Privacy Policy

Last updated 4 June 2026

This policy explains what personal data Quack (“we”) collects when you build or host interactive decks, or join a session as a player, and the choices you have. We aim to collect as little as possible and we do not run advertising or third-party tracking.

Who we are

The data controller is <COMPANY>>, ,<REGISTERED>>, ,<COUNTRY>>. For any privacy question or to exercise your rights, contact ,[object Object],.</COUNTRY></REGISTERED></COMPANY>

What we collect

If you create a host account: your email address, display name, and (if you sign in with Google/Apple/Facebook) your profile photo; an account identifier; and the optional answers you give during onboarding (what you use Quack for, and how you heard about us). We also store the decks you build, including any images you upload.

When you run a live session: we store a record of the session (deck title, timestamps, player and slide counts) and each participant’s result (their chosen nickname, score, rank, and per-slide correctness/response time).

If you join a session as a player: you are signed in anonymously (no email or name) and choose a nickname for that session. Your answers, reactions, and any comments you send are processed live during the session; the host can see comments and pin one to the room.

If you use “Create with AI”: the topic and audience you type are sent to Google’s Gemini service to draft a deck (see sub-processors below).

Essential technical data: to keep you signed in and remember your session we store small items in your browser (see our Cookie Policy). We process limited connection data (such as IP address) only as needed to deliver and secure the service.

Why we use it, and our legal bases

  • To provide the service you asked for - building decks, running sessions, signing you in (contract).
  • To keep the service secure and working, and to keep a history of your sessions (legitimate interests).
  • To generate AI decks when you choose that feature (your request / contract).
  • Any future analytics would be used only with your consent - none is in use today.

Who we share it with

We do not sell your data. We use a small number of processors to run Quack, each bound by a data-processing agreement:

  • Google Cloud / Firebase (Google Ireland Ltd. / Google LLC) - Hosting, authentication, databases (Cloud Firestore and Realtime Database - the live database is in the EU, europe-west1), file storage, and serverless functions.
  • Google - Gemini (Generative Language API) - Generating draft slides from the topic and audience you type into “Create with AI”. Only that text is sent; it is not used to identify you.
  • Apple Inc. - “Sign in with Apple” - only if you choose that sign-in method.
  • Meta Platforms (Facebook) - “Continue with Facebook” login - only if you choose that sign-in method.

Please note: images you upload to a deck are stored so they can be shown on the big screen and are accessible to anyone who has the direct link. Don’t upload anything you wouldn’t want shared with your audience.

International transfers

Our providers are part of Google, which may process data outside the EEA. Where that happens, transfers are covered by the provider’s data-processing terms and EU Standard Contractual Clauses. Our live database runs in the EU (europe-west1).

How long we keep it

  • Live session data (answers, reactions, comments, scores) is deleted shortly after the session ends and automatically swept within hours.
  • Saved session history and results are kept for up to 12 months, then deleted automatically.
  • Your account and decks are kept until you delete your account.

Your rights

You can access, correct, export, delete, or object to the processing of your personal data, and withdraw consent at any time. Hosts can do this directly in the app:

  • Account settings → “Download my data” exports your profile, decks, and session history as a file.
  • Account settings → “Delete account” permanently erases your account, decks, uploaded images, and session history.
  • You can also delete an individual session’s stored results from its results page.

Players are anonymous and can’t sign in to self-serve, so to access or delete a player’s data email privacy@getquack.app with the session and nickname. You also have the right to complain to your supervisory authority (<YOUR>>).</YOUR>

Children

Quack is used in classrooms and similar settings. Hosts are responsible for obtaining any consent required to involve minors. <<STATE YOUR MINIMUM AGE / SCHOOL-CONSENT MODEL HERE>>.

Changes & contact

We’ll update this policy as the product evolves and revise the “last updated” date above. Questions? Email privacy@getquack.app.