wipilive
Back to home

Privacy Policy

Last updated: August 26, 2026

This Policy explains what data Wipi processes in the app, the Pro panel, and wipi.live, why, with whom, and what your rights are (LGPD/GDPR). We are the controller of this data.

1. Quick summary

We collect the minimum to run the app: your Google account, profile, presence at a place, and content you choose to post. Location is used in the foreground only — to find nearby places and confirm presence. We do not keep a GPS trail and we do not show your position to anyone.

We do not sell data. We do not use personalized ads or advertising trackers in the app.

2. Who we are and what this covers

Wipi (wipi.live) operates the Android app, the Pro panel (pro.wipi.live), and the marketing site. This Policy covers all of them.

Privacy contact: privacidade@wipi.live.

3. Data we collect

• Account: name, email, and Google account id (and Apple/Microsoft later if added). Handle, profile photo, and optional social links you provide.

• Presence: the place you entered, entry time, last heartbeat, and whether radar is on. We do not store a continuous coordinate for you.

• Approximate/precise location (if you allow it): sent when listing nearby places, creating a place, or entering via GPS. Used to compute distance; your coordinate is not saved on your profile. The place coordinate (set by the creator) is stored.

• Content: photos, videos, flashes (text up to 80 characters), walkie audio, heat reactions, and reports.

• Payments (if you use them): amount, status, and provider ids; card tokens stay with the provider — not the full PAN with us.

• Technical: session token on device (secure storage), IP and user-agent on login events, server security logs.

• Website: waitlist email (if you join) and an essential language cookie (NEXT_LOCALE).

4. Location — justification

Purpose 1 — show nearby places on Home so you can find a venue without typing a code.

Purpose 2 — confirm you are inside the place radius (plus a tolerance) when entering via GPS. If you are too far, you may enter with the code if the place allows it.

Purpose 3 — when you create a place, the current position becomes that venue's center (the venue location, not a personal history).

We do not use background location, continuous tracking, or ads. We never display your position, route, or distance to others. Radar, when on, shows only the profile of people who also turned it on — never a live map of each person.

Permission is optional: search and code entry still work without it. You can revoke it in Android settings at any time. Public justification: https://wipi.live/location

5. User-generated content

Mural media, flashes, and walkie audio are visible to people present at the same place. Flashes expire in about 60 seconds; audio in about 10 minutes; the mural keeps the latest 25 live items.

Reporting hides media for you; two distinct reports hide it for everyone. The organizer can remove it. Rules: https://wipi.live/guidelines

6. How we use data and legal bases

• Performance of the service / contract: account, session, presence, mural, radar, Pro.

• Consent: location, camera, microphone, photo library, and waitlist.

• Legitimate interest: security, abuse prevention, technical logs, and operations.

• Legal obligation: when the law requires it.

7. Camera, photos, and microphone

Camera and library are used only when you publish to the mural or change your avatar.

The microphone is used for walkie clips (up to 25 s) and, if a place has a live stage, for that broadcast. We do not record the microphone in the background.

8. Sharing

We do not sell or rent data. Typical processors: cloud hosting and database, object storage for files, Google Sign-In, and a payment processor when there is a transaction — each limited to what the function needs.

Other people at the same place see what you posted and, if both of you enabled radar, your profile (name, handle, avatar) — never your coordinates.

We may disclose data if required by law or court order.

9. Retention and security

Account and profile: for as long as the account exists. Session: until logout or expiry. Presence: while you are in the place (it ends when you leave or the heartbeat expires).

Removed media is unavailable in the app; moderation audit records may be kept for a reasonable period. Flashes and audio drop by TTL. Waitlist: until launch plus a reasonable period, or until you ask us to delete it.

We use HTTPS, opaque tokens, and secure on-device storage. No system is 100% secure.

10. Children

Wipi is not directed at children under 13. You must be 16 or older to create an account. If we learn we collected data from a child below that, we will delete the account.

11. Your rights

You may access, correct, delete, or port your data, withdraw consent, and object to processing, as provided by LGPD/GDPR.

In the app: edit your profile, turn radar off, leave a place, revoke system permissions, and sign out in Account. To delete your account or waitlist entry, write to privacidade@wipi.live.

12. Changes and contact

The date at the top is the current version. We will communicate material changes in the app or by email when possible.

Privacy: privacidade@wipi.live. General: contato@wipi.live.

Privacy Policy — wipi.live