Privacy Policy
Last updated: February 12, 2026
Effective date: February 12, 2026
This Privacy Policy explains how Zeitarc ("we", "us", "our") collects, uses, stores, and protects your personal data when you use the Zeitarc mobile application ("App") and related services. This policy is designed to comply with the General Data Protection Regulation (EU) 2016/679 ("GDPR") and other applicable data protection laws.
Zeitarc helps families create digital timelines to preserve memories of their children and pets. We understand the sensitive nature of this data and are committed to protecting your privacy and your family's personal information.
Important: By using Zeitarc, you acknowledge that you have read and understood this Privacy Policy. If you do not agree with our practices, please do not use the App.
Table of Contents
1. Data Controller
The data controller responsible for your personal data is:
As the data controller, we determine the purposes and means of processing your personal data and are responsible for ensuring compliance with applicable data protection laws.
1.1 EU Representative (Article 27 GDPR)
Zeitarc is based outside the European Union. Under GDPR Article 27(2)(a), a representative in the EU is not required where processing is occasional, does not include large-scale processing of special categories of data, and is unlikely to result in a risk to the rights and freedoms of data subjects.
We believe this exemption applies to Zeitarc because:
- EU-hosted infrastructure: All personal data is stored on infrastructure located entirely within the EU (Germany). While our team in Pakistan may occasionally access this data for limited operational purposes such as customer support and maintenance, such access is occasional and restricted in scope.
- Limited special category data: Any processing of special category data (such as optional health milestones) is limited in scope, voluntarily provided by users, and is not conducted on a large scale.
- Low risk: The nature, context, and scope of our processing is unlikely to result in a risk to the rights and freedoms of data subjects, given the technical and organisational safeguards we have in place.
We keep this assessment under regular review. Should our processing activities change in nature or scale, we will appoint an EU representative and update this policy accordingly. In the meantime, you may contact us directly at privacy@zeitarc.com for any data protection matters.
2. Personal Data We Collect
We collect and process the following categories of personal data:
2.1 Account Data
When you create an account, we collect:
- Email address - Required for account creation, authentication, and communication
- Full name - Provided during registration
- Username - Chosen by you for identification within the App
- Profile photograph - Optional, uploaded by you
- Authentication tokens - Secure session tokens for login (we use passwordless one-time login codes sent to your email; we do not store passwords)
2.2 Timeline Content Data
Content you voluntarily add to your timelines:
- Photographs and media files - Images and videos you upload
- Timeline entries - Text descriptions, dates, titles, and notes
- Milestone data - Birth information, growth measurements, vaccination records
- Names and biographical information - Names of children, pets, and family members
2.3 Technical Data
Automatically collected when you use the App:
- Device information - Device type, operating system, and version
- App version - Version of Zeitarc installed
- IP address - Collected for security and fraud prevention
- Crash reports and error logs - Collected via Sentry for error monitoring (technical data only, no personal content)
2.4 Analytics Data
We use PostHog, a privacy-focused analytics platform, to collect anonymous usage data including:
- Features used - Which App features and screens you interact with
- Navigation flows - How you move through the App
- Performance metrics - App load times and responsiveness
Opt-out available: You can disable analytics at any time via Settings > Privacy & Data > Analytics toggle. When disabled, PostHog is fully deactivated and no usage data is collected or transmitted from your device.
2.5 Third-Party Authentication Data
If you choose to sign in with Google, we receive:
- Google account email - Your primary Google email address
- Google profile name - Your display name from Google
- Google profile picture - If available and permissions granted
We only receive data you authorize Google to share. We do not access your Google contacts, calendars, or other Google services.
