Privacy Policy
Last updated: 12 September 2026
This privacy policy describes how Mindrink handles information in the Mindrink mobile application and on the public website at mindrink.me. The website uses no advertising or analytics cookies. Privacy-minimized website analytics is described below and can be turned off at any time.
Privacy contact: hello@mindrink.me
Who we are
Mindrink is an independent, non-commercial project. It is not a company product, and it is not funded by selling user data.
The app does not use accounts. Drink history is not stored on a Mindrink server.
Information stored only on your device
The following is stored locally on your device and is not uploaded to Mindrink servers:
- drink records, dry days, reflections, and goals
- settings, including limits and guideline profile
- backup or export files you create
Mindrink cannot access this information. If you export or back up a file, you choose where it is saved. Mindrink does not receive that file.
If you enable reminders, the app uses the device notification permission. Reminder content remains on the device.
Information we collect
Analytics. Analytics is on by default and can be turned off in Data Management. While it is on, we send anonymous usage data to Amplitude (European Union). This may include app version, device class, operating system, screen size, country derived from device locale, language, theme, whether reminders are enabled, and the guideline profile you selected. It does not include drink history, reflections, notes, or goals. We do not collect advertising identifiers or IP address for analytics.
Website analytics. Mindrink sends a small set of explicit aggregate events to PostHog Cloud EU: page views, clicks to another page on mindrink.me, calculator interactions, visibility of the calculator’s Explore Mindrink button, and clicks on Mindrink’s app-store buttons on home and comparison pages. Events may include only the language, normalized page paths, calculator type, page family, CTA location, and store (App Store or Google Play) where relevant. They never include link text, referrers, drink inputs, volume, ABV, quantity, calculated results, totals, health information, free text, query parameters, or complete URLs. PostHog uses an ephemeral identifier in page memory only; no identifier persists to the next page, so full journeys are not stitched to one visitor. Autocapture, person profiles, session replay, heatmaps, performance capture, GeoIP enrichment, and persistent PostHog storage are disabled. Global Privacy Control and Do Not Track are respected automatically. Only an opt-out preference is stored if you turn website analytics off below.
Crash and error reports. We send technical crash and error reports to Sentry so we can diagnose failures. These reports may include stack traces and diagnostic metadata. They are configured not to include drink history, screenshots, or default personal identifiers.
Support communications. If you email us or submit feedback through Tally, we receive the content you send.
We do not sell personal information. We do not use data for advertising.
How we use information
- Local app data is used only on your device to provide the app.
- Analytics is used to understand aggregate app usage and improve Mindrink.
- Crash reports are used to fix bugs and maintain reliability.
- Support messages are used to respond to you.
Sharing
We share information only with the service providers that process it on our behalf:
- Amplitude, for optional analytics (EU)
- PostHog Cloud EU, for privacy-minimized website analytics
- Sentry, for crash and error diagnostics
- Tally, for feedback you choose to submit
We do not share drink history with anyone, because we do not receive it.
Data retention
- Drink records, reflections, goals, and local settings. Mindrink does not store or retain this data on our servers. It is retained only on your device until you delete it in the app or uninstall the app.
- Analytics. Amplitude retains anonymous usage events for as long as needed to analyze usage and improve the app, and then deletes them in accordance with Amplitude’s retention settings. Disabling analytics stops further collection.
- Website analytics. PostHog website events are retained for no longer than 90 days. Turning website analytics off stops further collection in that browser.
- Crash and error reports. Sentry retains diagnostic reports for a limited period necessary to investigate and fix issues, and then deletes them in accordance with Sentry’s retention settings.
- Emails and feedback. We retain these communications for as long as needed to handle your request, and delete them when they are no longer required.
Because analytics and crash reports are not tied to an account or persistent visitor identifier, we cannot identify or delete a specific person’s Amplitude, PostHog, or Sentry data.
Deletion
The app does not create a Mindrink account.
You may delete local app data at any time in Data Management. Uninstalling the app also deletes local app data on that device.
To request deletion of an email or feedback message you sent us, contact hello@mindrink.me.
We cannot delete Amplitude, PostHog, or Sentry data for a specific person. That data is not tied to an account or persistent visitor identifier.
Security
Local drink data is stored on the device. Android backup for the app is disabled, so uninstalling the app removes that local data. Analytics and crash reporting are configured to exclude drink history and to limit identifiers. Amplitude analytics is sent to Amplitude’s EU endpoint, without IP address or advertising ID. Website analytics is sent to PostHog’s EU endpoint with IP capture and GeoIP enrichment disabled; the network connection still necessarily exposes the request IP to PostHog when it arrives.
Children
Mindrink is intended for people of legal drinking age in the country where they live. It is not directed at children.
Changes
We may update this privacy policy from time to time. The “Last updated” date above will change when we do.