# App Privacy Policy

Leon Chiver, referred to below as the **developer**, provides the Android app _Swipetimes Time Tracker_ for project-based time tracking.
The app is used by the **end user**, referred to below as the **user**.

To function properly, the app stores the data entered by the user on their device. Some of this data is also transferred over the internet.

This privacy policy explains, in plain and detailed terms, what happens with the user's data.

The developer reserves the right to change this privacy policy at any time. Changes are reflected in the "Last update" date at the top of this document, so please check back periodically if you want to stay informed.

This privacy policy does not cover the policies of third parties involved with the app — for example, the marketplace it was downloaded from, the platform used for in-app purchases, or the online services the app connects to. Please refer to those parties' own policies; for convenience, all of them are listed at the end of this document.

By using the app, the user agrees to the terms described here.

## Legal basis for processing

Crash and error data collected via Crashlytics is processed on the basis of a legitimate interest (Art. 6(1)(f) GDPR): keeping the app working and fixing errors quickly. The broader interaction and approximate location data collected via Firebase Analytics is currently collected without a separate consent step, including for users in the EU/EEA. Where a data transfer instead requires the user's own account with a third-party service (Google Calendar, Google Drive, Dropbox), the legal basis is the user's own explicit action of connecting and using that feature.

## Data stored on the user's device

The app stores settings, project records, and any other data it needs to function properly on the user's device. The developer has no access to this data.

## Data transferred to external services

Saved data or usage statistics may be transferred to third-party online services. Two distinct cases apply here:

Depending on which of these services is used, and where that provider operates its servers, the data described in this section may be stored outside the user's country of residence, including outside the EU/EEA. Each service's own privacy documentation, linked under "Privacy policies of third parties" below, describes its storage locations and the transfer safeguards it applies.

1. Some data is stored online only optionally, which requires transferring it over the internet. This data is accessible only to the user, since it requires the user's own account with the external service.
   "Optionally" here means the user must explicitly enable or trigger the relevant _Swipetimes_ feature — none of this happens automatically. The third party's own data policy applies. This category covers the following _Swipetimes_ features:

   - Transferring tracked time to one or more of the user's *Google Calendars*.
   - Transferring backups to the user's *Google Drive*.
   - Transferring backups to the user's *Dropbox*.

2. To help improve the app's quality, _Swipetimes_ also transfers anonymous usage data. This happens during normal use of the app, and also when application errors occur. This data does not include direct personal data about the user, such as their name, email address, or postal address.
   It may include indirect identifiers, such as a device ID or approximate geo-location, as described below.

   This information lets the developer improve the app and fix errors more quickly. It is **never** used to contact the user, for marketing, or for similar purposes, and it is not shared any further. It is stored online by the respective service providers (listed at the end of this document), whose own privacy policies apply as well.

   - Anonymous usage statistics are collected and managed via [Firebase Analytics](https://policies.google.com/privacy?hl=en). This includes information about how the user interacts with the app — clicking menu entries, opening dialogs, the timing of these interactions, geo-location data, device ID, and similar signals.

     _Swipetimes_ does not transfer the user's name, email address, login credentials, contacts, or any other direct personal data. In addition to the interaction data listed above, Firebase Analytics also transfers a set of standard fields: [Firebase Analytics User Properties](https://support.google.com/firebase/answer/6317486?hl=en).
   - Application errors are collected via [Crashlytics](https://firebase.google.com/terms/crashlytics). The resulting error logs contain no information that could reveal the user's identity — only what's needed to diagnose and fix the error.

## Usage of collected data

The data _Swipetimes_ collects and transfers is used **solely** to improve the app — meaning changes to its source code that make it better, nothing more. No direct personal data is collected. Collected data is never shared with anyone, except where required by law. Should _Swipetimes_ ever be discontinued, all data held directly by the developer will be destroyed. Data held by the third-party services listed below follows their own retention periods, as described in their respective privacy policies; the developer does not override these independently.

## Your rights

Users based in the EU/EEA, and in other jurisdictions with comparable data protection laws, have the right to request access to, correction of, or deletion of their data, and to object to its processing. Since the app itself doesn't identify individual users, most locally stored data can simply be deleted by the user directly within the app, or by uninstalling it. For any other request concerning data held by the developer, or transferred to third-party services on the developer's behalf, please write to {{< email "email-swipetimes" "swipetimes@gmail.com" >}} — the request will be handled, including deletion of the relevant data where applicable.

## Contact

For further questions, please get in touch by mail or email:

Leon Chiver
Jörg-Syrlin-Str. 45
89081 Ulm
Germany

{{< email "email-leonceeo" "leonceeo@gmail.com" >}}

## Privacy policies of third parties

Each third party listed below is solely responsible for its own privacy policy; the developer of _Swipetimes_ takes no responsibility for them.

- [Firebase Analytics](https://policies.google.com/privacy?hl=en)
- [Crashlytics](https://firebase.google.com/terms/crashlytics)
- [Google Drive](https://policies.google.com/privacy?hl=en)
- [Google Calendar](https://policies.google.com/privacy?hl=en)
- [Dropbox](https://www.dropbox.com/terms?view_en#privacy)
