Privacy Policy
Effective date: 2026-07-12
Last updated: 2026-07-12
This Privacy Policy explains how Sanghance ("Sanghance", "we", "us", or "our") handles personal data when you use ClubOn, including the ClubOn mobile apps, private web app, public website, and related support and community features (together, the "Service").
ClubOn is designed for adults who want to reflect on their nightlife and alcohol consumption, understand estimate-based context, find spots, and use optional social features. ClubOn is not a medical device and does not determine whether you are legally sober or safe to drive.
Please read this Policy together with our Terms and Conditions. If you do not agree with this Policy, do not use the Service. Where we rely on your consent, you may withdraw it as described below.
1. Who is responsible for your data
Sanghance operates ClubOn and is the data fiduciary or controller for personal data that ClubOn decides how and why to process. Some service providers process data for us, while providers such as Google, Apple, advertising partners, app stores, map providers, or websites you choose to visit may process data under their own terms and privacy policies.
Privacy and grievance contact: support@sanghance.com
When contacting us, please do not send passwords, one-time passwords, government identification numbers, payment-card details, or unnecessary sensitive information.
2. Scope
This Policy applies to personal data processed through the Service. It does not apply to third-party apps, websites, venues, transport providers, map listings, advertisements, or other services that ClubOn may link to or display. Those parties control their own privacy practices.
3. Personal data we collect
The data we collect depends on the features you use, the permissions you grant, and your device or platform.
3.1 Account and authentication data
- Firebase user identifier and ClubOn account identifier
- Name, alias or username, email address, profile photo, and authentication-provider details
- Phone number, if you or an enabled authentication flow provides it
- Sign-in method and linked-account information for email, Google Sign-In, or Sign in with Apple
- Account creation, sign-in, verification, and security metadata
Your authentication provider may give us only the details you permit. For example, Apple may provide a private relay email address instead of your personal email address.
3.2 Profile and preference data
- Birthday or age-confirmation status, age, gender or estimate profile, body weight, unit preference, tolerance and ring-impact settings
- Bio, job title, interests, gallery images, country, locality, and other profile details you choose to provide
- Saved drinks, drink-catalogue preferences, notification preferences, privacy choices, blocked users, and account settings
- Feedback, support requests, and optional account-deletion reason
Some of this data can reveal health-related, lifestyle, or nightlife information. We treat it as private and use it only for the purposes described in this Policy.
3.3 Nightlife, drink, and estimate data
- Night sessions, drink logs, drink type, amount, strength, time, edits, resets, saved presets, pace, and session status
- Vibe checks, awareness settings, reminder state, selected spot, and derived estimates or recommendations
- Your current private Tonight state and expiry information
Drink logs and private estimate settings are intended to remain private to your account. They are not published to other users through ClubOn's social features.
3.4 Location, places, and map data
If you grant location permission or choose a place manually, we may process:
- Precise or approximate device location while the app is in use
- Geohash or geographic coordinates, country, locality, and selected-place details
- Map searches, place identifiers, addresses, ratings, opening hours, and other place information returned by Google Maps or Places
- Going-tonight, check-in, selected-spot, and venue-presence status
ClubOn does not request continuous background location permission. You can deny or revoke location access in your device settings and can still select or search for a spot manually where that option is available.
3.5 Social, communication, and safety data
- Going-tonight presence, buddy requests, request preferences, connection requests, and responses
- Place-chat, nearby-chat, direct-chat, and ClubOn Support messages, including message text, image attachments, sender and recipient identifiers, timestamps, delivery or read state, and chat membership
- Profile visits, likes, matches, connections, blocks, reports, report reasons, moderation actions, restrictions, and related audit records
- Public or group content you post, including images and venue discussion
Private messages are visible to their participants and authorised safety, support, or moderation personnel when reasonably necessary to operate the Service, investigate a report, enforce our rules, protect users, or comply with law. Venue, nearby, buddy-request, and presence content may be visible to other eligible users in the relevant place or social context.
3.6 Device, notification, advertising, and diagnostic data
- Device type, operating system, app version, language, time zone, device or installation identifiers, IP address, network and browser information
- Firebase Cloud Messaging and OneSignal push-subscription identifiers, notification permission, delivery, open, and preference data
- Analytics events about screens, feature use, authentication method, and app performance; our event layer is designed to reject sensitive payload fields
- Crash reports, stack traces, diagnostic state, and pseudonymous user identifiers used to investigate reliability issues
- Advertising identifiers, consent signals, ad impressions, clicks, approximate location, and related device or interaction data where Google Mobile Ads or an advertising partner processes them
We do not intentionally include message text, drink details, exact location, passwords, email addresses, phone numbers, or uploaded-file URLs in product analytics events. A crash report may still contain technical state generated at the time of a failure, so we limit access and use it for diagnostics.
