Koa Download ↓

Privacy Policy

Last updated: March 2026  ·  Applies to: Koa iOS app and talktokoa.com

1. Who We Are

Koa ("Koa", "we", "us", or "our") is an AI-powered recovery companion app designed to support men working to overcome pornography addiction. Our app is available on iOS and our website is at talktokoa.com. You can contact us at hello@talktokoa.com.

2. Data We Collect

We collect the minimum data necessary to provide the Koa service:

  • Account data: Your email address, used for authentication and account recovery.
  • Recovery data: Chat messages with the Koa AI, journal entries, daily check-ins, streak and progress data, and any goals or preferences you set during onboarding.
  • Usage data: Anonymous analytics events (e.g. which screens you visit, feature usage). We do not link these events to your email or identity.
  • Device data: Device type, OS version, and app version — used for crash diagnosis and compatibility. No device identifiers (IDFA, IDFV) are collected.
  • Subscription data: Your subscription status (free or premium). We do not store payment card details — these are handled entirely by Apple.

We do not collect your name, phone number, location, contacts, or camera/microphone access.

3. How We Use Your Data

  • To provide and personalise the Koa AI companion experience
  • To generate journal prompts, progress insights, and check-in analysis
  • To enforce subscription limits and verify entitlements
  • To send optional push notifications (only if you grant permission)
  • To understand aggregate product usage so we can improve the app
  • To respond to your support requests

We do not use your data to train AI models, serve advertising, or profile you for third-party purposes.

4. Third-Party Services

We use the following third-party services to operate Koa. Each is bound by its own privacy policy:

  • Supabase — database and authentication. Your data is stored on servers in the United States and encrypted at rest. Supabase Privacy Policy
  • Anthropic — AI message processing. Your chat messages are sent to Anthropic's API to generate responses. Anthropic does not use Koa user messages to train its models under our API agreement. Anthropic Privacy Policy
  • PostHog — anonymised product analytics. Only your anonymous user ID is sent — never your email or recovery data. PostHog Privacy Policy
  • RevenueCat — subscription management. RevenueCat processes your App Store receipt to determine your subscription status. RevenueCat Privacy Policy
  • Apple — push notifications and in-app purchases. Governed by Apple's Privacy Policy.
  • Expo — app infrastructure and push notification delivery. Expo Privacy Policy

5. Data Storage and Security

All user data is stored in Supabase on US-based servers. Data is encrypted at rest and in transit (TLS). Authentication tokens are stored in iOS Keychain (not accessible to other apps). We apply row-level security policies so each user can only access their own data.

6. Data Retention

Your data is retained for as long as your account is active. When you delete your account (available in Settings → Privacy), all your data — messages, journal entries, check-ins, streaks, and profile — is permanently deleted within 30 days. Authentication data is deleted immediately.

7. Your Rights

You have the right to:

  • Access your data — export all your data from Settings → Privacy → Export My Data
  • Delete your data — delete your account from Settings → Privacy → Delete Account
  • Correct your data — update your profile in Settings → Profile
  • Object to processing — contact us at hello@talktokoa.com

8. We Do Not Sell Your Data

We do not sell, rent, or share your personal data with advertisers or data brokers. Your recovery journey is private.

9. Sensitive Data

Koa processes sensitive personal data relating to your mental health and recovery. We treat this data with the highest level of care. It is never used for advertising, shared with employers, or made available to any party other than the third-party processors listed above — and only to the extent necessary to operate the app.

10. Children's Privacy

Koa is not directed at individuals under 18 years of age. We do not knowingly collect personal data from minors. If you believe a minor has created an account, please contact us and we will delete it promptly.

11. Push Notifications

If you grant notification permission, we may send you optional check-in reminders and motivational messages. You can withdraw this permission at any time in iOS Settings → Koa → Notifications.

12. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of material changes via email or in-app notice. The "Last updated" date at the top of this page reflects the most recent revision.

13. Contact

If you have questions about this Privacy Policy or how we handle your data, please contact us at hello@talktokoa.com.

Koa

© 2026 Koa. All rights reserved.

Privacy Policy Terms of Service Contact