Privacy policy

1.

General information

This application respects your privacy and has been designed under the principles of data minimization and privacy by design. We do not require registration or login and we do not request information that directly identifies users.

2.

Data we collect

2.1 Direct personal data

We do not collect personally identifiable data such as:

  • Full name
  • Postal address
  • Email address
  • Phone number

2.2 Technical and usage data (pseudonymized)

The application collects technical and usage data in a pseudonymized manner, which does not allow the user to be directly identified, such as:

  • Technical device identifiers
  • Events occurring within the application
  • Session duration
  • Information about errors, crashes or performance
  • Tokens required to send push notifications

This data is used exclusively for:

  • Improving the stability and operation of the application
  • Analysing aggregate usage of features
  • Detecting errors and technical failures
  • Managing informational notifications

We do not combine this data with information that allows you to be personally identified.

3.

SDKs and external providers

We use the following services as data processors, in accordance with article 28 of the GDPR:

  • Firebase (Google LLC) – basic analytics and technical services
  • Mixpanel, Inc. – aggregated usage analytics
  • Microsoft Clarity (Microsoft Corporation) – user experience analysis
  • Sentry (Functional Software, Inc.) – error monitoring
  • OneSignal, Inc. – sending push notifications
  • RevenueCat, Inc. – subscription and payment status management

These providers may process pseudonymised technical data in accordance with their own privacy policies and data processing agreements (DPA).

4.

Subscriptions and payments

Subscriptions (weekly, monthly and annual) are processed exclusively through:

  • Google Play Store
  • Apple App Store

We do not have access to or store:

  • Payment methods
  • Card data
  • Transaction history

Cancellations and refunds must be managed directly with the corresponding platform.

5.

International transfers

Some providers may process data outside the European Economic Area. In these cases, appropriate safeguards apply, such as:

  • Standard Contractual Clauses (SCC)
  • Participation in the EU–US Data Privacy Framework (where applicable)
6.

Data retention

  • Technical and usage data: kept in aggregate form as long as they are necessary for analysis and improvement of the service
  • Subscription data: managed and maintained by Google and Apple according to their policies

We do not carry out individual profiling or make automated decisions that produce legal effects.

7.

User rights

Although the data is processed in pseudonymised form, you may exercise your rights under the GDPR:

  • Access
  • Rectification
  • Erasure
  • Restriction of processing
  • Object

Additionally, you can:

  • Turn off tracking from device settings
  • Disable push notifications
  • Cancel subscription from the corresponding store

For Mixpanel, you can opt out of being tracked in accordance with their GDPR-compliant opt-out mechanisms.

Microsoft Clarity and analytics cookies

We use Microsoft Clarity, only with your consent, to obtain heatmaps and session recordings that help us understand and improve website usage. You can change your choice at any time through “Cookie settings”.

8.

Security

We apply reasonable technical and organizational measures to protect the data processed, including:

  • Encryption in transit (TLS)
  • Access control
  • Use of suppliers that meet recognized security standards
9.

Changes to this policy

We may update this policy to reflect legal or technical changes. The effective date will be updated in this document. Continued use of the application implies acceptance of the current policy.

10.

Contact

If you have any questions related to privacy or data processing, you can contact us at:

📧 info@legal-assistant-ai.com