3.7 Website and local-device data
Our websites and web app may use cookies, browser storage, service-worker storage, and similar technologies for sign-in, security, preferences, basic measurement, and application functionality. The app also stores some preferences, cached data, drafts, notification schedules, and database state locally on your device. Clearing app data, browser storage, or uninstalling the app may remove local data but does not by itself delete server-side account data.
3.8 Data from other people and services
We may receive data about you when another user sends you a request, message, report, or other interaction; when an administrator takes a moderation action; from authentication providers; from Google Maps or Places; from app stores; or from security, analytics, advertising, notification, and infrastructure providers.
4. How we use personal data
We use personal data to:
- Create, authenticate, secure, recover, and manage accounts
- Provide drink logging, private night sessions, estimate-based awareness, reminders, saved drinks, and settings
- Show nearby spots, place information, maps, selected-spot context, and optional venue presence
- Provide buddy requests, chats, connections, notifications, blocks, reports, and other social features you choose to use
- Personalise the Service based on your settings and actions
- Operate ads and measure ad delivery where advertising is enabled
- Diagnose crashes, prevent abuse, secure accounts, monitor performance, and improve features
- Respond to support, privacy, grievance, safety, and deletion requests
- Moderate content, investigate reports, enforce our Terms, and preserve evidence where reasonably necessary
- Send service, safety, account, policy, and feature communications
- Establish, exercise, or defend legal claims and comply with lawful orders and applicable law
ClubOn's estimates are produced from information you enter and general formulae or assumptions. They are informational estimates only and must not be used to decide whether to drive, continue drinking, take medication, or seek medical care.
5. Grounds for processing and your choices
Depending on the context and applicable law, we process data because it is necessary to provide a feature you requested, because you consented, to comply with law, or for legitimate uses such as security, fraud prevention, support, service improvement, moderation, and legal claims.
You choose whether to:
- Grant location and notification permissions
- Use social features, publish a buddy request, join a place chat, or show venue presence
- Add optional profile details or images
- Receive optional reminders or push notifications
- Use Google or Apple sign-in
You may withdraw a permission through ClubOn or your device settings. You may change available privacy and notification settings in the app. Withdrawal does not affect processing already completed lawfully, and it may prevent the relevant feature from working.
6. When information is visible to others
- Profile visibility: Other users may see your alias, profile image, selected public profile information, and social actions where the feature displays them.
- Place and nearby visibility: If you enable nearby social features, go tonight, check in, post in place chat, use nearby chat, or publish a buddy request, eligible users may see the associated identity, venue context, time, content, or request details.
- Chats: Direct messages are visible to chat participants. Group, place, and nearby messages are visible to eligible members of that context. ClubOn Support threads are read-only for the receiving user.
- Reports and moderation: The reported person may receive enough information to understand or respond to an enforcement action, but we do not ordinarily disclose the reporter's identity unless required by law or necessary for safety and fairness.
- Private nightlife data: Drink logs, private night sessions, body settings, vibe checks, and estimate settings are not intended to be shown to other users.
No online sharing is risk-free. Other users may capture or redistribute content visible to them. Do not share information you do not want others to retain.
7. How we disclose personal data
We may disclose relevant data:
- To other users, as described in Section 6 and as directed by your use of social features
- To Google and Firebase for authentication, databases, file storage, hosting, server functions, analytics, crash reporting, remote configuration, and messaging
- To Google Maps Platform for maps, geocoding, place search, and place details
- To OneSignal for push subscription and notification delivery
- To Google Mobile Ads and related consent or advertising partners where ads are enabled
- To Apple or Google for sign-in and to Apple App Store or Google Play for distribution and store services
- To professional advisers, auditors, insurers, contractors, and vendors that need the data to provide services to us and are subject to appropriate obligations
- In connection with a merger, financing, restructuring, acquisition, sale, or transfer of all or part of the Service, subject to applicable law and notice requirements
- To courts, regulators, law-enforcement agencies, emergency responders, or other parties when we reasonably believe disclosure is required by law, protects a person from serious harm, secures the Service, or protects legal rights
We do not sell your personal data for money. Advertising providers may process identifiers and interaction data to provide, measure, prevent fraud in, or personalise ads depending on your region, device settings, and consent choices. Their processing is also governed by their own policies.
8. Key third-party services
The Service currently uses or may use the following providers. Their services and privacy documentation may change:
- Google Privacy Policy, including Firebase, Google Sign-In, Google Maps Platform, Places, Firebase Cloud Messaging, Firebase Analytics, Crashlytics, and Google Mobile Ads
- Firebase Privacy and Security
- Google Maps Platform Terms and Google Maps or Google Earth Additional Terms
- OneSignal Privacy Policy
- Sign in with Apple and Privacy
- Apple Privacy Policy and Google Play Terms
Following a third-party link, requesting directions, contacting a venue, or opening another app may give that third party information such as your IP address, device data, location, or the page or place you selected.
9. International processing
We and our providers may process or store data in India and other countries where they operate. Those countries may have different data-protection laws. Where required, we use contractual, organisational, or other lawful safeguards and comply with applicable restrictions on cross-border transfers. Service-provider locations and subprocessors may change over time.
