Privacy Policy
1. Privacy at a Glance
General Information
The following information provides a simple overview of what happens to your personal data when you visit this website or use the Yori app. Personal data is any data with which you can be personally identified. The Yori App was built from the ground up under the principle of 'Privacy by Design' to offer the best possible protection for your confidential chat logs and daily information.
2. Responsible Body
The responsible body for data processing on this website and in the app is:
Adrian Schmidt
Adalbert-Stifter-Straße 4
82494 Krün
E-Mail: sternenschmied96@gmail.com
3. Data Collection on the Website
When visiting our website, technical data (e.g., IP address, date and time of request, browser type, operating system) are collected. This collection happens automatically to provide and secure our web offering (Legal basis: Art. 6 (1) lit. f GDPR). The website is provided via a hosting provider.
4. Data Collection & Processing in the Yori App
Yori is designed as a private training space. We only collect and process data necessary for core functionality and the fulfillment of our contract (Legal basis: Art. 6 (1) lit. b GDPR).
User Account (Firebase Authentication)
We use Firebase Authentication (Google LLC) to create accounts and ensure secure logins. Your email address is securely transmitted and stored. Firebase utilizes industry-leading security standards for authentication.
Cloud Database (Supabase)
Your encrypted profile data, app settings, generated insights, and chat logs are stored in highly secure databases by Supabase. Supabase acts as our cloud infrastructure partner. All data is encrypted ('at rest' and 'in transit') and server locations are preferably within the European Union.
Artificial Intelligence (AI Providers)
To offer context-aware guidance, your chat inputs are sent anonymously to specialized AI service providers (such as Mistral AI or OpenAI) for processing. This is a fundamental element of the Yori experience. IMPORTANT: We exclusively use Enterprise/API interfaces. According to our providers' terms of service, your private chat logs and inputs are never used to train public foundational AI models. After session processing, temporary caches at the providers are immediately deleted.
Subscriptions & Payments (RevenueCat)
In-App Purchases and Subscriptions are processed through the official App Stores (Apple App Store / Google Play Store). To synchronize subscriptions across devices, we use the service 'RevenueCat'. RevenueCat only stores anonymous purchase receipts to verify premium membership. No payment details, such as credit card numbers, are transmitted to RevenueCat or us.
5. Deletion of Your Data
Your data is only stored as long as necessary for its intended purpose (providing the service). You can irrevocably delete your account at any time directly in the app under 'Settings -> Account -> Delete Account'. This action completely removes your account, chat logs, and metadata from our databases (Firebase & Supabase).
6. Your Rights (GDPR)
Under the GDPR, you have the following rights at any time:
- Right to Information: To receive information about your stored data.
- Right to Rectification: To have incorrect data corrected.
- Right to Erasure ('Right to be Forgotten'): To request the deletion of all your data.
- Right to Data Portability: To export your data in a common format.
For questions regarding data protection or if you wish to exercise your rights, please contact us at sternenschmied96@gmail.com. Furthermore, you have the right to lodge a complaint with the competent supervisory authority.
7. Changes to the Privacy Policy
We reserve the right to adapt this privacy policy so that it always complies with current legal requirements or to implement changes to our services in the privacy policy (e.g., when introducing new functions). The new privacy policy will then apply to your next visit.