Addictivity – Privacy Policy
Last updated: August 2026This Privacy Policy describes how Addictivity (“we”, “us”, or “our”) collects, uses, and protects your information when you use the Addictivity mobile application (the “App”).
We take your privacy seriously and aim to handle your personal data responsibly. This policy explains what the App collects, how that information is used, and what choices you have. Sections 5 and 10 describe rights that may apply to you under laws such as the EU General Data Protection Regulation (“GDPR”) and the California Consumer Privacy Act (“CCPA”, as amended), and how to contact us about them.
1. Data Controller and Contact
Addictivity is an independent app operated by Barmaan Mansouri, who is responsible for the personal information described in this policy and acts as the data controller where that concept applies.
If you have any questions or requests regarding this Privacy Policy or our data practices, you may contact us at:
Email: Management.addictivity@gmail.com
2. Information We Collect
2.1 Account Information
Addictivity does not have its own password system. You sign in with Sign in with Apple or Sign in with Google, and authentication is handled by Firebase Authentication (Google).
- Account identifier. We store the unique user ID assigned to your account by Firebase Authentication. This identifier is used to associate your data with your account.
- Name and email address. We receive your name and email address only if your sign-in provider supplies them. If you use Sign in with Apple and choose to hide your email or withhold your name, we do not receive that information.
- We never receive your password. Your Apple or Google password is never shared with, entered into, or stored by the App.
2.2 Content You Create in the App
The following is stored in Cloud Firestore (Google) under your account so it is available when you sign in again:
- Tasks and schedules. Tasks you create, their titles, due dates, recurrence settings, and completion status.
- Skills. The skills you choose to track, including their names and whether they are actively tracked.
- Progress and sessions. Logged sessions and the minutes attributed to each skill, streaks, levels, XP, and unlocked milestones.
- Preferences. Your in-app display name, selected theme, selected title, and reminder settings (see Section 2.4).
- Legacy reward state. Earlier versions of the App included an in-app reward currency and temporary “boosters”. That feature has been removed from the interface, but any reward balance, amount previously spent, and active-booster state already stored on your account is retained with your account data so older accounts keep working and your progress history stays intact. It is no longer shown in the App and can no longer be earned or spent. It was never purchasable with real money and has no cash value. It is deleted when you delete your account.
2.3 Product-Interaction Records
When you log a session, the App also writes a small interaction record to your own account area in Cloud Firestore. Each record contains:
- a timestamp,
- the identifier and name of the skill you logged, and
- the number of minutes logged.
These records are linked to your account. We use them to operate app functionality and progress features and to understand overall usage so we can fix problems and improve the App. They are not used for advertising, are not sold, and are not shared for cross-context behavioral advertising. They are deleted when you delete your account.
2.4 Reminders and Notifications
Daily reminders are optional. If you turn them on, iOS asks for your permission to show notifications, and the App schedules the reminder locally on your device.
- The App does not use a push notification service and does not collect or transmit a device push token (APNs token).
- Your reminder on/off preference and the time you choose are part of your in-app settings, which are stored on your device and, when you are signed in, saved with your account data.
- You can turn reminders off at any time in the App, or revoke notification permission in iOS Settings.
2.5 Preview as Guest
The App offers a “Preview as Guest” mode so you can explore the interface without an account. In this mode:
- the App shows synthetic sample data that is generated on your device and is not real personal data;
- nothing you do is sent to Firebase Authentication or Cloud Firestore;
- the preview data is stored only in your device's local app storage and is cleared when you exit the preview.
2.6 Support Communications
If you contact us by email, we receive the information you choose to provide, such as your email address and the content of your message.
3. What We Do Not Collect
- No advertising and no cross-app tracking. The App contains no third-party advertising SDKs, no advertising identifiers, and no data brokers. We do not track you across apps or websites owned by other companies, and the App does not present an App Tracking Transparency prompt because it does not track.
- No third-party analytics SDK. Firebase Analytics is disabled in the current release: the App does not initialize it and sends no events to it, and no other third-party analytics SDK is included. The App does use its own first-party product-interaction records, stored in your own account area, exactly as described in Section 2.3.
- No crash, diagnostics, or device-profiling collection. The App does not include a crash-reporting or performance-monitoring SDK and does not collect device models, advertising IDs, precise or coarse location, contacts, photos, health data, or browsing history.
- No calendar access. Calendar integration is not enabled in this release, and the App does not request access to your calendars.
- No real-money purchases and no ads. The App has no in-app purchases, no paid store, and no subscriptions, and it does not display advertising. We do not collect or process payment information. The retained legacy reward state described in Section 2.2 has no cash value and could never be bought.
4. How We Use Your Information
- To provide and operate the App. Creating and securing your account, storing your tasks and skills, recording logged sessions, and calculating streaks, levels, XP, and milestones.
- To sync your data. So your tasks, skills, and progress are available when you sign in again or on another device.
- To personalize your experience within the App. For example, showing your current streaks, progress, and earned titles.
- To maintain and improve the App. Diagnosing problems reported to us and understanding how features such as session logging are used, so we can improve them.
- To respond to you. Replying to support requests you send us by email. The App has no mailing list and sends no push notifications; the only notifications it shows are the daily reminders you schedule yourself, which are scheduled locally on your device.