3. Purposes and Legal Basis for Processing
Under GDPR Article 6, we process your personal data based on the following legal grounds:
| Purpose | Data Used | Legal Basis (GDPR Art. 6) |
|---|---|---|
| Account creation and authentication | Email, username, full name, authentication tokens | Contract performance (Art. 6(1)(b)) - necessary to provide our service |
| Providing the timeline service | All timeline content, photos, milestone data | Contract performance (Art. 6(1)(b)) - core functionality you requested |
| Service notifications | Email address | Contract performance (Art. 6(1)(b)) - essential service communications |
| Customer support | Email, account data, relevant timeline data | Contract performance (Art. 6(1)(b)) - responding to your requests |
| Security and fraud prevention | IP address, device info, usage patterns | Legitimate interests (Art. 6(1)(f)) - protecting our service and users |
| App improvement and bug fixes | Crash reports via Sentry (anonymized technical data) | Legitimate interests (Art. 6(1)(f)) - improving service quality |
| Analytics (when enabled) | Anonymous usage patterns via PostHog | Consent (Art. 6(1)(a)) - you can opt out at any time |
| Legal compliance | Account data, transaction records | Legal obligation (Art. 6(1)(c)) - complying with applicable laws |
3.1 Legitimate Interests Assessment
Where we rely on legitimate interests, we have conducted a balancing test to ensure our interests do not override your fundamental rights:
- Security: Our interest in preventing fraud and unauthorized access is balanced against minimal privacy impact of technical data collection
- Improvement: Our interest in fixing bugs and improving the App uses anonymized/aggregated data where possible
You have the right to object to processing based on legitimate interests. See Section 8 for how to exercise this right.
4. Consent and Your Choices
4.1 Consent at Signup
When you create an account, you explicitly consent to our Terms of Service and this Privacy Policy by checking a consent checkbox. Your consent is recorded with a version number so we can track which version of our policies you agreed to.
4.2 Re-Consent
When we make material changes to our Terms of Service or Privacy Policy, we will ask you to review and re-accept them before continuing to use the App. You will be shown a consent prompt on your next login after any policy update. This ensures you are always informed of and agree to the current version of our policies.
4.3 Analytics Opt-Out
You can disable analytics data collection at any time by navigating to Settings > Privacy & Data and toggling off the Analytics switch. When analytics are disabled, PostHog is fully deactivated and no usage data is collected or transmitted from your device. Error tracking via Sentry remains active for crash reports to ensure App stability.
4.4 Withdrawing Consent
You may withdraw consent for any consent-based processing at any time. Withdrawal does not affect the lawfulness of processing carried out before the withdrawal. To withdraw consent for the core service, you may delete your account.
5. Special Categories of Data
Zeitarc may process data that could be considered special category data under GDPR Article 9:
5.1 Health-Related Data
If you choose to record vaccination records, growth measurements, or health milestones, this may constitute health data. We process this data based on:
- Explicit consent (Art. 9(2)(a)) - You actively choose to enter this data
- Data manifestly made public by you (Art. 9(2)(e)) - If you choose to share it
You are never required to enter health data. All health-related fields are optional.
5.2 Children's Biographical Data
While Zeitarc stores information about children (names, birth dates, photos), this data is provided and controlled by parents/guardians - the actual users of the App. Parents retain full control over what information is recorded and can delete it at any time.
5.3 Biometric Data
We do not process biometric data. Photographs are stored as regular image files and are not used for facial recognition or biometric identification.
6. Data Recipients and International Transfers
6.1 Categories of Recipients
We may share your data with the following categories of recipients:
| Recipient | Purpose | Data Shared | Safeguards |
|---|---|---|---|
| Hetzner (Cloud hosting) | Data storage and infrastructure | All data stored in the App | EU-based servers (Germany); GDPR compliant |
| Google (Sign-In only) | Authentication | OAuth tokens only | Standard Contractual Clauses |
| PostHog (Analytics) | Anonymous usage analytics | Anonymous interaction data (opt-out available) | Privacy-focused platform; EU hosting option |
| Sentry (Error tracking) | Crash reporting and error monitoring | Technical data only, no personal content | Data Processing Agreement |
| Apple App Store / Google Play | Subscription billing | Payment processing data only | Platform privacy policies apply |
6.2 International Transfers
Your data is primarily stored on servers located within the European Union (Germany). Where data is transferred outside the EU/EEA, we ensure appropriate safeguards are in place:
- Adequacy decisions: Transfers to countries with EU adequacy decisions
- Standard Contractual Clauses (SCCs): EU-approved contract terms with recipients
- Supplementary measures: Additional technical and organizational safeguards where required
6.3 Data Processing Location and Access From Pakistan
All personal data is stored on infrastructure located entirely within the European Union (Germany). Zeitarc is headquartered in Islamabad, Pakistan, which does not currently have an EU adequacy decision. Our team in Pakistan may occasionally access personal data for limited operational purposes. Where this occurs, we rely on the following safeguards:
- Standard Contractual Clauses (SCCs) approved by the European Commission
- Encryption in transit (TLS 1.2+) and at rest for all personal data
- Strict access controls limiting data access to authorised personnel on a need-to-know basis
- Confidentiality obligations for all team members with data access
- Occasional and limited access restricted to specific operational needs such as customer support and system maintenance, not routine or large-scale
You may request a copy of the safeguards in place by contacting us at privacy@zeitarc.com.
