Privacy Policy

Last updated August 24, 2026

This explains what DeepLock collects, what never leaves your iPhone, who processes what, and how to delete your account or request help with your data.

The short version

Your Screen Time selections and app usage data stay on your iPhone. DeepLock does not receive the names of apps you choose from Apple’s picker. Account, activity, analytics, paywall, and purchase records are processed as described below. You can delete your DeepLock account from inside the app. DeepLock runs no ads and does no cross-app tracking.

Who operates DeepLock

DeepLock is operated by Jack Mandeville. Privacy questions and requests go to deeplocksupport@gmail.com.

Who can use DeepLock

DeepLock is for people aged 13 and older. Setup uses your age to enforce that limit and personalize the setup flow.

What stays on your device

  • Your Screen Time selections. When you choose apps to shield, Apple returns an opaque token for each one, not a name. Those tokens are held on your iPhone. DeepLock never receives them and has no server-side access to your Screen Time or app usage data.
  • Your exact date of birth.
  • Your tasks, goals, habits, and detailed session state.

What is sent to our servers

When you are signed in, DeepLock stores the following against your account:

  • An account identifier created at sign-in, plus progress and streak counters. Some legacy progress fields remain in account recovery records.
  • A record for each Block: its length, when it started and ended, whether it completed, and the text you wrote for what you planned to do and what you finished. Legacy reward values can remain on these records.
  • A record for each completed Reset activity: which activity, how long it lasted, when it finished, and any legacy progress value attached to it.
  • Protected-time totals, deep-work totals, protected days, focus score, Brain ownership, reveal state, and your equipped Brain when server-side Brain progress is available.
  • Your subscription status.
  • Setup answers saved for account recovery and product personalization. Depending on the app version, these can include a whole-number age, reported phone hours, focus problems, goals, past attempts, commitment length, attribution, and self-reported distracting app categories. Your exact date of birth and Apple Screen Time tokens are not sent.

Notifications

If you allow notifications, DeepLock schedules local reminders on your iPhone for Block endings, scheduled Blocks, and an eligible trial reminder. DeepLock does not use a remote push-notification token in this version. You can change notification permission in iPhone Settings.

Screen Time permission

DeepLock asks for Screen Time access so it can shield the apps you choose during a Block. iOS presents that request and you can decline it or withdraw it later in the Settings app. Without it, DeepLock cannot shield anything. Apple’s frameworks do the shielding on your device.

Analytics

DeepLock uses PostHog to understand onboarding, paywall, and Block flow. Events can include the step or feature viewed, the selected plan label, Block tier and duration, early-end state, progress or streak milestones, app lifecycle events, an anonymous device-level identifier, app and device details, and an approximate country or region inferred from the network address. DeepLock does not send PostHog your name, email address, or DeepLock account ID.

Analytics are on by default. You can turn them off in the app at any time. That stops future PostHog collection on that device. Analytics are used to improve the product and understand how people move through it, not for third-party advertising.

Superwall also processes paywall views, interactions, experiment assignments, anonymous app and device identifiers, and app and device details so DeepLock can present and evaluate paywalls. Superwall event collection is separate from the PostHog analytics switch.

This website is separate. It loads no analytics, no tracking pixels, no advertising code, no cookies, no forms, and no external fonts or scripts.

Subscriptions

Purchases are processed by Apple. DeepLock does not receive or store your payment card or bank details. RevenueCat receives an app user identifier, device and app details, App Store receipt and transaction information, product identifiers, and entitlement status. After you sign in, DeepLock links the RevenueCat app user identifier to your DeepLock account ID so purchases and restores resolve to the correct account. Superwall receives subscription status and paywall interaction data so the correct paywall can be shown and evaluated.

Who processes your data

DeepLock does not sell your personal information and does not share it for advertising. These providers process data so the app can work:

  • Supabase, for account, activity, Brain, subscription, and backend records.
  • PostHog, for product analytics.
  • RevenueCat and Superwall, for subscription entitlements, paywalls, and related analytics.
  • Apple, for sign-in and payment processing.

Retention and deleting your account

Open Settings inside DeepLock and choose Delete Account. That deletes your Supabase account and the DeepLock records that cascade from it. The app clears its local data only after the server confirms the deletion, so a failed request never leaves you with an emptied phone and a live account.

DeepLock does not publish a fixed retention period for every record or backup. Apple, RevenueCat, Superwall, PostHog, and infrastructure providers can retain records under their own policies or legal duties. In-app account deletion does not cancel an App Store subscription.

For help with deletion, access, or correction, write to deeplocksupport@gmail.com. Full steps are on the support page.

Your choices

  • Turn PostHog analytics off from Settings inside DeepLock.
  • Withdraw Screen Time permission through iPhone Settings.
  • Manage or cancel a subscription through your Apple Account.
  • Delete your DeepLock account from Settings inside the app.
  • Email support for access, correction, or deletion help.

Changes

When this policy changes, the date at the top changes with it. The current policy remains available at this page.

Contact

Privacy questions go to deeplocksupport@gmail.com.