Privacy Policy
1. Data Controller
The controller within the meaning of the GDPR (Art. 4 No. 7) is:
André Jaszka
Email: an.creat1985@gmail.com
2. Summary
- All data stays exclusively on your device.
- No data is transmitted to any server.
- No account is required — the app works completely anonymously.
- No tracking, no analytics, no advertising.
- Photos are automatically stripped of metadata (EXIF) before local storage.
3. What data is processed?
Zeitkorn processes only data that you enter yourself in the app. This data is stored locally in a SQLite database on your device and does not leave it:
- Child's name
- Date of birth and optionally place of birth and birth measurements (height, weight)
- Optional gender
- Milestones: date, category, title, note
- Photos attached to milestones (EXIF-stripped before storage, see Section 5)
- App preferences (language, colour scheme, display mode) — UI preferences only, no personal reference
No account data, authentication tokens, or device identifiers are collected. There is no user account in this version of the app.
4. Purpose and legal basis of processing
Purpose: Local storage and display of content data entered by you (milestones, photos, baby data), so you can maintain a personal timeline of your child's development.
Legal basis: Art. 6(1)(b) GDPR (performance of a contract) — the processing is necessary to provide the service covered by the app purchase.
No processing takes place on the basis of consent or legitimate interests, as no data leaves the device.
5. EXIF stripping for photos
Before a photo is saved, the app removes all EXIF metadata from the image file. This includes in particular GPS coordinates, device information, and capture timestamps. Stripping occurs entirely on your device.
The photo is scaled to a maximum edge length of 2,048 pixels (aspect ratio preserved) and saved at 90 % JPEG quality. A thumbnail version (max. 320 pixels) is also created locally.
Since photos never leave the device, EXIF stripping serves as an additional safeguard in case of device loss or unexpected data access.
6. No tracking, no analytics
Zeitkorn v1 contains no active tracking or analytics tools:
- PostHog (analytics library) is included as a dependency but is not initialised. The entry point in the app is an explicitly empty stub — zero bytes of telemetry are sent.
- Sentry (crash reporting) is also not active.
- There is no advertising ID tracking and no fingerprinting.
Should future versions introduce optional analytics, this will only happen after explicit consent, and baby data will never be transmitted to analytics services.
7. Data processors
Since Zeitkorn v1 does not transmit any app content to servers, there are no data processors within the meaning of Art. 28 GDPR for baby data, milestones, or photos.
Two services have a limited, indirect connection:
Apple App Store
Role: Distribution platform and purchase processing. Apple processes your payment and Apple ID data during the purchase under its own privacy policy. These data are held exclusively by Apple, not by us.
Privacy page: apple.com/privacy
Vercel (this legal page only)
Role: Hosting of this privacy page (static HTML files, no connection to app content whatsoever). Vercel collects server logs (IP address, timestamp) when you visit this website.
Privacy page: vercel.com/legal/privacy-policy
8. No automatic transfer — user-initiated exports
There is no automatic transfer of your app content to any server or to third countries. All data remains locally on your device until you actively trigger an export yourself:
- Data export (ZIP): Settings → “Export data” creates a ZIP archive of your data.
- Baby book (PDF): Settings → “Share baby book as PDF” creates a PDF document containing the data you entered (name, notes, photos) for the selected child. The file name contains the child’s name.
Both files are created exclusively on your device and only leave it if you actively share or save them via the system share sheet. Once you have shared or saved such a file outside the app, that copy is under your control and can no longer be reached by the app’s deletion function.
9. Children's data
Zeitkorn is directed exclusively at adult parents and guardians as users. The app is not directed at children within the meaning of Art. 8 GDPR (in Germany: children under 16) as users.
Children's data (name, date of birth, photos) is entered solely by adult users for personal, family use — and remains on the device. This data is not used at any time for advertising purposes, profiling, or disclosure to third parties.
10. Retention
All data remains on your device for as long as you use the app. You can delete all data at any time:
- Individual milestones or babies: Can be deleted directly in the app.
- All data at once: Settings → "Delete account" deletes all personal data from the app database and all photo files from the device.
- Complete removal: Uninstalling the app removes all locally stored data from the device.
11. Your rights as a data subject
Since all data is on your device and you have full control over it, you can exercise most data subject rights directly in the app:
- Access (Art. 15): All stored data is directly visible in the app.
- Rectification (Art. 16): Baby data and milestones can be edited in the app at any time.
- Erasure / Right to be forgotten (Art. 17): Settings → "Delete account" removes all personal data from the app database and all photo and thumbnail files from the device. The action is permanent and cannot be undone.
- Data portability / Export (Art. 20): Settings → "Export data" creates a ZIP archive (manifest.json + photos) containing all your data in an open format. The archive contains no absolute device paths.
- Restriction of processing (Art. 18): Since no external processing takes place, restriction is in your hands through your use of the app.
- Object (Art. 21): Since processing is based solely on contract performance and all data remains local, objection is not practically relevant.
- Lodge a complaint with a supervisory authority (Art. 77): You have the right to complain to a data protection supervisory authority, e.g. in Germany the Federal Commissioner for Data Protection and Freedom of Information (BfDI) or the competent state authority.
For questions that cannot be resolved directly in the app, please contact: an.creat1985@gmail.com.
12. Data security
Since all data remains locally on your device, the security mechanisms of iOS apply:
- Device encryption (Data Protection API)
- App sandboxing (other apps cannot access Zeitkorn data)
- Face ID / Touch ID device protection (by the operating system)
13. Possible future features
Future versions may introduce optional features that involve data leaving the device — for example, voluntary cloud synchronisation across devices or an optional user account. If introduced, such features will be entirely optional, and this privacy policy will be updated before they go live.
This privacy policy describes only the current state of Zeitkorn v1.
14. Changes to this privacy policy
This privacy policy will be updated when there are material changes to the app or data practices. The date of the last change is shown at the top of this page. Material changes will be communicated in the app.
15. Contact
For questions about data protection, please contact:
André Jaszka
Email: an.creat1985@gmail.com