Back to home

Privacy Policy

Your data powers your Taller AI plan. This page explains what we collect, why we need it, who processes it and how you can take it back.

Last updated: April 2026

1. Who we are

Taller AI is an iOS application operated by Alex Alonso (the "Service", "we", "us"). For any privacy-related question you can reach us at hello@taller-ai.app.

This Privacy Policy describes how the Service collects, uses and shares your personal information when you use the Taller AI mobile app or this marketing website. It complies with the GDPR, the CCPA and Apple's App Store privacy requirements.

2. Data we collect

Account data: when you first open the app we create an anonymous Supabase session tied to a random user identifier. If you link your account with Sign in with Apple or Google we additionally receive your email, name (optional) and a provider-scoped unique ID.

Questionnaire and health inputs: age, date of birth, sex, current and target height, current weight, parents' heights, foot size, self-reported sleep, nutrition, posture habits and facial-hair status. This is the minimum data needed to produce your prediction and plan.

Progress data: routine completions, workout and nutrition day progress, streak counts, height updates over time.

Coach data: the messages you send to Kai, the AI coach, together with the model's responses. Messages are stored to keep a usable conversation history on your device and on our servers.

Community data: posts, comments, likes, group memberships, group messages and optional voice notes you publish inside the in-app community.

Media: an optional profile avatar and, for groups, an optional cover photo you upload yourself.

Purchase data: your subscription status, current plan (weekly, yearly with 3-day trial, lifetime) and purchase history, received from RevenueCat. We never see your credit card number.

Device data: approximate OS version, device language and anonymous diagnostics (crash traces, non-fatal errors) used to keep the app reliable.

3. How we use your data

Provide the Service: generate your height prediction, render your personal report, run your 90-day program, keep your streaks and sync your widget.

Power the AI coach: your messages are forwarded to the AI provider on-demand to generate Kai's replies. We never train external models with your data.

Operate the community: display your profile, posts and comments to other users you interact with.

Process subscriptions: verify your entitlement through RevenueCat, unlock Pro features and handle trials.

Keep the app secure and reliable: detect abuse, moderate community content, fix bugs and improve performance.

Communicate with you: respond to your support requests and send service-related notices.

4. Legal bases (GDPR)

We rely on (i) your consent when you sign in and voluntarily share questionnaire data, (ii) contractual necessity to deliver the Service you subscribed to, and (iii) our legitimate interest in keeping the Service safe and improving it.

5. Who we share data with

Supabase (Supabase Inc., EU region eu-central-2): hosts the database and authentication backend. Data is protected with Row Level Security — users can only read and write their own rows.

Apple: Sign in with Apple flows, Apple Push Notifications and App Store subscription handling.

Google: only if you choose "Continue with Google" for authentication.

RevenueCat: subscription management, entitlement checks and purchase restoration.

AI providers (Google Gemini, Pollinations, Groq): your coach messages are forwarded to whichever provider is currently active to generate a response. No long-term storage by these providers is requested on our side.

Vercel: hosts this marketing website. Vercel processes standard web server logs (IP, user agent).

We never sell your personal data.

6. International transfers

Our primary database lives in the EU. Some sub-processors listed above are based in the United States. Transfers are protected by the European Commission's Standard Contractual Clauses.

7. Data retention

We keep your data for as long as your account is active. When you delete your account from Settings, we erase your profile, questionnaire answers, progress, coach history and community content within 30 days. Anonymous aggregated metrics may be retained longer.

8. Your rights

You can access, correct, export and delete your personal data at any time from the in-app Settings screen, or by writing to hello@taller-ai.app.

If you live in the EU/EEA you additionally have the right to lodge a complaint with your local data protection authority.

If you live in California, you have the right to know what personal information we collect, to delete it, to opt out of sale (we do not sell), and to be free from discrimination for exercising these rights.

9. Security

All traffic between the app and our servers is encrypted with TLS 1.2 or higher. Credentials are stored in the device keychain via expo-secure-store. Database access is constrained by Row Level Security — no user can read another user's private data.

10. Children

Taller AI is rated 12+ on the App Store. We do not knowingly collect personal data from children under 13. If you believe a child under 13 has provided us personal data, contact hello@taller-ai.app and we will delete it.

11. Changes to this policy

We may update this Privacy Policy from time to time. The latest version will always be available at this URL, and the "last updated" date at the top will reflect the most recent change. Material changes will be announced inside the app.

12. Contact

Questions, complaints or requests: hello@taller-ai.app.