Privacy Policy
Last updated: 21 August 2026
Duwa is made for exactly two people, and your data is treated that way: it belongs to the two of you, and nobody else, including us, has any business in it. No ads, no analytics, no tracking, and nothing sold, ever.
What Duwa stores
Everything you enter to run your household: your household name and the two of your names, expenses (amount, note, category, date, who paid, how it was split), settle-ups, recurring bills, category budgets, your shared activity log, your currency, optional monthly incomes used only for the by-income split, and any photos you add (partner avatars and receipts). Your reminder settings stay on the phone you set them on.
Where it lives
On both of your phones, and in a private backend hosted on Supabase, so the two of you see the same balance. Every household is sealed to its own couple by row-level security: a rule enforced inside the database on every read and every write, not a promise in a document. We administer that database as the developer, but we never read, query, or share what is in it. There are no analytics on it and no humans browsing it. It exists to move your household between your two phones.
Signing in
Duwa uses Sign in with Apple, so there is no password to make and none for Duwa to see. Apple hands Duwa an account id and, the first time you authorize it, your name and an email address, which is Apple's private relay if you chose to hide yours. Your name fills in your side of the household. The email sits with the sign-in system so your account can be recovered; Duwa sends no marketing and shares it with nobody.
Subscriptions
Duwa Pro is bought through Apple, and Apple handles the payment. Duwa never sees your card or your billing details. RevenueCat keeps track of whether Duwa Pro is active, which is what lets one subscription cover both of you; it receives a purchase identifier and an app user id, and nothing else. It is not used for advertising or tracking.
Reminders and nudges
Reminders you set for yourself are local notifications, scheduled on your own phone. When your partner logs something, your phone builds that notification too, from data it has already synced. The one thing that travels is a nudge: if your partner taps to nudge you about settling up, a push goes through Apple's push service to your phone. So a nudge can find it, Duwa uploads that phone's push token to the backend and keeps it with your account. Turn notifications off and all of it stops.
Photos and permissions
Only the specific images you pick in Apple's system picker are added; Duwa never browses your library. Every photo is re-encoded before it is stored, which drops the embedded metadata, including any location the camera recorded. Avatars and receipts then sync to your household like everything else, sealed the same way. Notification permission is asked for once, when you first sign in, so reminders and your partner's nudges can reach you, and iOS Settings can take it back at any time.
What Duwa doesn't do
No ads. No analytics or tracking SDKs. No selling or sharing your data. No profile of you, and no tracking you across other apps or websites. The only outside services Duwa uses are the ones that make it work: Apple (sign in, payments, push), Supabase (the sync backend), and RevenueCat (subscription status). Each one acts on our behalf, only to run the app.
Erasing and deleting
Erase All Data, in Settings under Your Data, permanently deletes your household from this phone and from the backend, for both of you, with no undo.
Delete Account goes further: it removes your Sign in with Apple identity from Duwa entirely, along with everything on this phone. If your partner still uses the shared household, their copy stays theirs. Deleting the app removes this phone's copy. Gone means gone.
Children
Duwa is not directed at children under 13, and does not knowingly collect anything from them.
Changes
If this policy changes, the date above changes with it, and the new wording ships with the app and appears here.
Questions
Duwa is made by one person, for couples. If anything here is unclear, write to aster@duwa.app and you'll get an answer from the human who built it.