Privacy Policy
Last updated: April 2025
1. Introduction
Brewin (“we,” “our,” or “us”) operates the Brewin mobile application (the “App”). This Privacy Policy explains what personal information we collect, how we use it, who we share it with, and what rights you have regarding your data.
For the purposes of the EU General Data Protection Regulation (GDPR) and UK GDPR, Brewin is the data controller responsible for your personal data. Our contact details are: info@brewin.coffee.
By creating an account and using Brewin, you agree to the collection and use of information as described in this policy. If you do not agree, please do not use the App.
2. Information We Collect
2.1 Information You Provide Directly
- Account information: When you create an account, we collect your name, email address, and password (if you sign up via email), or the profile information provided by your sign-in provider (Apple or Google).
- Profile information: You may optionally add a profile photo, bio, or other details to your public profile.
- Coffee library data: Coffees you scan, search for, or add to your library, including any personal notes or ratings you provide.
- Brew session data: Information you log during brew sessions, such as brew method, grind size, water ratio, time, and your rating of the result.
- Social content and photos: Text, photos, and other content you post to the Brewin feed, as well as your follow/follower relationships. Photos you upload are stored on our cloud infrastructure and are publicly accessible to other Brewin users for as long as the content remains on the App. When you delete a post, the associated photos are deleted from our servers, though cached copies may persist briefly.
- Support communications: Any messages you send to us when requesting support.
2.2 Information Collected Automatically
- Device information: Device model, operating system version, unique device identifiers, and language settings.
- Usage data: How you interact with the App, including features used, screens viewed, session duration, and crash data. This is collected through Firebase Analytics and Firebase Crashlytics.
- Camera data: When you use the scan feature, we access your device camera to capture coffee bag labels. The images are processed to identify the coffee product. We do not store raw camera images beyond what is needed for the scan.
2.3 Information We May Collect in the Future
- Location data: We may introduce features that use your approximate or precise location (e.g., to recommend nearby roasters). If we do, we will request your permission and update this Privacy Policy accordingly.
3. How We Use Your Information
We use the information we collect to:
- Create and maintain your account
- Provide the core App experience: scanning coffees, logging brews, managing your library, powering the discovery page, and operating the social feed
- Personalize coffee recommendations based on your ratings, preferences, and activity
- Send you push notifications (e.g., when someone follows you or interacts with your posts), which you can disable at any time through your device settings
- Monitor and improve App performance, stability, and security through analytics and crash reporting
- Enforce our Terms of Service and Community Guidelines, including content moderation
- Respond to your support requests
- Comply with legal obligations
We do not use your data to serve advertisements. We do not sell your personal information to third parties.
4. How We Share Your Information
4.1 Publicly Visible Information
Your profile name, profile photo, and any content you post to the Brewin feed (text and photos) are visible to all Brewin users. Your brew ratings and coffee library are also publicly visible. There are no private accounts or private posts at this time.
4.2 Third-Party Service Providers
We use the following third-party services that may process your data on our behalf:
| Provider | Service | Data Processed |
|---|---|---|
| Google Firebase | Authentication, Analytics, Crashlytics, Push Notifications, Firestore | Account info, device info, usage data, crash logs, feed content and photos, brew data, coffee library data |
| Apple / Google | Sign-in (if used) | Authentication tokens, basic profile info |
4.3 Legal Requirements
We may disclose your information if required to do so by law, regulation, legal process, or governmental request, or to protect the rights, safety, or property of Brewin, our users, or the public.
4.4 Business Transfers
If Brewin is involved in a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction. We will notify you via the App or email before your data becomes subject to a different privacy policy.
5. Data Retention
We retain your personal information for as long as your account is active or as needed to provide the App's services. If you delete your account, we will delete or anonymize your personal data within 30 days, except where we are required by law to retain it.
6. Data Security
We implement appropriate technical and organizational measures to protect your personal information, including encryption of data in transit (TLS/SSL), secure authentication practices, and access controls. However, no method of electronic transmission or storage is 100% secure, and we cannot guarantee absolute security.
7. Children's Privacy
Brewin is intended for users aged 12 and older. We do not knowingly collect personal information from children under 13. If you are a parent or guardian and believe your child under 13 has provided us with personal information, please contact us at info@brewin.coffee and we will promptly delete that information.
In the European Union, users must be at least 16 years old to create an account (or have verifiable parental consent), in accordance with the GDPR.
8. Your Rights
8.1 For All Users
- Access: Request a copy of the personal data we hold about you.
- Deletion: Request deletion of your account and personal data.
- Correction: Request that we correct inaccurate information.
- Withdraw consent: Where processing is based on consent, you may withdraw it at any time.
You can exercise these rights by emailing info@brewin.coffee or by using account management features within the App.
8.2 Additional Rights (EEA, UK, Switzerland — GDPR)
- Data portability: Request your data in a structured, commonly used, machine-readable format.
- Restriction: Request that we restrict processing of your data under certain circumstances.
- Object: Object to processing based on legitimate interests.
- Lodge a complaint: You have the right to lodge a complaint with your local data protection authority.
8.3 Additional Rights for California Residents (CCPA/CPRA)
- Right to know: You may request the categories and specific pieces of personal information we have collected about you.
- Right to delete: You may request deletion of your personal information.
- Right to opt-out of sale/sharing: We do not sell or share your personal information for cross-context behavioral advertising.
- Non-discrimination: We will not discriminate against you for exercising your CCPA rights.
9. Do Not Track Signals
Because there is no universally accepted standard for how to respond to DNT signals, Brewin does not currently respond to or alter its data collection practices upon receiving a DNT signal. California law requires us to disclose how we respond to DNT signals; this paragraph constitutes that disclosure.
10. International Data Transfers
Your information may be transferred to and processed in countries other than your own, including the United States. We take steps to ensure that any such transfer complies with applicable data protection laws, including the use of Standard Contractual Clauses where required.
11. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. We will notify you of any material changes by posting the updated policy within the App and updating the “Last updated” date. Your continued use of the App after such changes constitutes acceptance of the updated policy.
12. Contact Us
If you have questions, concerns, or requests regarding this Privacy Policy or your personal data, please contact us at:
Email: info@brewin.coffee