Draft. This text is pending legal review. Highlighted {{…}} fields will be filled in before release.
Privacy Policy
Effective date: {{EFFECTIVE_DATE}}
This policy explains which personal data the CartCooler mobile app (the "App") collects, why, who it is shared with, and your rights over it. The data controller is {{DATA_CONTROLLER}}. You can reach us at privacy@cartcooler.app.
Data we collect
Account data
- Email address — to create your account and sign you in.
- If you sign in with Google, the name and profile picture link that Google sends us are kept in the authentication record. The App does not display them or use them for anything else.
- We never see your password; the authentication service stores it only in hashed form.
Data you enter
- Monthly net income, currency and monthly working hours — to calculate how many hours of work a product costs you. Entering your income is optional.
- Language and theme preference.
Products you add to the cooling tank
- The product link and the title, image link and price read from the page, plus the store's domain.
- When you added the product, the cooling period, the decision you made (saved / bought / dropped) and when you made it.
- Your hourly labour value at the time you added it and the product's labour cost (changing your income later does not rewrite past records).
Crash and usage data
- Crash reports (Sentry): for debugging — device model, operating system version, app version and the technical details of the error. Reports carry your account's random user ID, not your email address.
- Usage analytics (PostHog): to understand which parts of the App are used, for example adding a product to the tank, making a decision, finishing onboarding, opening and closing the App. Events are linked to your random user ID. Prices and income are never sent raw to analytics; only a coarse labour range is sent (for example "1–4 hours").
- These services may technically process your IP address when connecting.
What we do not collect
We do not collect location, contacts, your photo library, microphone, or bank or card details. Purchases happen in the store, not in the App. When you save a share card to your gallery, only that image is written; we do not read your gallery.
Why we process data
- The App's core function: cooling products, calculating their labour cost, showing your decisions and your savings.
- Managing your account and keeping it secure.
- Finding and fixing bugs and improving the App.
- Verifying your subscription status (if you use premium).
We do not sell your data or use it for advertising.
Who we share it with
We only share data with service providers that help us run the App:
- Supabase — database and authentication; servers in the European Union (Frankfurt).
- Sentry — crash reports; European Union (Germany) data region.
- PostHog — usage analytics; European Union data region.
- Google — if you use Sign in with Google.
- RevenueCat and Google Play — to verify your purchase history if you buy a subscription.
When you add a product link, our server requests the store page to read its details (title, price, image). Product images are loaded directly from the store's servers to your device, so the store can see your IP address.
We may share data with competent authorities when legally required.
Stored on your device
Your session is kept in the device's secure storage. Products you add while offline wait on the device until you are back online. Your language and theme preferences are also stored on the device. Cooling reminders are scheduled on your device; we do not send notifications from a server for this.
Retention
Account and product data are kept while your account exists. Crash reports and analytics events are kept for the retention period of the respective service ({{SENTRY_RETENTION}}, {{POSTHOG_RETENTION}}).
Your rights
- Export your data: Settings → Data → "Export my data" gives you your profile and all your products as a readable file.
- Correction: You can change your income, currency and working hours in Settings.
- Delete your account: Settings → Account → "Delete my account and data" permanently deletes your account and all product and decision records linked to it. If you cannot access the App, you can request deletion at https://cartcooler.app/delete-account.
- Once your account is deleted, the random user ID left in crash and analytics records can no longer be linked to any account. If you want those records deleted too, write to privacy@cartcooler.app.
- If you live in the EU, you have the rights of access, rectification, erasure, restriction, portability and objection under the GDPR, and you may lodge a complaint with your data protection authority. If you live in Türkiye, see the "KVKK Information Notice" for your rights under Law No. 6698.
Children
The App is not directed at children under 16 and we do not knowingly collect their data.
Changes
When we update this policy we change the effective date. We announce significant changes inside the App.