Secret Gift — Draw Names · Last updated 13 September 2026
Secret Gift (“the app”) is published by Auralabs (“we”, “us”). This policy explains what the app collects, why, who it is shared with, and what control you have. It covers the iOS and Android apps and this website.
The app signs you in anonymously through Firebase Authentication the first time you open it. This creates a random user ID that identifies your device to our database. It is not linked to a name, an email address, a social profile or any other identity, and we cannot use it to contact you. Deleting and reinstalling the app produces a new anonymous ID, and the old one becomes orphaned.
This is data you type into the app. It is stored in Google Cloud Firestore.
| What | Why |
|---|---|
| Event name, invite code, location, date and notes | To create the gift exchange and let invited people find and join it |
| Participant names, avatars and draw results | To run the draw and show each participant who they were assigned |
| Exclusion rules between participants | To keep the draw from pairing people you said should not be paired |
| Wishlist items — item name, price, currency and link | To show your wishlist to whoever drew your name |
| Feature requests — your message, the category, app version, platform and a device identifier | To read and act on your feedback, and to reproduce issues on the right app version |
Names you enter about other people. A Secret Santa event is by nature about other people. When you add participants, you are entering their names — and possibly their wishlists — into our database. Please add only what those people are comfortable sharing with the rest of the group, and do not enter sensitive information about anyone.
We use Google’s Firebase tools to understand how the app is used and to fix it when it breaks. These collect:
The free version of the app is paid for by advertising. We use
Google AdMob (publisher ID pub-7926716557588074) to show:
To serve, measure and cap these ads, AdMob collects your device’s advertising identifier (the Advertising ID on Android, the Identifier for Advertisers on iOS), IP address, device information and interactions with the ads. Google may use this to show you personalised ads based on your activity in other apps and sites. How Google handles this data is described in How Google uses data from AdMob and the Google Privacy & Terms.
The app offers three optional upgrades, all of which remove advertising:
| Product | Type |
|---|---|
| Premium Weekly | Auto-renewing subscription |
| Premium Annual | Auto-renewing subscription |
| Premium Lifetime | One-time purchase |
Payment is taken by Apple or Google, not by us. We never see or store your card number, billing address or any other payment detail.
We use RevenueCat to check whether a purchase is valid and still active. RevenueCat receives an anonymous app user ID, the product you bought, the store receipt or purchase token and your subscription status, together with device and country information from the store. It does not receive your name or payment details. See the RevenueCat Privacy Policy.
The app relies on these providers. Each has its own privacy policy:
If you are in the EEA or the UK, our legal bases are:
We do not sell your data, and we do not share it for cross-context behavioural advertising beyond what AdMob does as described in section 4. Data is shared only with the providers in section 6, who process it on our behalf, and where we are legally required to disclose it.
Note that the app is a sharing tool by design: everyone who joins an event with its invite code can see the event details, the participant list and the wishlists in it.
Event data stays in our database until it is deleted. You can delete it yourself:
Because the app has no accounts, we cannot identify your data from an email address alone — the invite code is what lets us find it. Crash and analytics records are retained by Google on their own schedules, up to 14 months for analytics data.
Data is stored in Google Cloud Firestore and transmitted over encrypted connections. Access is restricted by Firestore security rules. No method of transmission or storage is completely secure, so we cannot guarantee absolute security.
The app is not directed to children under 13, and we do not knowingly collect personal information from them. The app is not marked as child-directed in AdMob or the app stores. If you believe a child has given us information, email us and we will delete it.
Our providers operate globally, so your data may be processed in countries other than your own, including the United States. Those transfers rely on the safeguards each provider has in place, such as the European Commission’s standard contractual clauses.
Depending on where you live you may have the right to access, correct, delete, restrict or object to our use of your data, to withdraw consent, and to receive a copy of it. Residents of California may request disclosure of the categories of personal information collected and may opt out of its sale or sharing — we do not sell personal information. To exercise any of these rights, email [email protected]. We do not discriminate against anyone who exercises them.
We may update this policy. The date at the top shows when it last changed, and material changes will be announced in the app.
Questions about this policy or your data: [email protected].
See also our Terms of Service.