Tin Hat is built around a simple idea: you should be able to make something personal without giving away more information than the experience needs.
What we collect and use
- Your Apple account details. When you use Sign in with Apple, Firebase gives us a stable account identifier. Apple may also provide the name and email address you choose to share (including a private relay address, and generally only on first authorization). We use those details to show your account and keep it recoverable across devices—not for marketing.
- A per-request device identifier. The app sends a device identifier with each request so we can apply the free generation limit and protect the service from abuse. For a signed-in request, the verified account identifier becomes the server’s quota identity.
- Your creation requests. The text you enter reaches our server. It is sent to Anthropic to plan a soundscape; the resulting sound-effect prompts go to ElevenLabs to create audio; and a derived image prompt goes to Google Vertex AI to create a background image.
- Generated assets and derived prompts. We keep generated audio, images, and their metadata—including the derived generation prompts and creation time—in a shared, content-addressed cache so identical requests can be reused instead of generated again. Soundscapes you save are also stored on your device.
- Usage and purchase records. We record the soundscape name, generation and reuse counts, and timestamps to operate limits and activity history. When you buy tokens, the app sends the App Store transaction and product identifiers for verification; our server keeps an account-linked credit ledger with the transaction record, timestamp, and credited amount to prevent duplicate grants. Apple processes payment, and we do not receive card details.
- Operational logs. Our server writes request logs that can include your IP address, request path, method, response status, and timing. We use them to operate, secure, and troubleshoot the service.
What we do not do
- We do not sell your data.
- We do not show third-party ads.
- We do not track you across other apps or websites.
Service providers
We use Anthropic for soundscape planning, ElevenLabs for generated audio, and Google Cloud / Vertex AI to host the backend, store generated files, and create background images. Sign-in and account data use Google Firebase. App purchases are processed by Apple through the App Store; we never receive your card details. If an optional web checkout is offered, Stripe processes that payment and likewise does not share your card details with us.
Deleting your account
You can delete your account from Account → Delete Account in the app. The app first removes the account-linked server records—your account and credit balance, usage history, and purchase/credit ledger—then deletes the Firebase account. If the server deletion cannot be completed, the app leaves the Firebase account in place and shows an error so you can try again.
Account deletion does not remove generated audio, images, or derived prompts held in the shared, content-addressed asset cache: those files are not stored as an account-specific library and may be reused for identical requests. It also does not remove operational logs immediately, where retained for security and troubleshooting, or soundscapes already saved on your device.
Contact
Questions about this policy? support@tinhat.app