- To protect our rights and prevent abuse. Detecting and preventing fraud, abuse, or misuse of the App.
5. Legal Bases for Processing (EEA/UK Users)
If you are in the European Economic Area or the United Kingdom, we process your personal data on the following legal bases:
- Contract (Art. 6(1)(b) GDPR). To provide the App and its core features — your account, tasks, skills, logged sessions, and progress.
- Legitimate interests (Art. 6(1)(f) GDPR). To keep the App secure and reliable, to improve it, and to prevent abuse, provided these interests are not overridden by your rights and freedoms.
- Consent (Art. 6(1)(a) GDPR). Where required by law — for example, permission to show notifications. You may withdraw consent at any time.
6. How We Share Your Information
We do not sell your personal information.
- Google Firebase. We use Firebase Authentication to sign you in and Cloud Firestore to store your account data. Google processes this data on our behalf as our service provider.
- Apple and Google (sign-in providers). When you choose Sign in with Apple or Sign in with Google, that provider authenticates you and returns a sign-in credential. Your use of those services is also governed by their own privacy policies.
- Legal obligations. We may disclose information if required by law, court order, or governmental authority, or where we reasonably believe disclosure is necessary to comply with a legal obligation, to protect the rights, property, or safety of us, our users, or others, or to detect or prevent fraud or security issues.
- Business transfers. In connection with a merger, acquisition, or sale of assets, your information may be transferred as part of that transaction, subject to this Privacy Policy or an equivalent protection.
7. International Transfers
Our services are hosted on infrastructure that may be located outside your own country (for example, on servers operated by Google Cloud/Firebase). Where required by law, we take appropriate measures to ensure that international transfers are protected by suitable safeguards, such as standard contractual clauses or equivalent mechanisms.
8. Deleting Your Account and Data
You can permanently delete your account from inside the App, in Settings → Delete Account. No email request is required.
When you confirm deletion, the App:
- asks you to re-verify your identity with your sign-in provider;
- if you signed in with Apple, revokes the App's Apple sign-in token so the App's access to your Apple ID is withdrawn;
- deletes your account data in Cloud Firestore, including your tasks, skills, progress, preferences, any retained legacy reward state, and the product-interaction records described in Section 2.3; and
- deletes your user account in Firebase Authentication.
This action is permanent and cannot be undone. You may also contact us at Management.addictivity@gmail.com for help.
9. Data Retention
- Account, content, and progress data are retained while your account exists, so you keep long-term tracking and progression.
- Product-interaction records are retained while your account exists and are deleted with it.
- Guest preview data is local to your device and is cleared when you exit the preview.
- We may retain limited information for longer where required by law, to resolve disputes, or to enforce our agreements.
Backups maintained by our infrastructure providers may persist for a limited period after deletion before being overwritten in the ordinary course.
10. Your Rights
Depending on where you live, some or all of the rights below may apply to you. They are listed so you know what you can ask for; whether any particular right applies is determined by the law of your own jurisdiction. You can exercise them, or ask a question about them, using the contact address in Section 14.
10.1 Rights for EEA/UK Users (GDPR)
- Right of access: To obtain confirmation whether we process your data and a copy of that data.
- Right to rectification: To request correction of inaccurate or incomplete data.
- Right to erasure: To request deletion of your data. You can do this yourself at any time in the App.
- Right to restriction: To request that we restrict processing in certain cases.
- Right to data portability: To receive your data in a structured, commonly used, machine-readable format.
- Right to object: To object to processing based on our legitimate interests.
- Right to withdraw consent: Where we rely on consent, you may withdraw it at any time.
- Right to lodge a complaint: With your local data protection authority.
To exercise any of these rights, please contact us at Management.addictivity@gmail.com.
10.2 Rights for California Residents (CCPA/CPRA)
- Right to know/access: To request the categories and specific pieces of personal information we have collected about you.
- Right to deletion: To request that we delete personal information collected from you, subject to certain exceptions.
- Right to correction: To request that we correct inaccurate personal information about you.
- Right to non-discrimination: We will not discriminate against you for exercising your rights.
We do not “sell” personal information as defined by the CCPA/CPRA, nor do we share it for cross-context behavioral advertising.
11. Children’s Privacy
The App is not intended for children under the age of 13, and we do not knowingly collect personal data from children under 13. If you believe that a child under 13 has provided us with personal information, please contact us and we will take steps to delete such information where required by law.
12. Security
Sign-in is handled by Firebase Authentication, and your data is stored in Cloud Firestore under access rules that limit each account's data to that account. Traffic between the App and these services uses HTTPS/TLS. We use reasonable technical and organizational measures to protect your personal data against unauthorized access, loss, misuse, or alteration. However, no method of transmission over the internet or method of electronic storage is 100% secure, and we cannot guarantee absolute security.
13. Changes to This Privacy Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technologies, legal requirements, or other factors. When we make material changes, we will update the “Last updated” date at the top of this policy. Because the App has no messaging channel, please check this page for the current version.
Your continued use of the App after any changes to this Privacy Policy constitutes your acceptance of the updated policy.
14. Contact Us
If you have any questions or concerns about this Privacy Policy or our data practices, please contact us at: