1. Our Promise to You

We want you to feel safe when using our app or website. That’s why we protect your personal data as effectively as possible – including end-to-end encryption (E2EE) for your messages and comments.

In this Privacy Policy, we explain which data we collect, why we collect it, how we use it, and what rights you have.

 

2. Who Processes Your Data

Sie kennen uns als Don’t Guess, rechtlich gesehen sind wir jedoch die don’t guess GmbH, ein in Deutschland eingetragenes Unternehmen. Wir entscheiden, welche personenbezogenen Daten von Ihnen verarbeitet werden und zu welchen Zwecken.

don’t guess GmbH

Odenwaldstraße 55

69226 Nußloch, Germany

E-Mail: info@dontguess.app

Managing Director: Muammer Yueksel

 

3. How We Collect and Use Your Personal Data

Identity Data

  • Username and unique user code to connect with your partner
  • Device ID to identify you as a user
  • Email address (for account creation, login, or support)
 

Personal Information (Voluntary)

  • Profile picture, relationship anniversary, or other details you choose to add
  • These details are used solely to personalize the app.
 

Activity Data

  • Usage activity within the app
  • Entered content (e.g., green/red moments, notes)
  • Device information (e.g., iOS version, model, crash reports)
 

End-to-End Encryption (E2EE)

All messages and comments you write in the app are protected with end-to-end encryption.

  • Encryption keys exist only on your devices
  • Neither we (don’t guess GmbH) nor our service providers can view the plain text of your messages or comments.
  • Conversations between you and your partner remain private

Metadata (e.g., usage duration, device information, crash reports) is not included in E2EE, as such data is necessary for the operation of the app, analytics, or debugging.

 

4. Information Sharing You Control

When your app is paired, you decide if and when data is shared with your partner. Messages and comments are always transmitted in encrypted form and can only be viewed by both of you.

 

5. Sharing Personal Data with Service Providers

We never sell your personal data to third parties.

However, we work with selected service providers who support us in running the app.

 

Supabase (Backend & Hosting)

We use Supabase (Supabase Inc., USA) for our backend infrastructure.

  • Purpose: Authentication, hosting, storage of app content
  • Legal basis: Contract performance (Art. 6(1)(b) GDPR) and legitimate interest (Art. 6(1)(f) GDPR)
  • Third-country transfer: USA, based on Standard Contractual Clauses
 
 

OneSignal (Push Notifications)

  • We use OneSignal (OneSignal Inc., USA) for push notifications.
  • Purpose: Delivery of app notifications
  • Legal basis: Consent (Art. 6(1)(a) GDPR)
  • Third-country transfer: USA, based on Standard Contractual Clauses
  • You may disable push notifications at any time in your device settings.


PostHog (Usage Analytics)

We use PostHog (PostHog Inc., USA) to analyze user behavior in a pseudonymized manner.

  • Purpose: App improvement and usage analytics
  • Legal basis: Legitimate interest (Art. 6(1)(f) GDPR)
  • Third-country transfer: USA, based on Standard Contractual Clauses


Bugsnag (Crash Reporting)

We use Bugsnag (SmartBear Software, Inc., USA) for crash and error reporting.

  • Purpose: Debugging and stability improvements
  • Legal basis: Legitimate interest (Art. 6(1)(f) GDPR)
  • Third-country transfer: USA, based on Standard Contractual Clauses
 
 

6. Data Security and Storage

We protect your data through technical and organizational measures.

Messages and comments are encrypted end-to-end.

However, no internet transmission can be guaranteed to be 100% secure.

 

7. Duration of Storage

We store your data only for as long as required during the beta phase.

After the beta ends, personal data will be deleted no later than 30 days afterward, unless legal retention obligations require otherwise.

 

8. Your Rights

You have the right to:

  • Access (Art. 15 GDPR)
  • Rectification (Art. 16 GDPR)
  • Erasure (Art. 17 GDPR)
  • Restriction of processing (Art. 18 GDPR)
  • Data portability (Art. 20 GDPR)
  • Objection (Art. 21 GDPR)
  • Lodge a complaint with a supervisory authority (Art. 77 GDPR)
 

9. Applicable Law

The EU General Data Protection Regulation (GDPR) and the German Federal Data Protection Act (BDSG) apply.

 

10. Notice Regarding the Beta Version

This app version is intended exclusively for testing purposes.

No guarantee is given regarding availability, stability, or complete security.

Use is voluntary.

This Privacy Policy will be updated upon release of the final version.