Privacy Policy
1) Data Controller
The controller of personal data is:
Canario-Lab / Chrumek App
Contact e-mail: chrumek@chrumek.app
2) Scope and purpose
The Chrumek app helps track savings by recording "temptations" and confirmed transfers / amounts set aside.
We do not operate user accounts and we do not collect data that would allow us to identify you directly.
3) Data processed in the app (locally on your device)
Data you enter in the app (for example savings entries, amounts, dates, categories, goals, and settings) is stored locally on your device.
It is not automatically sent to us or to our servers.
4) Features requiring system access
The app may use system features and related data only to the extent necessary for it to work:
- Notifications (UNUserNotificationCenter) - if you enable reminders, iOS delivers notifications according to your settings.
- Language / region / currency / theme - used to format app content and appearance (without sending anything to us).
5) Bug reports / support contact
If you use the "Report a bug" option or contact support:
- the app may create a draft e-mail in your mail app,
- the content may include diagnostic information (for example app version, iOS version, or language / currency settings) - exactly what you can see in the message before sending it,
- the e-mail is sent only if you approve it yourself.
A sent e-mail is processed by your mail provider and by us as the recipient, solely for the purpose of handling your request.
6) Purchases and Premium access (Apple + RevenueCat)
If paid features are available in the app (subscriptions or a one-time lifetime access purchase):
- payments are handled by Apple (App Store / In-App Purchases / StoreKit),
- the app uses RevenueCat as the infrastructure provider for purchase and Premium access management, including presenting offers, verifying access status, recognizing an active subscription or lifetime purchase, and granting Premium access.
As part of purchase and Premium access management, technical purchase-related data may be processed, such as:
- transaction / purchase identifiers and product information,
- Premium access status (active / inactive), subscription status (for example renewals), or information about a one-time purchase,
- a technical user identifier used to link Premium access status (for example an anonymous App User ID generated by the SDK).
RevenueCat processes this data to provide purchase and Premium access management services (as a processor), and Apple processes payment-related data according to its own rules.
7) Analytics and tracking
The app may use Firebase Analytics to collect anonymous data about how the app is used, such as adding an entry, completing a transfer, reaching the free transfer limit, viewing the Premium offer screen, or tapping the main button on that screen.
This data does not include entry contents, amounts, goal names, categories, prices, purchase plans, payment data, or information that directly identifies you. The data is not linked to the user's identity or to a specific device. We use it only to analyze how the app works, improve stability, and develop features.
We do not use analytics data to sell data or for advertising profiling.
8) Website (landing page)
If you visit our website, the hosting provider (for example GitHub Pages) may automatically process standard technical data in server logs (including IP address, browser type, and the date and time of the request) for security, diagnostics, and service continuity purposes. The scope and rules of that processing follow the hosting provider's policies.
9) Data recipients
Data may be disclosed only to:
- payment and Premium access providers: Apple and RevenueCat (purchase and access status management),
- analytics providers: Google Firebase Analytics (anonymous app event analytics),
- public authorities, if required by law.
10) Storage period
- Data entered in the app is stored locally until you remove it (for example by deleting entries or deleting the app).
- E-mail correspondence is stored for as long as needed to handle the request and defend against claims (if necessary).
11) User rights (EU / EEA)
If, in a given case, we process your personal data (for example when you send us an e-mail), you have the right to:
- access, rectify, erase, or restrict processing,
- object,
- lodge a complaint with the competent supervisory authority.
The scope of the information obligations follows in particular from Article 13 GDPR.
12) Security
We apply reasonable organizational and technical measures appropriate to the nature of the service. Because app data is stored locally, protecting your device (passcode / Face ID) is also an important part of security.
13) Policy changes
This policy may be updated as app features or legal requirements change. The current version will be published on the app website.