Privacy policy
Effective October 2, 2026
This policy describes how Touch grass Central handles data for Walka Blocka (Android package com.walkablocka) and this support website. Contact: kodactle@gmail.com.
Data kept on your device
With your permission, Walka Blocka reads step counts from Health Connect to calculate app time. Step counts, walking-credit history, selected apps, app-usage measurements, settings, and local app/permission status are processed and stored on your device. These records are not uploaded to our account or billing server. Original step records remain with Health Connect and your health-data provider.
Accessibility and usage access
Accessibility access identifies the apps in visible application windows, their on-screen positions, and whether each window is focused or active so Walka Blocka can show its timer and blocking screen for apps you selected. Usage Access helps measure time spent in selected apps. Accessibility app/window metadata and app-usage measurements are processed locally and are not transmitted off your device. We do not read or save website addresses, browsing history, text, messages, passwords, or page content displayed by other apps. These records are not included in account, billing, or Billing SDK diagnostic requests. Permissions can be revoked in Android settings; protection then stops.
Account information
Google sign-in is required. Supabase Auth processes your Google account identifier, email address, basic Google profile information, account/session identifiers, and the nickname you choose. We use this information to authenticate you and identify your membership account. Your Google password is not provided to Walka Blocka. Signing in does not upload step counts or enable cloud backup or social rankings.
Purchases and membership
Google Play processes payments and links purchases to the Google Play account used at checkout. Our billing service runs on Google Cloud and uses Supabase to store purchase tokens, product and subscription information, account identifiers, purchase verification records, and membership status. We verify purchases with Google Play, process subscription updates, and support restoration to the original Walka Blocka account. Purchases cannot be transferred between Walka Blocka accounts. We do not receive your full payment-card information. Account sessions and the last verified membership state are stored securely on your device.
Google Play Billing SDK diagnostics
The Google Play Billing SDK included in the app automatically sends technical diagnostics to Google for error diagnosis and performance improvement. These diagnostics include billing responses, error codes and debug messages; app, Billing library and Android versions; device model, brand, manufacturer and OS build information; total memory; network type and subtype; locale and time zone; and a random correlation identifier generated for each Billing client. This correlation identifier is not a persistent hardware or installation identifier. These diagnostics do not include step counts, selected-app usage, or Accessibility window data. The app has no setting to turn off this SDK diagnostic collection.
Google processes these diagnostics under its Privacy Policy. We do not control Google’s diagnostic retention period and do not claim these diagnostics are processed only in memory or deleted immediately. The account-deletion process described below removes data from our account system; it does not guarantee deletion of diagnostics already sent to Google.
Service providers and disclosure
We use Google for sign-in, Play billing, and hosting, and Supabase for authentication and account/billing storage. Our server infrastructure is configured in the United States. These providers process data to supply their services. We do not sell your personal or health data or use your walking, app-usage, or Accessibility data for advertising. We do not send health data to advertising or analytics services. The app has no advertising SDK or behavioral advertising. Google Play Billing SDK diagnostic collection, described above, is separate from your local walking, app-usage, and Accessibility records. We may disclose information where legally required or necessary to secure our services.
Support and website requests
Copy support details copies app and permission status to your device clipboard; it does not automatically send a report and does not include step records or selected app names. If you email support, we receive the information you choose to include and use it to address your request. Please avoid including step records, screenshots of private app content, passwords, or payment information. This website uses no analytics, advertising cookies, or account login. The hosting provider may process technical request information, such as IP address, request time, URL, and browser information, for delivery and operational logs.
Retention and deletion
Account/profile data is retained while your account exists. You can delete your account in the app under Settings → Account → Delete account, or follow our external account deletion instructions. Account deletion removes your sign-in account, email/profile information, and nickname from the app account system. Purchase and verification records remain for billing, fraud prevention, and applicable legal obligations. The active account-owner association is removed, while the internal purchase account identifier is retained to prevent transfer to another account. Purchases linked to a deleted account cannot be restored through a newly created account. We do not currently apply a fixed automatic deletion period to retained purchase records.
Deleting an account keeps device-local walking and usage data. Uninstalling the app removes its local data, but does not delete original Health Connect records. You can separately manage those records and permissions in Health Connect. Account deletion or uninstalling does not cancel a Google Play subscription; cancel it in Google Play.
Security and choices
Account and billing requests use HTTPS. Access to backend data is restricted, and local account sessions use Android Keystore-backed encrypted storage. No system can guarantee absolute security. You can revoke permissions, sign out, delete your account, uninstall the app, or contact us about your personal data.
Updates
We may update this policy as the service changes. The effective date above identifies the current version. Contact us if you have questions.