Last updated: September 7, 2026
Barproof doesn't have user accounts and doesn't require signing in. Your recipe book — specs you create or edit, notes you write on any drink, favourites, folders, your house menu, your bar list, the 86 board, prep recipes, and custom ingredients — is stored locally on your device only.
None of it is sent to any server unless you choose to join a shared board with your co-workers, which syncs two things and nothing else. See Shared Boards below. Barproof has no server of its own and no user accounts either way.
Because that data lives only on your phone, uninstalling Barproof deletes it permanently. Use Settings → Export to save a backup file before uninstalling or switching phones. The one exception is a shared board, which continues to exist for the other people on it — see below.
Barproof uses Google Analytics for Firebase to understand how the app is used in aggregate. This collects:
Two coarse properties are attached: whether you have unlocked the paid features, and a rough bucket for how many of your own recipes you have saved (none, 1–4, 5–19, or 20 or more). The bucket is a range, never a number tied to anything you wrote.
What is deliberately never collected. The content of your book never leaves your phone and is never included in any analytics event — not recipe names you type, not the text of any note, not names of custom ingredients you create, not anything typed into the recipe or prep editors, and not anything pasted into the spec importer. Events carry counts and fixed values only: that a search was run, not what you searched for.
Advertising identifiers. Barproof does not use your device's advertising ID. Collection of it is explicitly disabled and the permission is removed from the app at build time. Barproof contains no advertising and shares nothing with advertisers.
Turning it off. Settings → Analytics. Switching it off stops Barproof sending any further events. The app works identically either way; nothing is gated on it.
Barproof lets a group of bartenders working the same bar share a single 86 board. This is entirely optional. If you never create or join one, nothing in this section applies to you and nothing leaves your device.
What is shared. Exactly two things: which ingredients are currently marked out, and which drinks are on the house menu. Both are shared as internal identifiers, along with the name you give the bar.
What is never shared. Everything else. Your specs, the notes you write on any drink, your prices and pour costs, your preps, folders, favourites, custom ingredients, your bar list, and your 86 history all stay on your device exactly as described above. Joining a shared board does not upload your book, and the personal 86 board you had before joining is set aside untouched — it returns unchanged if you leave.
Identity. Joining creates an anonymous identifier through Firebase Authentication. It is not linked to an email address, a name, a Google account, or any other app. It exists so the board can tell one device from another.
Who can see a board. Anyone holding its six-character code can read and edit it. There is no approval step and no way to remove someone — this matches how a board on the wall works, and it means you should only give the code to people you would hand a marker. Boards cannot be searched for or discovered; the code is the only way in.