Last updated: September 28, 2026
Account information: Email address, username, and display name when you create an account; an avatar photo and social links if you add them; and the date and version of the Terms of Service you accepted.
Phone number: Collected during phone verification, which unlocks social features. Verified via Twilio. We store the verified number on your account; other users never see it.
Session data: Poker session details you record — game type, stakes, buy-ins, cash-outs, duration, profit/loss, venue, notes, and stack updates — plus your bankroll deposits, withdrawals, and corrections. Who can see this is explained in the next paragraph.
Who can see your data: By default your profile is public: any signed-in ChipTrove user can see your profile, your non-private sessions (including their game, stakes, venue, notes, profit/loss, and photos), the posts you share to the feed and the photos on them, and, while you are playing a non-private session, that you are live and at which venue. By default, starting and ending a session posts to the feed. In Settings > Profile Privacy you can make your account private (only your followers then see your profile and sessions), hide your session history, or hide your profit/loss. You can mark any single session private when you log or edit it, and Settings > Feed Sharing controls which session events post to the feed. You can also make your account private and turn feed sharing off when you first set up the app. Sessions you import from a CSV file are private by default. Your bankroll balance and adjustments, your phone number, and your email address are never shown to other users.
Hand histories: Descriptions of poker hands that you type or dictate in Record Hand. Voice input is transcribed by Apple's iOS speech recognition, which may process the audio on Apple's servers; we receive only the resulting text, never the audio. With your permission, your description is sent to Anthropic (Claude) to be turned into a structured hand (see Section 9), and the hands you save are stored with your session.
Table Strategy descriptions: When you describe opponents (typed or dictated) for strategy analysis, your description is sent to Anthropic with your permission (see Section 9). We do not store your descriptions or the analysis; the result is shown on screen and is not saved.
CSV imports: When you import sessions from a CSV file, the file is sent to our servers to be converted into sessions, and, with your permission, part of it is sent to Anthropic (see Section 9).
Photos: Avatars and photos you attach to sessions, stack updates, and hands are stored in cloud storage. Your avatar is publicly accessible. A photo attached to a session or to a feed post can be seen by the other users who can see that session or post (see “Who can see your data” above); photos on a private session, and on a stack update you did not share to the feed, are visible only to you. All uploaded images are automatically scanned by a third-party image-moderation service (Sightengine) to detect prohibited content; images may be quarantined pending review.
Direct messages: Messages you send are stored in our database and are visible only to you and the other person, except that if either of you reports a message, a copy is kept with the report for our team to review. Unsending a message hides it from the other person immediately; its text is kept until your account is deleted. Deleting your account deletes the messages you sent. The other person's messages stay until they delete their own account.
Push notifications: If you allow notifications, we store your device's push token so we can deliver them.
Local device storage: Your live session (timer, buy-ins, stack), changes waiting to be saved to our servers, and a cached copy of some of your data (so the app works offline) are stored on your device using MMKV, a local storage library. Signing out clears them. If the app signs you out on its own (for example, when your login expires), your live session and unsaved changes stay on the device so they can be saved when you sign back in. Deleting the app removes this data.
Usage and diagnostics data: We use PostHog for product analytics: the screens you open and the features you use (for example, that a hand was parsed or a drill answered), linked to your account ID, a random device identifier, and basic device information (such as device model, OS version, and app version). We use Sentry for crash reporting, error reporting, and performance monitoring; Sentry receives your account ID and email address together with crash reports, error details, performance data, and basic device information from the app and from our servers. Analytics events never include dollar amounts. Like any online service, PostHog and Sentry also see the IP address your device connects from.
We do not sell your personal data. We share data only with the service providers below, and only to run ChipTrove:
Every service provider that receives your data from us must protect it to a standard at least equal to the protection described in this policy.
You can control your data through the app:
Your data is protected by:
We keep your data while your account is active. When you delete your account, we delete your profile, sessions, hands, photos, the messages you sent, and the rest of your account data. This deletion is permanent and cannot be undone.
Some records follow their own schedules:
ChipTrove is not intended for users under 18. We do not knowingly collect data from minors.
ChipTrove processes poker session data including buy-in amounts, cash-out amounts, and profit/loss calculations. This data is:
Three features use Anthropic's Claude API: Record Hand (turning a hand you describe into a structured hand), Table Strategy (analyzing the opponents you describe), and CSV import (working out how your file's columns map to ChipTrove's session fields). What each one sends:
With it we send our own instructions and reference strategy data. We do not send your email address, phone number, or account ID. Anthropic's data retention policy applies to this processing.
Your permission: Before any of these features sends anything to Anthropic for the first time, the app asks your permission, naming Anthropic and describing what will be sent. If you decline, nothing is sent, every other feature keeps working, and the app asks again the next time you use an AI feature. You can withdraw your permission at any time in Settings > AI Features; after that, nothing is sent to Anthropic unless you allow it again.
We will only disclose your data to law enforcement when required by valid legal process (court order, subpoena, or warrant). We will notify you of such requests unless legally prohibited from doing so. Separately, as U.S. law requires, we report apparent child sexual abuse material, together with the information needed to identify the account involved, to the National Center for Missing & Exploited Children (NCMEC).
California residents have the right to: know what personal data we collect, request deletion of their data, and opt out of data sales (we do not sell data). To exercise these rights, contact us or use the account deletion feature in the app.
We may update this policy. Material changes will be communicated via the app. Continued use after changes constitutes acceptance.
Questions about this policy? Email support@chiptrove.com.