Privacy Policy
Last updated: June 6, 2026
Your privacy matters to us. This Privacy Policy explains what information Peak collects, how we use and protect it, and the choices you have over your data.
Peak app is owned and operated by Peak. Peak app is an AI-powered learning and collaboration platform that guides users through structured skill development, project-based verification, and collaborative workspaces. By using the App, you agree to the practices described in this Policy.
Information We Collect
We collect only the information needed to operate and improve the App. This falls into the following categories:
Account & Profile Information
- Your full name, email address, and authentication credentials (created through Firebase Authentication, including email/password and Google sign-in).
- Profile details you provide, such as your bio, profile picture, selected learning track, and account tier.
- Onboarding status used to tailor your first-time experience.
Learning & Progress Data
- Your skill progress, current and longest learning streaks, successful-day timestamps, completed levels, and any unlocked rewards (for example, Quality Points and milestone bonuses).
User-Generated Content
- Code submissions, practice-project answers, and responses you provide during interactive AI roleplay and simulation exercises.
- Chat messages you send in private chats, group chats, and workspace project channels — including text, file attachments, images, and voice messages.
- Voice recordings you create for transcription, processed as described in the AI & Voice Processing section.
Workspace (“Company”) Data
- Workspace profiles, projects, tasks, and your assigned role (Officer, Manager, or Employee).
- Applications you submit to join a workspace, including any resume text and application status.
Financial & Wallet Data
- Virtual balances tied to your account, including wallet balances, demo credits, and transaction history, as well as workspace vault and demo balances.
- Payment and billing metadata processed securely through Stripe. We never receive or store your raw card details on our servers.
Communications Data
- Real-time voice and video used for workspace communication is routed through the Agora real-time network and is not stored on our servers.
- Push-notification tokens used to deliver chat, application, and streak-reminder notifications via Firebase Cloud Messaging.
Usage & Analytics Data
- App events such as sign-ups, logins, onboarding completion, and streak milestones, used to fix bugs and understand how features perform. Analytics tracking is subject to your consent (see Your Privacy Choices & Consent).
How We Use Your Information
- To authenticate your account and sync your profile across devices.
- To deliver personalized, AI-generated learning plans and verify your project submissions.
- To transcribe voice messages and generate spoken audio where applicable.
- To power real-time chats, workspace collaboration, and team communication.
- To track learning streaks, award rewards, and recognize milestones.
- To send transactional push notifications for chats, workspace applications, and reminders.
- To diagnose technical issues, maintain security, and improve the App.
How Your Information Is Stored
Firebase Cloud Firestore is our primary database for user profiles, learning progress, chats, workspaces, applications, and notifications. Sensitive financial data (such as wallet balances and transaction history) is held in a protected subcollection secured by server-side Firebase Security Rules.
Supabase stores our read-only educational curriculum (skill overviews, levels, tasks, summaries, and project options). For security, the App never connects to Supabase directly; curriculum requests are routed through a secure Firebase Cloud Function so that database access tokens are never exposed to your device.
AI & Voice Processing
Some features rely on third-party AI and voice services to function:
- Google Gemini API grades your submissions, verifies skill progression, and powers interactive roleplay and simulation exercises. Your code submissions, practice answers, and roleplay messages are sent to Google for processing.
- Google Cloud Speech-to-Text transcribes your voice messages into text. Audio is sent securely for transcription and returned as text.
- Google Cloud Text-to-Speech converts text content into synthesized audio that is streamed back to you.
How We Share Your Information
We do not sell your personal data. To provide the App, we share data with the trusted service providers below, each acting as a data processor for the stated purpose:
| Service | Purpose | Data shared |
|---|---|---|
| Firebase Auth | Sign-in & authentication | Email, password, Google sign-in tokens, account ID |
| Firebase / Firestore | Database & storage | Profile, progress, chats, workspace & wallet data |
| Supabase | Curriculum catalog | Learning-track selections (via secure cloud function) |
| Google Gemini API | AI grading & roleplay | Code, practice answers, roleplay messages |
| Google Cloud STT | Voice transcription | Voice recordings (returned as text) |
| Google Cloud TTS | Speech generation | Text content (returned as audio) |
| Agora RTC | Live voice/video calls | Real-time audio/video streams (not stored) |
| Stripe | Payments & credits | Billing info & payment metadata (no raw card data on our servers) |
| Firebase Analytics | Usage analytics | App events (consent-based) |
| Facebook App Events | Marketing optimization | Standard mobile event attributes (consent-based) |
| TikTok SDK (Android) | Conversion measurement | Device conversion events (consent-based) |
We may also disclose information where required by law, to enforce our Terms of Service, or to protect the rights, safety, and security of our users and the App.
Your Privacy Choices & Consent
- Tracking consent: Before any advertising or marketing analytics are enabled, the App asks for your permission — through Apple’s App Tracking Transparency on iOS and an equivalent consent dialog on Android.
- Opt out anytime: If you decline or later opt out, advertising signals to Firebase Analytics (GA4), the Facebook SDK, and the TikTok SDK are disabled. You can change your choice at any time using the tracking consent toggle in the App’s settings.
Data Retention & Account Deletion
We retain your information for as long as your account is active or as needed to provide the App. You are in control of your data:
- Account deletion: You can permanently delete your account at any time by tapping Remove Account in Settings. This erases your Firestore profile document — including your profile details, learning streaks, and skill progress — and then removes your credentials from Firebase Authentication.
- Shared content: To preserve the integrity of group chats and workspace project histories, messages you sent in shared spaces may remain after deletion, but they are dissociated from your deleted profile.
- Opt-out: You can disable analytics tracking at any time using the consent toggle in Settings.
Data Security
We protect your data using industry-standard safeguards, including server-side Firebase Security Rules, restricted access to sensitive financial subcollections, and routing of third-party database and AI requests through secure cloud functions so that access tokens are never exposed to your device. No method of transmission or storage is completely secure, but we work continuously to protect your information.
Children’s Privacy
Peak is intended for users aged 16 and older. We do not knowingly collect personal information from children under the age threshold required in their region. If you believe a child has provided us with personal information, please contact us so we can remove it.
International Data Transfers
Our service providers (including Google, Stripe, Agora, Supabase, Meta, and TikTok) may process and store data in countries other than your own. Where data is transferred internationally, it remains protected in accordance with this Policy and applicable safeguards.
Changes to This Policy
We may update this Privacy Policy from time to time. When we make material changes, we will revise the “Last updated” date above and, where appropriate, notify you within the App. Your continued use of Peak after an update means you accept the revised Policy.
Contact Us
If you have questions about this Privacy Policy or your data, contact us at support@peak.com.