Events

DisConnect Privacy Policy

Last updated: July 16, 2026

This Privacy Policy explains how DisConnect ("DisConnect," "we," "us," or "our"), a product of Before the Internet, handles your personal information when you download or use our mobile app, activate a membership or physical membership card, browse or buy from our online store at [website], or otherwise get in touch with us about any of these (together, the "Services"). Throughout this policy, "you" refers to anyone whose information we handle under this policy — whether you're a member, an app user, a shopper, a site visitor, or someone who has simply contacted us.

Please take a moment to read this policy in full.

Updates to This Policy

We may revise this policy periodically — to keep pace with changes in how we operate, or because the law, our practices, or our tools have changed. When we do, we'll publish the current version here, refresh the "Last updated" date above, and follow any additional notice steps the law requires of us.

How and Why We Handle Your Information

Running the Services means collecting personal information from a range of sources, described in the sections that follow. What we collect, and how we use it, depends on the ways you engage with DisConnect — as an app user, a member, a customer, or otherwise.

Beyond the specific purposes listed below, we may also rely on the information we hold to stay in touch with you, to build and refine the Services, to meet our legal and regulatory duties, to uphold our terms, and to safeguard the Services along with our rights and the rights of our members, users, and others.

The Information We Handle

The categories of personal information we gather depend on how you use the app, the membership, and the store. By "personal information" we mean any information that identifies you, relates to you, describes you, or could reasonably be linked to you. The sections below walk through the specific types.

Information You Give Us Directly

When you interact with the Services, you may hand us:

  • Contact details — such as your name, email address, phone number, and mailing address.
  • Order and membership details — including your name, billing and shipping addresses, email, phone number, membership tier, and payment confirmation, gathered when you buy a membership, a card, or merchandise.
  • Account and card credentials — such as your username, password, security questions, membership number, and the identifiers tied to your physical NFC card, used to run and secure your account.
  • App activity you choose to share — for example the apps you select to limit, the screen-time goals you set, streaks, progress, and rewards you earn inside DisConnect. This information powers the core experience.
  • Store activity — items you view, add to your cart, save, review, or purchase, along with loyalty points, referrals, and gift cards connected to your account.
  • Anything you send our support team — including whatever you decide to include when you message us for help.

Certain features simply won't work unless you give us the information they depend on. You're free to withhold it, but doing so may lock you out of those parts of the Services.

Information We Gather Automatically

As you use the Services, we may also record technical details about how you interact with them ("Usage Data"). We rely on cookies, pixels, software development kits, and comparable technologies ("Cookies") to do this. Usage Data can include your device and operating system details, app version, browser type, network and connection information, IP address, in-app behavior, and other signals about how you move through the app, the store, and your account.

Information We Receive From Others

We may also pick up information about you from outside parties — including vendors and service providers who gather it on our behalf. For instance:

  • Platform and infrastructure providers that keep our app and store running, such as Shopify (which powers our online store) and our app hosting and analytics providers.
  • Payment processors that collect and handle payment details (for example, bank account, card, and billing information) so we can take payment, deliver your card or merchandise, and provide the membership you signed up for — in other words, to carry out our agreement with you.

We, and outside parties we work with, may also automatically pick up information when you open our app, visit our store, open or click our emails, or engage with our ads — using tracking tools such as pixels, web beacons, SDKs, third-party libraries, and cookies.

Whatever we obtain from others, we handle in line with this policy. See "Other Websites and Links" below for more.

The Purposes We Use It For

Running the app, membership, and store. We use your information to deliver the Services and honor our agreement with you — processing payments, fulfilling card and merchandise orders, powering your screen-time tracking, progress, and rewards, sending you notices about your account, purchases, returns, or exchanges, setting up and managing your account and membership, arranging shipping, and handling returns and exchanges. Where our store runs on Shopify, we may also let Shopify connect your account with other Shopify services you choose to use; in that case Shopify handles your information under its own Privacy Policy and Consumer Privacy Policy.

