PRIVACY POLICY

Last updated: 23 June 2025

Welcome to hypd (the “App”), a product of idefk ltd. (“we,” “our,” or “us”). This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you use hypd.

1. INFORMATION WE COLLECT

• ACCOUNT INFORMATION – Phone number, first name, and last name.
• DEVICE PERMISSIONS – Camera and photo‐library access (optional) so you can take or upload pictures, e.g., for a profile photo.
• AUTOMATICALLY COLLECTED DATA – Device model, operating‐system version, unique device identifiers, app‐usage logs, and crash reports.

We do not collect precise location data, health or medical records, or any information about minors.

2. HOW WE USE YOUR INFORMATION

• To create and manage your account and authenticate you via phone number (Firebase Authentication).
• To operate the fitness‐challenge shared pot feature.
• To send push notifications (e.g., progress updates) through Firebase Cloud Messaging.

• To monitor, maintain, and improve app stability and performance through aggregated analytics. • To comply with legal obligations and enforce our Terms of Use.

We do not use your data for targeted advertising, profiling, or sale to third parties.

3. LEGAL BASIS FOR PROCESSING (EU/UK USERS)

• Performance of a contract – providing the service you requested.
• Legitimate interests – keeping the App secure and improving it.
• Consent – for optional features such as notifications and camera access.

4. SHARING & DISCLOSURE

We share information only: • With service providers who perform services for us (e.g., Google Firebase) under strict data‐processing agreements.
• When required by law or to protect rights and safety.

We do not share data with advertisers or other third parties for marketing.

5. DATA RETENTION

• Account data is retained while your account is active.
• After you delete your account, we erase or anonymise personal data within 15 days. • Backup copies may persist for a maximum of 30 days before being purged.

6. SECURITY

We use industry‐standard safeguards, including encryption in transit (HTTPS/TLS), least‐privilege access controls, and regular security reviews of Firebase configurations. No method of transmission or storage is 100 percent secure, but we work to protect your information.

7. INTERNATIONAL TRANSFERS

Firebase servers may be located outside your country. Where required, we rely on safeguards such as Standard Contractual Clauses.

8. YOUR RIGHTS

Depending on your location, you may have the right to access, correct, delete, or restrict the processing of your personal data. To exercise these rights, contact us at tadhg@idefk.org.

9. CHILDREN’S PRIVACY

hypd is intended only for users aged 18 and older. We do not knowingly collect information from anyone under 18. If you believe a minor has provided personal data, please contact us so we can delete it.

10. CHANGES TO THIS POLICY

We may update this Privacy Policy from time to time. Any changes will be posted in‐app and on our website with an updated “Last updated” date. Continued use of hypd after changes take effect constitutes acceptance of the revised policy.

11. CONTACT US
For questions about this Privacy Policy or our data practices, email tadhg@idefk.org.

© 2025 idefk ltd. All rights reserved.