Plain-language policy
Privacy
ElseToo is designed around a simple boundary: people can see shared words and exact counts, but not the identities behind them.
Who operates ElseToo
ElseToo is operated by Anchor Typing Inc. This policy covers the ElseToo mobile app, website, and related services.
“No public identity” does not mean that no private data is processed. We use a private email account and technical infrastructure to operate the service, prevent abuse, and let you control your account. Your email and account identifier are not shown with a bubble.
Information we process
Account information
If you add or join a bubble, we process your email address, a private account identifier, sign-in codes and session information. People can browse public editions without creating an account.
What you contribute
- The bubbles you join during an open UTC day.
- New wording you submit while it is privately checked for safety and possible merging.
- A preset reason code if you report a bubble.
Approved bubble wording and the exact aggregate number of people in each bubble are public. We do not publish who joined it.
Technical information
Our infrastructure providers may process IP address, request time, browser or device information, security events, and diagnostic logs needed to deliver and protect the service. The app also stores a small on-device flag recording whether its introduction has been seen.
What the first release does not collect
ElseToo has no public name, profile, follower graph, direct messages, precise-location feature, advertising profile, or third-party advertising tracker.
Why we use information
- To send a sign-in code and maintain your private session.
- To count each participant once per bubble and UTC edition.
- To check, merge, approve, reject, or remove wording under our Community Rules.
- To investigate reports, prevent abuse, secure the service, and provide support.
- To comply with applicable law and enforce our Terms.
We do not sell personal information and do not use it for third-party behavioural advertising.
How long information remains
- Daily editions: approved labels and aggregate counts are intended to remain as a permanent public archive.
- Participation links: the private account link behind a check-in is severed after the edition locks plus a 72-hour recovery window. The de-identified count remains.
- New wording: rejected raw wording is scrubbed when a decision is recorded. Unresolved pending wording expires within 72 hours.
- Account and security records: retained while your account is active or as reasonably needed for security, legal compliance, dispute resolution, and abuse prevention.
Deletion may take additional time to disappear from encrypted provider backups, which rotate on the provider’s normal schedule and are not used to restore an individual deleted account.
Service providers
We use service providers to host the database and authentication system, deliver email codes, prevent automated sign-in abuse, and assist with safety moderation. They process information for us under their own security and privacy commitments. Our security challenge provider may process IP address, device or browser signals, request information, and a short-lived device identifier to distinguish people from automated traffic. New wording may be sent to a moderation provider only to classify safety and semantic meaning; we minimize the accompanying data and do not send your email with the wording.
Information may be processed outside your province, state, or country where these providers operate. Local authorities may be able to access it under the laws of those locations.
Your choices
- Browse without an account.
- Leave a bubble again while its UTC day remains open.
- Delete your account from the Account panel in the app.
- Contact us to request access, correction, or help with deletion.
Deleting your account removes the account and private data linked to it. Counts already incorporated into a locked public edition remain only as de-identified aggregate history.
Age and safety
The first release is for people aged 18 or older. We do not knowingly collect account information from children. If you believe a child has provided information, contact us so we can investigate and remove it.
Security and changes
We use access controls, private-by-default moderation, encrypted transport, rate limits, and restricted administrative tools. No system can promise absolute security.
We may update this policy as ElseToo changes. We will change the effective date and provide additional notice when a change is material.
Contact
Questions or privacy requests can be sent to support@elsetoo.com. Please do not email a sign-in code, password, or sensitive details that are not necessary to handle your request.