Privacy policy
Effective October 3, 2026.
Operator: Jerod Flores.
Support and privacy contact: lookiedookiesupport@gmail.com.
Lookie Dookie helps people find and review bathrooms, beginning with a pilot around Fresno and Kerman. This policy describes the current app. Future service changes, including automated photo screening or another sign-in provider, must be reflected in the published policy before they are enabled.
Information used by the app
Account information. If you sign in, Supabase handles your email address, account identifier, profile display name, account role and status, and authentication records. These let the app identify your account, maintain your sign-in, control submission/moderation access, and protect private information. The app saves your signed-in session in the iPhone’s Keychain. Browsing approved listings does not require an account.
Shared contributions. The service stores submitted bathroom names, addresses and coordinates, access details, reviews and 1–5 💩 ratings, chosen photos and captions, submission status, dates, and moderation records. These support the shared map, reviews, approval process, and content accuracy.
Reports and blocks. Reports include the item reported, your explanation, account identifier, status, and administrator response. They support moderation and are available to the reporting account and administrators. Your contributor block list is private to your account and controls which reviews and photos you see. Blocking does not change the bathroom’s overall rating or remove content for other users.
Location and nearby searches. My Location requests permission while using the app to find your position. Nearby searches send the map’s center coordinates to Supabase, including your current position when searching there. Submitted bathroom coordinates are stored with the listing and become public after approval. The app does not request background location access. You can browse by moving the map without granting location permission.
Selected photos. You choose an image using the system photo picker. Shared uploads are resized and converted to a new JPEG without the source GPS and camera metadata. This does not remove information visible in the picture, such as faces, reflections, names, or signs. Uploaded photos are private while awaiting administrator approval. Automatic nudity screening is not currently connected; administrators manually review submissions.
On-device information. Local practice drafts, reviews, photo drafts, reports, and favorites are kept in the app’s device storage and are not automatically uploaded to the shared service. A device may retain a deletion request identifier and account identifier while checking completion of a deletion. Device backups are controlled by your backup settings. Sign-out and shared account deletion do not clear local practice content.
Service records. Online requests can generate service/security logs, such as network addresses, request paths, timestamps, account identifiers, and errors. Service providers handle these records to operate and secure their services. The current app does not include advertising features or a separate advertising-analytics SDK.
Support messages. If you email support, the mailbox receives your email address, message, and any attachments you choose to send. These are used to answer your request, troubleshoot the app, or handle a privacy concern.
Public and private content
Approved bathroom listings show their location and access details. Approved reviews show a display name, rating, comments, and date. Approved photos and captions are visible to other users. Your sign-in email is not part of these public feeds, but information you include in a comment, caption, or photo may become public.
Administrators can review submitted content before approval and review reports to investigate problems. Private pending/rejected submissions remain available to their submitter and authorized moderators. Do not submit someone’s private information or photograph anyone using a bathroom.
Services involved
- Supabase provides account authentication, the shared database, photo storage, and account-deletion processing.
- Apple Maps provides map display and handles directions when you open Apple Maps. Its requests and location handling follow Apple Maps privacy information.
- Google Gmail receives support emails sent to the designated mailbox. Google’s handling of email service data is described in its privacy policy.
- Cloudflare hosts the support and privacy website. Visiting these pages can generate hosting request/security records, such as a network address and timestamp. Cloudflare’s handling of hosting data is described in its privacy policy. The pages do not include an advertising or analytics script, a contact form, or an app sign-in form.
Opening directions or sending an email uses the destination service. Services may process information in locations other than where you live; this policy does not promise that every provider keeps every record only in California.
Your choices
Browse without an account. Change location permission in your iPhone’s app settings, or move the map manually. Choose whether to submit a photo and what information to include in contributions. Sign out through Account. Manage personal contributor blocks in Account → Blocked people.
Contact support for help with access, correction, removal, or another privacy request. Identity verification may be needed before private account information is disclosed or changed. Do not email passwords or sign-in links.
Retention and deletion
The current shared service keeps account and contribution records until they are removed through account deletion or other authorized maintenance. Rejected submissions may remain available for correction or review. Hiding an item from public view is not the same as deleting its underlying record or photo file.
Account → Delete account shows the scope before confirmation. The deletion process removes the shared account, profile, its associated submissions, reports, blocks, and photo files. It also removes bathroom listings submitted by that account and all reviews/photos attached to those listings, including other people’s contributions. A recent sign-in may be needed to start deletion. Read the impact preview carefully. Local practice content remains on the device.
After completion, a server receipt may retain a random request identifier and timestamps without the deleted account identifier, so the app can confirm a completed request. Service logs have their own retention settings. Where backups exist, account deletion from the active service does not promise an immediate purge of every backup copy.
Support conversations are kept while the request is unresolved. Resolved conversations are kept for up to 12 months after resolution, then deleted from the support mailbox. Gmail’s Trash and provider retention may keep copies after mailbox deletion; see Gmail’s deletion information.
Supabase service-log retention depends on the applicable plan and settings; see Supabase logs. Provider backups, where available, follow the provider’s plan and retention settings; see Supabase backups. No fixed backup retention period is promised by this app.
An incomplete account-deletion request may leave records or photo files pending until processing succeeds. The app does not treat the request as completed until the shared service confirms it. Reopen Account → Delete account to check or retry, or email support if it remains incomplete.
Policy changes and contact
We update this policy and its date when the app’s collection, providers, or privacy choices change. Send privacy questions to lookiedookiesupport@gmail.com.