Questly.
← Back to Questly.

Privacy Policy

Last updated: August 26, 2026

Run a business on the Questly Business dashboard? See our Business Privacy Policy for how we handle billing, venue claims, and analytics data instead.

Questly. is a mobile app developed and operated by TrueSharp LLC ("TrueSharp," "we," "us," "our"). This policy explains what we collect from people who use the app, what we do with it, and the choices you have.

1. Information We Collect

Account information: username, email address, and password. We never see your password in plain text — authentication is handled by Supabase, our database provider. You can optionally add a full name, bio, avatar, and banner image.

Content you create:photos and captions you post ("quests"), venues you tag, events you create or RSVP to, reviews and ratings, messages in an event's discussion thread, and friend requests.

Location:with your permission, we use your device's location to show nearby venues and events, suggest the venue you're likely posting from, and calculate distance. This happens only while you're actively using the app — we never request or collect location in the background. Deny or revoke the permission anytime in your device settings; the app falls back to manual search when it isn't available.

Usage data:actions like viewing a venue or event page, tapping directions or a business's website, favoriting a venue, and submitting a review, tied to a per-session identifier. This drives our discovery ranking — surfacing what's genuinely active nearby — and, in aggregate, lets a venue's claimed owner see traffic trends for their own page. See "What Businesses Can See" below for the limits on that.

Camera and photos:we request camera and photo library access only at the moment you choose to use them — posting a quest, setting an event cover photo, or updating your profile picture. We don't touch either otherwise.

Push notification token:if you enable notifications, we store a device token (through Expo's push service) to deliver them. Notifications are optional.

2. How We Use It

To run the app: showing nearby activity, maintaining your profile and friend graph, delivering notifications, ranking discovery results, crediting review points, and catching abuse. We don't build advertising profiles from your data, and there are no third-party ad networks in the app.

3. What's Public vs. Private

Your username, profile photo, bio, and posted quests are visible to other users. Friend requests, private events, and guest lists are visible only to the people involved — enforced at the database level, not just hidden in the interface. Other users only ever see a computed distance ("0.4 mi"), never your precise location.

4. What Businesses Can See

Viewing a claimed venue's page, tapping directions, or tapping a business's link may count toward that venue's analytics. Everything a business sees is a total — "142 profile views this week" — never a name, username, or anything that could identify you individually. Our database has no query path that hands that data to a business account.

5. Who We Share With

Supabase hosts our database, authentication, and file storage. Google's Maps and Places APIs power venue search and the map view — your search terms and approximate location are sent to Google to return results. Expo delivers push notifications. We don't sell your personal information to anyone, and we don't share it beyond what's needed to run these services.

6. Account Deletion

Deleting your account from Settings is permanent and immediate — your profile, quests, friend connections, reviews, messages, and uploaded photos are all removed, not just deactivated. This can't be undone from within the app.

7. Children

Questly isn't intended for anyone under 13, and we don't knowingly collect information from children. Contact us if you believe a child has created an account and we'll remove it.

8. Your Rights

Depending on where you live, you may have the right to access, correct, or delete your personal information. You can act on most of that directly in the app — Settings → Edit Profile, or Settings → Delete Account — or by emailing us. We respond to verified requests within a reasonable time.

9. Security

We use encrypted connections, access-controlled database policies, and scoped API credentials to protect your information. No system is perfectly secure, and we can't guarantee the security of data you send us.

10. Changes

We'll update the date at the top of this page when this policy changes, and notify you in the app if a change is material.

11. Contact

Questions about this policy or your data? Email info@truesharp.io.