Privacy Policy, Drypp
This policy describes how Drypp (“the app”, “we”, “us”) processes information when you use our mobile application. Our design principle is simple: your subscription data belongs on your device, not on our servers.
1. What data we collect
Subscription and app content you enter (such as service names, amounts, renewal dates, categories, notes, and related fields) is stored locally on your device using on-device storage (e.g. local database / secure storage mechanisms provided by the operating system).
We do not operate a mandatory user account in the app, and we do not require you to register an email address with us to use Drypp’s core features.
No bank connections. Drypp does not connect to your bank, card issuer, or other financial institutions, and does not request banking credentials or login details.
2. Data on our servers
By default, the subscription records you create in Drypp are not uploaded to our servers as part of the app’s core functionality. Your overview is designed to remain under your control on the device.
Third-party services listed below may process limited, non-personal technical data as described in their own policies (for example device identifiers in aggregated or pseudonymised form).
3. Firebase Analytics (Google)
We may use Firebase Analytics to understand how the app is used in aggregate (for example feature usage, funnels, and retention) in a way that is intended to be anonymised or pseudonymised and not used to sell your personal subscription contents.
You can learn more about how Google processes data in Google’s documentation for Firebase and Google Analytics, and you may be able to limit ad-related uses through your device settings where applicable.
Optional opt-out: If you wish to opt out of Firebase Analytics collection, you can do so via your device settings or by contacting us. Note: Disabling analytics may limit our ability to improve the app based on real-world usage.
4. Firebase Crashlytics (Google)
We may use Firebase Crashlytics to receive crash and stability reports to diagnose bugs. Crash reports can include technical information such as stack traces, device model, OS version, and app version. They are not intended to include the subscription entries you store in the app.
5. Data retention and deletion
Local subscription data: Stored on your device until you delete it manually or uninstall the app.
Analytics and crash data: Processed by Google according to their retention policies (typically 14 to 26 months for aggregated data).
Exported PDF files: If you export data to PDF, those files are stored on your device or in your own cloud storage services. Drypp has no access to them after export.
6. Purchases and payments
If you purchase Drypp through an app store (for example Google Play or Apple App Store), payment is processed by the store operator. We do not receive your full payment card number from those systems.
7. Legal bases (GDPR / EEA)
Where GDPR applies, typical legal bases include:
- Performance of a contract or pre-contractual measures: to provide the app you request.
- Legitimate interests: to secure and improve the app, prevent fraud, and conduct aggregated analytics, balanced against your rights.
- Consent: where required for optional analytics or similar processing; you may withdraw consent where applicable without affecting processing that does not rely on it.
No automated decision-making: Drypp does not use automated decision-making or profiling that produces legal or similarly significant effects for you.
8. Your rights
Depending on your jurisdiction (including the EEA/UK), you may have rights to access, rectify, erase, restrict, or object to certain processing, and rights related to data portability and complaints to a supervisory authority.
Because core subscription data is stored locally, many requests can be fulfilled directly by you (for example by deleting data within the app or uninstalling). For questions about analytics or crash data processed by our processors, contact us and we will assist where feasible.
Complaints to a supervisory authority: You have the right to lodge a complaint with a data protection authority, e.g. Datatilsynet in Norway or your local supervisory authority.
9. Children
Drypp is not directed at children under the age of digital consent in your region (typically 13 to 16 years). If you believe a child has provided information to us inappropriately, contact support@dryppapp.com.
10. International transfers
When you use Firebase services operated by Google, data may be processed in countries outside your own. Google provides appropriate safeguards as described in their documentation (including standard contractual clauses where applicable).
11. Changes
We may update this policy from time to time. The “Effective” date at the top will change when we do. Continued use of the app after changes means you accept the updated policy, unless applicable law requires a different process.
12. Contact
For privacy questions: support@dryppapp.com
We aim to respond to privacy inquiries within 30 days.