and profile photo (optional)
- Action logs, including descriptions, categories, and timestamps
- Proof photos attached to action logs
- Communications with us (support emails, feedback)
Information collected automatically:
- Device type, operating system, and version
- App version and usage analytics (screens viewed, features used)
- IP address (for security and fraud prevention)
- Crash reports and performance data
We do not collect location data, contacts, or any data from other applications on your device.
2. How We Use Your Information
We use the information we collect to:
- Provide, maintain, and improve the PeakLevs service
- Calculate and display your Levs score, tier, and momentum
- Display your profile and actions on the community feed and leaderboards
- Send important account notifications (security alerts, policy changes)
- Respond to your support requests and feedback
- Detect and prevent fraud, abuse, and policy violations
- Analyse aggregate usage patterns to improve the service
3. Legal Basis for Processing (GDPR)
If you are in the UK or EEA, we process your data based on:
- Contract: Processing necessary to provide the PeakLevs service to you
- Legitimate interests: Improving the service, preventing fraud, and ensuring platform safety
- Consent: Where you have opted in to receive marketing communications
- Legal obligation: Where required to comply with applicable law
4. Data Sharing
We do not sell your personal data. We may share data with:
- Service providers: Hosting, cloud storage, and analytics providers that help us operate the service. These providers are contractually bound to protect your data.
- Other users: Your display name, Levs score, tier, and actions you post to the community feed are visible to other PeakLevs users. Proof photos are visible only within your action posts.
- Law enforcement: Where we are legally required to disclose data in response to valid legal requests.
We do not share your data with third-party advertisers.
5. Data Storage and Security
Your data is stored on secure, encrypted servers. We implement industry-standard security measures including:
- Encryption in transit (TLS/SSL)
- Encryption at rest for sensitive data
- Access controls and authentication for internal systems
- Regular security reviews and updates
- JWT-based authentication with refresh token rotation
While we take reasonable steps to protect your data, no method of electronic transmission or storage is 100% secure. We cannot guarantee absolute security.
6. Your Rights
Depending on your jurisdiction, you may have the following rights:
- Access: Request a copy of the personal data we hold about you
- Rectification: Request correction of inaccurate personal data
- Erasure: Request deletion of your personal data ("right to be forgotten")
- Portability: Request your data in a portable, machine-readable format
- Restriction: Request that we limit processing of your data
- Objection: Object to processing based on legitimate interests
- Withdraw consent: Where processing is based on consent, withdraw at any time
To exercise any of these rights, contact us at support@peaklevs.com. We will respond within 30 days.
7. Data Retention
We retain your personal data for as long as your account is active. If you delete your account:
- Personal data (email, username, profile) is deleted within 30 days
- Action logs and proof photos are permanently deleted
- Anonymised, aggregated analytics data may be retained (this cannot identify you)
- Financial records may be retained as required by applicable tax and accounting laws
8. Children's Privacy
PeakLevs is not intended for children under 13 years of age (or 16 in the UK/EEA). We do not knowingly collect personal data from children below these ages. If we become aware that we have collected data from a child below the applicable age, we will delete that data promptly. If you believe a child has provided us with personal data, please contact us at support@peaklevs.com.
9. Cookies and Tracking
Our website uses essential cookies for basic functionality (session management, preferences). We use privacy-respecting analytics to understand how users interact with our website. We do not use third-party advertising trackers, social media tracking pixels, or cross-site tracking cookies.
10. International Data Transfers
Your data may be processed in countries outside the UK or EEA. Where this occurs, we ensure appropriate safeguards are in place, including Standard Contractual Clauses or equivalent mechanisms approved by relevant data protection authorities.
11. Third-Party Services
PeakLevs integrates with the following third-party services:
- Apple App Store / Google Play Store: For app distribution and in-app purchases
- Cloud hosting provider: For data storage and service delivery
Each of these services has its own privacy policy. We encourage you to review them.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, legal requirements, or the functionality of the service. We will notify you of significant changes via email or in-app notification. The "Last updated" date at the top of this page indicates when the policy was last revised.
13. Data Controller
For the purposes of GDPR and UK data protection law, the data controller is:
PeakLevs
Email: support@peaklevs.com
14. Contact Us
If you have any questions about this Privacy Policy or how we handle your data, please contact us at:
If you are not satisfied with our response, you have the right to lodge a complaint with the Information Commissioner's Office (ICO) in the UK or your local data protection authority.