Marketing and promotion. We may use your information to reach you with marketing and promotional messages by email, text, or mail, and to serve you ads for our products. This can involve tailoring the Services and the advertising you see on our own properties and elsewhere. If you're located in the EEA, we do this on the basis of our legitimate interest in promoting and selling our products, under Art. 6 (1) (f) GDPR.

Fraud prevention and security. We use your information to spot, look into, and act on activity that may be fraudulent, unlawful, or harmful. If you create an account, keeping your login details private is your responsibility — please don't share your username, password, membership number, or card credentials, and tell us right away if you think your account has been compromised. For EEA residents, we rely on our legitimate interest in keeping the Services secure for you and everyone else, under Art. 6 (1) (f) GDPR.

Support and improvement. We use your information to answer your questions, provide support, and make the Services better. For EEA residents, this rests on our legitimate interest in being responsive, delivering the Services effectively, and maintaining our relationship with you, under Art. 6 (1) (f) GDPR.

Cookies

Like most apps and websites, we use Cookies. For details on the Cookies tied specifically to running our Shopify store, see https://www.shopify.com/legal/cookies. We use Cookies to operate and improve the Services (including remembering your preferences and actions), and to run analytics so we can understand how people use them — in our legitimate interest to administer, improve, and optimize what we offer. We may also allow outside parties and service providers to set Cookies on our properties to help tailor content, products, and advertising here and on other sites.

Most browsers accept Cookies automatically, but you can usually adjust your settings to block or remove them. Bear in mind that doing so may degrade your experience and cause parts of the Services to malfunction or become unavailable. Blocking Cookies also may not fully stop information from being shared with outside parties such as our advertising partners.

Our website honors the Global Privacy Control (GPC) signal, which lets you opt out of certain uses or sharing of your information. If you send us a GPC signal, we'll treat it as a valid request to opt out of sharing and targeted advertising for that browser or device, and — where we can link the device to a DisConnect or Shopify account — we'll apply the opt-out to that account too. You can learn more at https://globalprivacycontrol.org/. Apart from GPC, we do not currently respond to other "Do Not Track" signals from browsers or devices.

When and With Whom We Share Information

In some situations we may share your personal information with outside parties — to fulfill our agreement with you, for other legitimate reasons, and otherwise as described in this policy. These situations include:

  • Service providers who perform work for us, such as IT and app hosting, payment processing, analytics, customer support, cloud storage, and order fulfillment and shipping.
  • Business and advertising partners who help us provide the Services and market to you; they use your information under their own privacy notices.
  • Recipients you direct us to — for example when you ask us to ship you a card or merchandise, or when you use a social media widget or login integration — with your consent.
  • Our affiliates and companies within our corporate group, in our legitimate interest in operating our business.
  • Others in connection with legal or corporate matters — such as a merger, acquisition, financing, or insolvency; to meet legal obligations (including responding to subpoenas, warrants, or similar demands); to enforce our terms; and to protect the Services and the rights of DisConnect, our users, and others.

Over the past 12 months, we have shared the following categories of personal information for the purposes described above in "How and Why We Handle Your Information" and this section:

Categories of Personal Information Disclosed

Category Types of Recipients
Identifiers (basic contact details plus certain order, membership, and account information) Service providers acting on our behalf (including hosting and internet providers, payment processors, fulfillment partners, support partners, and analytics providers); business and advertising partners; affiliates
Records under the California Customer Records statute (basic contact, order, and account details) Same as above.
Commercial information (order, store activity, and support information) Same as above.
Internet and network activity (Usage Data) Same as above.
Geolocation data (approximate location from IP address or similar means) Same as above.

We do not use or disclose sensitive personal information to draw inferences about you, or otherwise without your consent.

With your consent, we share personal information for advertising and marketing. Over the past 12 months, we have "sold" or "shared" (as those terms are defined under applicable law) the following personal information for advertising and marketing purposes:

Category of Personal Information Types of Recipients
Identifiers such as name, email address, and phone number Business and advertising partners
Commercial information such as records of products or memberships purchased Business and advertising partners
Usage Data Business and advertising partners

Content You Post

Parts of the Services may let you post reviews, referrals, or other content. Anything you share in a public area of the Services becomes public and visible to anyone.