6.4 We Do Not Sell Your Data
We do not sell, rent, or trade your personal data to third parties for marketing or any other purpose. Your family memories are not a product.
6.5 Legal Disclosures
We may disclose your data if required by law:
- To comply with legal process or government requests
- To protect our rights, privacy, safety, or property
- To enforce our Terms of Service
- In connection with a merger, acquisition, or sale of assets (with notice to you)
7. Data Retention
We retain your personal data only for as long as necessary to fulfill the purposes for which it was collected:
| Data Category | Retention Period | Reason |
|---|---|---|
| Active account data | Duration of account + 30 days | Service provision; grace period for account recovery |
| Timeline content | Duration of account + 30 days | Core service; deleted with account |
| Uploaded media files | Duration of account + 30 days | Core service; deleted with account |
| Technical/server logs | 90 days | Security monitoring and debugging |
| Crash reports (Sentry) | 12 months | Bug fixing and stability improvements |
| Backup copies | 30 days after deletion | Disaster recovery; permanently deleted after |
| Legal hold data | As required by law | Legal proceedings or regulatory requirements |
7.1 Account Deletion
When you request account deletion:
- Your account enters a 30-day grace period during which your data is preserved but your account is marked for deletion
- During this grace period, you can restore your account by logging back in and choosing "Restore My Account"
- After 30 days, your account and all associated data are permanently and irreversibly deleted from our active systems
- Backup copies are purged within 30 additional days
- Some anonymized, aggregated data may be retained for statistical analysis
To delete your account, use the "Delete Account" option in Settings > Privacy & Data, or email privacy@zeitarc.com.
8. Your Rights Under GDPR
As a data subject under GDPR, you have the following rights. We will respond to valid requests within one month (extendable by two months for complex requests):
8.1 Right of Access (Article 15)
You have the right to obtain confirmation of whether we process your personal data and to receive a copy of that data. You can request your data by using the "Request My Data" option in Settings > Privacy & Data, or by emailing us. This includes information about:
- The purposes of processing
- The categories of data processed
- Recipients of your data
- Retention periods
- The source of data (if not collected from you)
8.2 Right to Rectification (Article 16)
You can correct inaccurate personal data or complete incomplete data. You can update most data directly in the App, or contact us for assistance.
8.3 Right to Erasure / Right to be Forgotten (Article 17)
You can request deletion of your personal data. Use the "Delete Account" option in Settings > Privacy & Data to initiate a 30-day deletion process with a grace period for recovery. You may also email us. Deletion applies when:
- The data is no longer necessary for its original purpose
- You withdraw consent (where consent was the legal basis)
- You object to processing and there are no overriding legitimate grounds
- The data was unlawfully processed
- Deletion is required by law
Note: We may retain data where we have a legal obligation or legitimate need (e.g., legal claims, security records).
8.4 Right to Restriction of Processing (Article 18)
You can request that we limit how we use your data when:
- You contest the accuracy of the data (while we verify)
- Processing is unlawful but you prefer restriction over deletion
- We no longer need the data but you need it for legal claims
- You have objected to processing (pending verification)
8.5 Right to Data Portability (Article 20)
You have the right to receive your personal data in a structured, commonly used, machine-readable format (e.g., JSON, CSV). This applies to data you provided to us and processed based on consent or contract.
Contact us at privacy@zeitarc.com to request a full data export.
