Privacy.
Tonight is built around two ideas: tell you what's happening near you tonight, and ask for the absolute minimum to do that. This page is the long-form version of that promise.
1. What we collect
We only collect what the app actually needs to function:
- Account info. When you sign in, your phone number (via Firebase Phone Auth) or your name and email address (via Google Sign-In). We never see your Google password.
- Location. When you grant permission, the app reads your approximate location to find happy hours nearby. Location is used to query venues in your area — we don't store your location history on our servers. Analytics are cohorted by a coarse (~5 km) area code, never exact coordinates.
- Saves and activity. Venues you save are stored with your account so they follow you across reinstalls, and each save bumps that venue's public counter. Reminders are scheduled locally on your device — we don't see them. Which clips you've watched is stored only on your device.
- Search text. When you use the vibe search ("cozy wine bars for a date"), the text you type is sent to our servers to run the search. We don't use it to profile you.
- Group crawls. If you create or join a crawl, your display name is visible to the other members of that crawl, along with your votes on stops. Join codes are shareable by design — share them with people you actually want on the crawl.
- Creator applications. If you apply to the creator program, we collect what you submit: name, email, Instagram/TikTok handles, follower count, city, sample links, and your pitch. A human reviews it; we reply by email.
- Clips (creators only). If you're an approved creator and publish a clip, we store the video, your caption, your handle, and the venue you tagged, and we display them publicly in the app. Recording uses your camera and microphone only while you're actively capturing — never in the background.
- Reports and blocks. If you flag a venue, report a clip, or block a creator, we store the report so a human can act on it. Block lists live on your device.
- Usage events. Analytics events (e.g., which screens you open, whether you walked to a venue) via Firebase Analytics, tied to a Firebase-issued identifier. We use them in aggregate to see which features work.
- Crash logs and diagnostics. Apple may share aggregated crash reports with us if you've opted into sharing diagnostics in iOS Settings.
2. What we don't collect
- We don't read your contact list, calendar, or photo library. If you upload a clip from your library, iOS's picker hands us only the video you chose.
- We don't access your camera or microphone except while a creator is actively recording a clip.
- We don't track you across other apps or websites.
- We don't build advertising profiles, and we don't sell your data. Ever.
3. How AI is used
Tonight uses Google's Gemini models (via Google Cloud Vertex AI) server-side for four things:
- Reading venue websites to extract happy-hour deals — public pages only, no user data involved.
- Understanding your vibe search — your typed query plus a list of candidate venues.
- Translating deal text into your language.
- Screening creator clips before they go live — the video is analyzed for content that breaks the house rules, then a human reviews it.
This processing exists to provide the feature in front of you. Under Google Cloud's terms, data sent to Vertex AI is not used by Google to train their models.
4. Who we share with
Tonight runs on a small set of infrastructure providers. We share only what each one needs to do its job:
- Google / Firebase — authentication, analytics, Firestore database, video storage. Subject to Firebase's privacy terms.
- Google Cloud — our backend runs on Cloud Run, and AI features run on Vertex AI (see section 3).
- Apple — receives device-level telemetry per its own privacy terms. We do not control this layer.
- Vercel — hosts this website (not the app's data).
5. Your rights
You can, at any time:
- Delete your account. Open the You tab, scroll to the "Danger zone" section, and tap Delete account. Deletion is immediate and permanent — your profile and sign-in record are removed and, for Sign in with Apple users, your Apple refresh token is revoked. If for any reason the in-app delete doesn't work, email support@tonightapp.com with the subject "Delete my account" from the address used to sign in and we'll handle it within 30 days.
- Delete your clips. Creators can delete any of their clips from the Studio; deletion removes it from the public feed immediately.
- Leave or end crawls. Hosts can end a crawl for everyone; anything you voted on goes with it.
- Revoke permissions. iOS Settings → Tonight — location, camera, and microphone can each be turned off independently. The app still works; the related features simply pause.
- Opt out of analytics. iOS Settings → Privacy & Security → Analytics & Improvements → Share With App Developers.
6. Children
Tonight is not intended for users under 21. We don't knowingly collect data from anyone under 21. If you believe a child has signed up, email us and we'll remove the account.
7. Security
We use industry-standard encryption in transit (TLS) and at rest (Firestore and Cloud Storage encryption). No system is perfect; if you spot a security issue, please email support@tonightapp.com.
8. Changes
We'll update this page when our practices change and bump the effective date at the top. If a change is material we'll surface a notice in the app the next time you open it.
9. Contact
Questions, requests, or polite complaints: support@tonightapp.com.