We can't control who sees information you choose to make public, and we can't guarantee that people who access it will respect your privacy or keep it safe. We're not responsible for the privacy or security of anything you make publicly available, or for how others use or misuse information you post or receive from third parties.

Other Websites and Links

The Services may link to websites, apps, or platforms run by others. If you follow a link to a property we don't operate or control, review its privacy and security terms before using it. We don't guarantee, and aren't responsible for, the privacy, security, accuracy, or reliability of those properties. Information you share in public or semi-public spaces — including third-party social networks — may also be visible to other users of the Services or of those platforms, with no limits on how we or others may use it. Linking to a third-party property doesn't mean we endorse it or its operators unless we say so within the Services.

Children's Information

The Services aren't meant for children, and we don't knowingly collect personal information from them. If you're a parent or guardian and believe your child has given us their information, contact us using the details below and we'll delete it. As of the date of this policy, we have no actual knowledge that we "sell" or "share" (as defined under applicable law) the personal information of anyone under 16.

Security and Data Retention

No security setup is flawless, and we can't promise "perfect security." Information you send us may also be exposed while in transit, so we recommend against using insecure channels to share anything sensitive or confidential with us.

How long we keep your personal information depends on the circumstances — for example, whether we still need it to run your account and membership, deliver the Services, meet legal obligations, resolve disputes, or enforce our agreements and policies.

Your Rights and Choices

Depending on where you live — including under Canada's PIPEDA, applicable U.S. state privacy laws such as the CCPA/CPRA, and the GDPR in the EEA and UK — you may have some or all of the rights below. These rights aren't absolute, apply only in certain situations, and in some cases we may decline a request where the law permits.

  • Access / know — request access to the personal information we hold about you, including how we use and share it.
  • Deletion — request that we delete personal information we hold about you.
  • Correction — request that we fix inaccurate personal information.
  • Portability — request a copy of your personal information and, in certain cases, ask us to transfer it to another party.
  • Opt out of sale, sharing, or targeted advertising — tell us not to "sell" or "share" your personal information, or to stop processing it for "targeted advertising" as defined under applicable law. If you visit our site with the Global Privacy Control signal enabled, we'll treat it as a valid opt-out for that browser or device where required.
  • Restrict processing — ask us to pause or limit how we process your information.
  • Withdraw consent — where we rely on your consent, withdraw it at any time.
  • Appeal — where we decline a request, ask us to reconsider by replying to our response.
  • Manage communications — opt out of promotional email anytime via the unsubscribe link in our messages. Even then, we may still send non-promotional messages about your account, membership, or orders.

You can exercise these rights where indicated within the Services or by contacting us using the details below. We won't discriminate against you for exercising them. We may need to verify your identity first — for example, by confirming your email or account details — before we act on a request. Where the law allows, you may use an authorized agent to submit a request on your behalf; we'll ask the agent for proof of your authorization and may still need to verify your identity directly. We'll respond within the timeframe the law requires.

Complaints

If you have concerns about how we handle your personal information, please reach out using the contact details below. If our response doesn't resolve things, you may — depending on where you live — have the right to appeal by contacting us again, or to complain to your local data protection authority. In Canada, you may contact the Office of the Privacy Commissioner of Canada; in the EEA, you can find the relevant supervisory authorities through the European Data Protection Board.

International Transfers

We may transfer, store, and process your personal information outside the country where you live, and our staff, service providers, and partners in other countries may process it as well. Where we move personal information out of Canada, the EEA, or the UK, we rely on recognized safeguards — such as the European Commission's Standard Contractual Clauses or equivalent measures approved by the relevant UK or Canadian authority — unless the destination country is recognized as offering an adequate level of protection.

Contact Us

If you have questions about our privacy practices or this policy, or you'd like to exercise any of your rights, email us at connect@beforetheinternet.com or write to us at [mailing address].

For the purposes of applicable data protection laws, and unless we state otherwise, DisConnect is the controller of your personal information.