This Privacy Policy describes how the PRISM – Link in Bio Android application ("the App", "we", "us") collects, uses, and protects your information when you use it. By installing or using the App, you agree to the practices described below.
1. Summary
The App requires an account (email + password) to create and manage your Link in Bio page.
Your bio page, links, and appearance settings are stored on our secure cloud servers so your page is always accessible online.
We collect anonymous analytics (link clicks, page views, device type, referrer source) so you can understand how visitors interact with your page. We do not track individual visitors personally.
We do not sell your data to third parties. We do not show ads.
You can request full account deletion at any time from within the App or via the web form.
2. Information we collect
2.1 Account information
When you register, we collect your name, email address, and a hashed version of your password. Your email is used to log in, recover your account, and send you important service notifications.
2.2 Profile and page content
We store everything you enter into the App to build and display your bio page:
Display name, bio text, profile photo URL, username (your public page slug)
Social media handles (Instagram, Twitter/X, YouTube, TikTok, etc.)
Links you add — title, URL, icon, category, display order
When someone views your public bio page or clicks a link on it, we record an anonymous event that includes:
Which link was clicked (or that the page was viewed)
Device category (mobile / tablet / desktop) — derived from the visitor's User-Agent string
Referrer source (e.g. Instagram, direct) — from the HTTP Referer header
Date and approximate time of the event
No visitor identity is recorded. We do not store visitor IP addresses, names, accounts, or any other personally identifiable information about people who view your bio page.
2.4 Device and session information
When you log in to the App, we record the device model, OS version, and App version so you can review active sessions and revoke them if needed. We also store the date and time of your last activity per session.
3. How we use your information
To operate the service — serve your public bio page to visitors, authenticate you in the App, sync your content across devices.
To show you analytics — aggregate the anonymous click and view events so you can see performance data in your dashboard.
To send notifications — milestone alerts (e.g. "100 profile views"), weekly recaps, and important account notices. You can manage these in the App's notification settings.
To improve the product — aggregate, non-personal usage patterns help us understand which features to improve.
4. Data stored on our servers
The following data is stored in our cloud database (hosted on a secure server):
Your account credentials (email, hashed password)
Your bio page content and settings (see section 2.2)
Anonymous analytics events (see section 2.3)
Active session tokens — invalidated when you log out or revoke a session
Account deletion requests, if you submit one
5. Data stored on your device
The App stores a session token in Android local storage to keep you logged in between app launches. No other personal data is cached locally beyond what is shown on screen.
6. Your public bio page
Your bio page is publicly accessible at the URL associated with your chosen username. Anyone with the link can view your page without logging in. Do not put sensitive private information in your bio or link titles, as that content is publicly visible.
7. Sharing and disclosure
We do not sell, rent, or trade your personal information. We may disclose data only in these limited circumstances:
Service providers — third-party infrastructure (hosting, database) that operate under confidentiality agreements and are not permitted to use your data independently.
Legal requirements — if required by applicable law, regulation, or valid legal process.
Business transfer — in the event of a merger or acquisition, your data would transfer to the successor entity under the same protections.
8. Android permissions
The App declares the following permissions:
INTERNET — required to sync your bio page with our servers and load your analytics.
POST_NOTIFICATIONS — to deliver milestone and weekly-recap push notifications.
CAMERA / READ_MEDIA_IMAGES — only when you choose to upload a profile photo. The App uses the system camera or photo picker; the photo is uploaded to our server and not shared elsewhere.
The App does not request microphone, location, contacts, or SMS permissions.
9. Third-party services and libraries
Our backend API — a Laravel-based REST API hosted on our own server. All App-to-server communication uses HTTPS/TLS.
Google Play Services — used for push notification delivery (FCM). Google's privacy policy governs their handling of notification tokens.
Standard React Native libraries (navigation, UI, state management) — no third-party analytics or advertising SDKs included.
The App contains no advertising, third-party analytics, or crash-reporting SDKs.
10. Data retention and deletion
We retain your account data for as long as your account is active. You can request deletion at any time:
From the App — go to Settings → Account → Delete Account.
Upon approval (within 7 business days), your account, bio page, all links, analytics events, preferences, notifications, and session tokens are permanently deleted from our servers. This action is irreversible.
11. Children's privacy
The App is not directed at children under 13. We do not knowingly collect personal information from children under 13. If you believe a child has provided us personal data, please contact us and we will delete it promptly.
12. Data security
All communication between the App and our servers uses HTTPS/TLS. Passwords are hashed using bcrypt and never stored in plain text. Session tokens are revocable and expire on logout.
13. Changes to this policy
If we materially change this Privacy Policy, we will update the "Last updated" date at the top of this page. Continued use of the App after changes constitutes acceptance of the updated policy.