Privacy Policy
Last Updated: March 30, 2026
HatchBase ("we", "our", or "us") is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and protect personal data when you use the HatchBase app and related services.
1. Controller And Scope
HatchBase is the controller of the personal data described in this Privacy Policy for the HatchBase app and related support services. If you have questions about this Privacy Policy or your personal data, you can contact us at supprt@hatchbase.io.
2. Categories Of Personal Data We Collect
- Account Information: email address, display name, and authentication identifiers.
- Operational Data: birds, flocks, incubations, nursery records, breeding records, homesteading records, and other information you choose to enter.
- Financial Data: optional cost, sales, finance, and subscription-related records stored locally and, when sync is enabled, in Firebase.
- OCR Data: receipt images and extracted text when you use OCR-assisted scanning.
- Community Data: posts, comments, reports, moderation actions, and account-safety signals when Community features are enabled.
- Support And Diagnostic Data: support tickets, support messages, optional screenshots or attachments that you choose to submit for troubleshooting, and limited device/app diagnostics.
- Usage Data: crash, analytics, and performance data used to improve quality and reliability.
3. How We Use Personal Data And Our Legal Bases
- To provide the service: We use account and operational data to create your account, authenticate you, sync data, restore access after sign-in, and provide flock, incubation, nursery, finance, breeding, homesteading, community, and support features. Our legal basis is performance of a contract with you, or taking steps at your request before entering into a contract.
- To manage subscriptions and entitlements: We use subscription and billing-related data to verify purchases and unlock the correct
FREE,EXPERT, orPROfeatures. Our legal basis is performance of a contract and, where needed, compliance with legal obligations. - To operate optional features: If you choose to use OCR-assisted receipt capture, upload support attachments, enable optional app permissions, or rely on in-app guidance and forecasts, we process the related content to provide that feature. Depending on the feature and context, our legal basis is performance of a contract, your consent, or our legitimate interests in operating the service you requested.
- To keep the service safe and reliable: We use support, diagnostics, usage, moderation, and account-safety information to secure the app, prevent abuse, investigate incidents, enforce our terms, moderate community features, and improve reliability and performance. Our legal basis is our legitimate interests in protecting users and operating a secure service.
- To comply with law: We may process and retain certain records where required for accounting, tax, consumer, fraud-prevention, security, or other legal compliance purposes. Our legal basis is compliance with legal obligations.
4. Sources Of Personal Data
We collect personal data directly from you when you create an account, use the app, submit support requests, upload content, or interact with optional features. We may also receive limited data from third parties you choose to use with HatchBase, such as authentication providers, app-store billing providers, and community reports or moderation inputs generated by other users.
5. Recipients, Processors, And International Transfers
Your data may be processed by service providers that help us operate HatchBase, such as hosting, authentication, database, storage, analytics, crash reporting, support, and billing providers. These providers process data on our behalf or as independent controllers where their own terms require it.
We currently use Google Firebase services, including Authentication, Firestore, and where applicable Firebase Storage for uploaded support evidence such as screenshots. Subscription and billing events may also be processed through billing providers such as Google Play and, where applicable, supported web billing processors.
Access to user data is restricted by role:
- Users can access their own account and content.
- Community Admins can access community content and reports needed for moderation.
- System Admins can access operational and administrative data needed to operate the service.
- Developers may access operational data for debugging, testing, incident response, and support.
We do not sell your personal data to third parties.
Some of our providers may process data outside the EU or EEA. Where that happens, we aim to rely on a lawful transfer mechanism that is available for the relevant transfer, such as an adequacy decision or contractual safeguards required under applicable data protection law.
6. Retention
We retain personal data for as long as needed to provide the service, maintain your account, comply with legal obligations, resolve disputes, enforce agreements, and maintain security or abuse-prevention records.
- Account and core app data is generally retained while your account remains active.
- Support records, diagnostics, moderation records, and security logs may be retained for a reasonable period after the related issue or event so that we can respond to disputes, abuse, and recurring incidents.
- Billing, accounting, and compliance records may be retained for longer where required by applicable law or legitimate recordkeeping needs.
7. Your Rights And Choices
Subject to applicable law, you may have the right to request access to your personal data, rectification of inaccurate data, erasure, restriction of processing, objection to certain processing, and data portability. Where we rely on consent, you may withdraw that consent at any time for future processing.
You can review, export, or request deletion of your account and associated data through the app where available or by contacting support. You can also manage optional permissions and settings exposed by the app.
You may also have the right to lodge a complaint with your local data protection supervisory authority in the EU or EEA, including in the Member State of your habitual residence, place of work, or the place of the alleged infringement.
8. Required And Optional Data
Some personal data is required for account creation, authentication, syncing, subscription verification, and core app functionality. If you do not provide required data, some parts of HatchBase may not work or may not be available to you. Other information is optional and depends on the features you choose to use.
9. Automated Decision-Making
We do not use solely automated decision-making or profiling that produces legal effects concerning you or similarly significantly affects you within the meaning of applicable data protection law. Guidance, forecasts, and predictions shown in the app are assistive decision-support outputs only and may not account for every biological, genetic, husbandry, environmental, or market variable.
10. Updates
This Privacy Policy may be updated from time to time. Material changes may be reflected in updated website or in-app legal content. Your continued use of HatchBase after an update may constitute acceptance of the revised policy where permitted by law.
11. Contact Us
If you have any questions about this Privacy Policy or your personal data, please contact us at supprt@hatchbase.io.