8.6 Right to Object (Article 21)
You can object to processing based on legitimate interests or for direct marketing purposes. For legitimate interests, we will stop processing unless we demonstrate compelling legitimate grounds that override your interests.
Note: We do not use your data for direct marketing or profiling.
8.7 Rights Related to Automated Decision-Making (Article 22)
We do not make any decisions based solely on automated processing that produce legal or similarly significant effects on you. No profiling or automated decision-making is used in Zeitarc.
8.8 Right to Withdraw Consent
Where processing is based on consent, you can withdraw consent at any time. Withdrawal does not affect the lawfulness of processing before withdrawal. For analytics, use the opt-out toggle in Settings > Privacy & Data. For the core service, you may delete your account.
8.9 How to Exercise Your Rights
To exercise any of these rights:
- Email: privacy@zeitarc.com
- Use in-App features: "Request My Data" and "Delete Account" in Settings > Privacy & Data
- Include your account email address for verification
- Specify which right(s) you wish to exercise
- We may request additional information to verify your identity
There is no fee for exercising your rights, unless requests are manifestly unfounded or excessive.
9. Data Security
We implement appropriate technical and organizational measures to protect your personal data against unauthorized access, alteration, disclosure, or destruction:
9.1 Technical Measures
- Encryption in transit: All data transmitted between your device and our servers is encrypted using TLS 1.2 or higher
- Encryption at rest: Sensitive data is encrypted on our servers
- Passwordless authentication: We use secure one-time login codes (OTP) sent to your email instead of stored passwords, eliminating password-related vulnerabilities
- Access controls: Strict role-based access to production systems on a need-to-know basis
- Secure session management: JWT tokens with appropriate expiration
- Regular updates: Security patches applied promptly
9.2 Organizational Measures
- Limited employee access to personal data (need-to-know basis)
- Security awareness and data protection practices
- Incident response procedures
- Regular security assessments
9.3 Data Breach Notification
In the event of a personal data breach that poses a risk to your rights and freedoms, we will:
- Notify the relevant supervisory authority within 72 hours (where required by GDPR Article 33)
- Notify affected users without undue delay if there is high risk to their rights and freedoms (GDPR Article 34)
- Document the breach and remedial actions taken
10. Children's Privacy
10.1 Age Requirement
Zeitarc is intended for use by adults (parents, guardians, and caregivers) aged 16 years or older. We do not knowingly collect personal data directly from children under 16.
10.2 Data About Children
While the App is designed to help document children's lives, we recognize that this data requires special protection:
- Only parents/guardians control what information is entered
- Children's data is not shared with third parties for marketing
- Parents can delete all data about their children at any time
- We do not use children's data for profiling or analytics
10.3 Parental Control
As a parent using Zeitarc, you are the data controller for information you choose to enter about your children. We act as a data processor for this content, storing it securely on your behalf.
10.4 Inadvertent Collection
If we become aware that we have collected personal data from a child under 16 without parental consent, we will delete that data promptly. If you believe a child has provided us data directly, please contact us immediately.
12. Changes to This Policy
We may update this Privacy Policy from time to time to reflect changes in our practices, technology, legal requirements, or other factors.
12.1 Notification of Changes
We will notify you of material changes by:
- Posting the updated policy with a new "Last updated" date
- Displaying a notice in the App for significant changes
- Requiring re-consent through our consent versioning system for material changes
12.2 Your Continued Use
For material changes, you will be asked to re-accept the updated policy before continuing to use the App. If you do not agree with changes, you should stop using the App and delete your account.
13. Contact Information and Complaints
13.1 Contact Us
For any questions or requests regarding this Privacy Policy or your data:
13.2 Response Times
- Standard requests: Within 1 month
- Complex requests: Up to 3 months (with notification within the first month)
- Urgent security matters: Within 72 hours
13.3 Right to Lodge a Complaint
If you believe we have not handled your personal data properly, you have the right to lodge a complaint with a supervisory authority. We encourage you to contact us first so we can address your concerns.
You may contact your local Data Protection Authority (DPA). A list of EU DPAs is available at: https://edpb.europa.eu/about-edpb/about-edpb/members_en
This Privacy Policy was last reviewed on February 12, 2026
© Zeitarc