Kip Privacy Policy
Last updated 13 July 2026
Kip is a social running app published by WenInDoubt LLC ("we", "us"). This policy explains what Kip collects, why, and who it is shared with. Kip is for adults only (18+). We do not sell your data, we do not show ads, and we do not track you across other companies' apps or websites.
What we collect
| Data | Why |
|---|---|
| Email address | To create and sign in to your account. Sign-in is passwordless: we email you a one-time code, or you use Sign in with Apple. |
| Name | If you use Sign in with Apple, Apple may share your name on first sign-in. We store it to pre-fill your display name. You can edit or replace it at any time. |
| Profile details | Your username, display name, bio, usual pace, and optional gender — all provided by you and shown to other runners. |
| Photos | Your profile picture and any cover photo you upload for a run. Some run covers are stock images from Pexels rather than your own photos. |
| Precise location | To show runs near you, place the meetup point and route of runs you host, and — only if you start a live share — broadcast your position during a run, including while Kip is in the background or your phone is locked. |
| Apple Health workout route (iOS, optional) | Kip reads recent running, walking, and hiking workout details and GPS tracks on your device. If you select one, its route coordinates and altitudes are uploaded as the route for the run you host. Kip never writes to Apple Health. |
| Your content | Run titles and descriptions, chat messages, and check-ins. Visible to the other people on that run. |
| Diagnostics | Crash reports, performance traces, and app/device context, so we can find and fix bugs. Sentry associates these events with a random app-installation identifier. |
Location, specifically
Kip first requests foreground location to show nearby runs and help you choose meetup points. That nearby-search position is not stored on our servers. If you choose to start a live share, Kip also asks for background location. If you grant it, Kip can keep receiving and broadcasting your location while the app is in the background or your phone is locked. If you decline it, sharing is limited to foreground updates.
A live share creates a secret link. Anyone holding that link can see your latest position without signing in, so only send it to people you trust. Sharing stops when you tap Stop sharing or when the run's calculated end time passes. The link no longer returns coordinates after either event.
While a share is active, Kip stores its latest latitude, longitude, accuracy, and update time on our servers, replacing the previous current position. The share record and its last position remain until the associated run or account is deleted. Failed updates may be queued temporarily on your device and are removed after they are sent.
Apple Health, specifically
On iOS, you can optionally grant read-only access to recent running, walking, and hiking workouts and their recorded routes. Kip reads activity type, start and end time, distance, duration, indoor status, elevation, and GPS coordinates on your device to display the picker. Those details stay on the device unless you select a workout. When selected, the GPS coordinates and altitudes are converted into the route for the run you host, uploaded to our backend, and kept with that run until the run or your account is deleted. Kip does not write any data to Apple Health.
Who we share it with
We do not sell your personal information, and we do not share it with advertisers or data brokers. We use these service providers to run Kip:
| Provider | What it receives |
|---|---|
| Supabase | Hosts our database, authentication, and photo storage. |
| Google (Gemini) | Chat messages, profile text, cover-photo search terms, and cover-image bytes are checked for harmful content before they are sent or shown. |
| Sentry | Crash, performance, and app/device diagnostics. Sentry adds a random app-installation identifier. Kip disables automatic default PII collection and does not deliberately attach profile fields as Sentry user context; captured exceptions may include underlying SDK/server error text. |
| Expo (EAS) | App updates and basic launch/performance telemetry. |
| Apple & Google | Push notification delivery, and Apple Maps / Google Maps for map display. |
| Pexels | Stock cover-photo search. Receives your search terms, not your identity. |
We may also disclose information if required by law, or to protect the safety of our users.
What other people can see
Your username, display name, bio, pace, gender (if you set it), and profile picture are visible to other Kip users. Runs you host — including their meetup point and route — are visible to people browsing the map. Chat messages are visible to everyone on that run. Profile pictures and run cover photos are stored at public web addresses: anyone who has the exact link to an image can open it, even without a Kip account.
Deleting your data
You can delete your account from Settings → Delete account in the app. This permanently removes your profile, runs, RSVPs, messages, photos, and check-ins from our servers. It cannot be undone. You can also export a copy of your data from Settings → Export my data.
Backups and provider logs may retain residual copies for a short period before being overwritten. Diagnostic data is retained by Sentry on its own schedule and remains associated with its random app-installation identifier. Kip does not deliberately link that identifier to your account, but a captured exception may include underlying SDK/server error details.
Safety and moderation
Kip is a tool for meeting strangers in person to run. Chat messages and profile text are screened before they send, and harmful content is blocked. You can report or block any user from their profile or from a run. Reports are reviewed by our moderators, and we keep a record of them.
Adults only
Kip is intended for people aged 18 and over. We do not knowingly collect information from children. If you believe a child has created an account, contact us and we will remove it.
Security
Data is encrypted in transit. Access to your data is restricted at the database level so that you can only read and write your own records and the runs you take part in.
Your rights
You can access, correct, export, or delete your data directly in the app. If you would rather we do it, or you have any other request about your information, email us and we will respond.
Changes
If we change this policy we will update the date at the top of this page, and — for material changes — tell you in the app.
Contact
WenInDoubt LLC — jeffrey@wenindoubt.com