10. Retention
We retain personal data only for as long as reasonably necessary for the purposes described here, including to provide the Service, keep accounts secure, resolve disputes, enforce agreements, meet legal obligations, and maintain appropriate business or safety records.
Retention depends on the type of data and context:
- Account, profile, settings, and private nightlife data are generally kept while your account is active and then processed through our deletion workflow.
- Venue presence and time-sensitive social state are designed to expire or become inactive after the relevant nightlife window, although related audit, safety, notification, or backup records may remain longer.
- Messages, posts, reports, blocks, moderation actions, and safety records may remain while needed for participants, community integrity, investigations, dispute handling, or legal compliance.
- Account-deletion requests and their optional reasons may be retained as necessary to complete and evidence the request.
- Analytics, advertising, notification, security, and crash data follow our configured settings and provider retention controls and may be aggregated or de-identified.
- Backups and provider recovery systems may retain residual copies for a limited period before deletion cycles complete.
We may retain data longer where required by law, subject to a legal hold, necessary to protect users, needed to prevent repeat abuse, or required to establish, exercise, or defend claims. Where appropriate, we delete, anonymise, or restrict use instead of continuing ordinary processing.
11. Account deletion and data requests
You may request account deletion from Settings > Account > Delete account in ClubOn. This currently records a deletion request for processing; it does not instantly erase every account record when you tap the button. If you cannot access the app, follow the instructions on our Delete Account page or email us from the address associated with your account.
After verifying the request where necessary, we will delete or de-identify data linked to the account within the period required by applicable law and our operational deletion process, except for data we must or are permitted to retain. Content already shared with others may remain in their copies; some conversation records may remain for the other participants, safety, or evidentiary purposes with your account identity removed or restricted where appropriate.
Deleting the app, signing out, disconnecting Google or Apple sign-in, or revoking a device permission does not delete your ClubOn account.
12. Your rights
Subject to applicable law and appropriate identity verification, you may ask us to:
- Provide information about the personal data we process and the parties with whom it has been shared
- Correct, complete, or update inaccurate or incomplete personal data
- Delete personal data that is no longer required or that must be erased by law
- Withdraw consent for consent-based processing
- Address a grievance about our processing
- Honour another right available in your jurisdiction
You may also nominate another individual to exercise applicable rights in the event of your death or incapacity where the law provides that right.
To exercise a right, email support@sanghance.com with the subject "ClubOn Privacy Request". Describe the request and the account identifier or email needed to locate your account. We may ask for reasonable verification and may refuse or limit a request where permitted by law, including where it would adversely affect another person's rights.
If you are dissatisfied with our response, contact us again with the subject "ClubOn Privacy Grievance". You may also approach the Data Protection Board of India or another competent regulator when you are entitled to do so, after using the grievance process where applicable.
13. Security
We use technical and organisational safeguards designed for the nature of the Service, including authenticated access, Firebase Security Rules, role-based administrative access, encryption in transit, provider-managed encryption at rest for supported Firebase services, restricted production access, and privacy-safe analytics controls.
No service can guarantee absolute security. You are responsible for securing your device, email account, authentication providers, and login credentials. Tell us promptly if you believe your ClubOn account or personal data has been compromised.
If a personal-data breach occurs, we will investigate, mitigate, document, and notify affected individuals or authorities when required by applicable law.
14. Children and legal drinking age
ClubOn is intended only for people who are at least 18 years old and at least the legal drinking age where they use the Service, whichever is higher. We do not knowingly permit children to use ClubOn. If you believe a person below the required age has provided personal data, email us so we can investigate and take appropriate action.
Age confirmation is not a guarantee that every user has provided accurate information. Venues and alcohol sellers remain responsible for their own age checks and legal obligations.
15. Automated estimates and important safety limits
ClubOn may calculate impact, pace, recovery, or blood-alcohol-context estimates using inputs such as time, drink amount, strength, body weight, and estimate profile. These results are automated informational outputs, not clinical measurements or decisions about your legal rights.
Actual impairment and blood alcohol concentration vary significantly. Never use ClubOn to decide that you are safe or legally permitted to drive, operate machinery, consume more alcohol, combine alcohol with medication, or avoid professional medical care. If someone may be in danger, contact local emergency services.
16. Changes to this Policy
We may update this Policy when the Service, providers, or law changes. We will post the revised version with a new "Last updated" date. If a change materially affects your rights or how we use personal data, we will provide additional notice or seek consent when required. The version published on this page is the current version.
17. Contact and grievance redressal
For privacy questions, rights requests, complaints, content grievances, or safety concerns, contact:
Sanghance - ClubOn Privacy and Grievance Contact
Email: support@sanghance.com
Please include enough information for us to understand and investigate the issue, but do not send passwords, one-time passwords, payment-card details, or unnecessary identification documents. We will acknowledge and resolve complaints within the periods required by applicable law.